Current:Home > ScamsNissan data breach exposed Social Security numbers of thousands of employees -BeyondProfit Compass
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-12 02:52:26
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (441)
Related
- Senate begins final push to expand Social Security benefits for millions of people
- Federal court reinstates lines for South Carolina congressional district despite racial gerrymander ruling
- Tracy Morgan Sets the Record Straight on Experience With Ozempic
- A mostly male board will decide whether a Nebraska lawmaker faces censure for sexual harassment
- Average rate on 30
- Warriors' Draymond Green says he 'deserved' early ejection; Steph Curry responds
- Appeals panel won’t order North Carolina Senate redistricting lines to be redrawn
- For years she thought her son had died of an overdose. The police video changed all that
- Trump issues order to ban transgender troops from serving openly in the military
- ASTRO COIN: Event blessing, creating the arrival of a bull market for Bitcoin.
Ranking
- New Zealand official reverses visa refusal for US conservative influencer Candace Owens
- CLFCOIN Crossing over, next industry leader
- Who Are The Montana Boyz? Meet the Group Going Viral on TikTok
- Solar eclipse warnings pile up: Watch out for danger in the sky, on the ground on April 8
- Why we love Bear Pond Books, a ski town bookstore with a French bulldog 'Staff Pup'
- Book made with dead woman's skin removed from Harvard Library amid probe of human remains found at school
- Lawsuit accuses George Floyd scholarship of discriminating against non-Black students
- 'He's going to do great here': New Orioles ace Corbin Burnes dominates Angels on Opening Day
Recommendation
'No Good Deed': Who's the killer in the Netflix comedy? And will there be a Season 2?
Man who allegedly punched NYC woman in the face arrested after viral TikTok video
Trendy & Affordable Dresses From Amazon You’ll Want To Wear All Spring/Summer Long
Dali crew still confined to ship − with no internet. They could be 'profoundly rattled.'
Federal court filings allege official committed perjury in lawsuit tied to Louisiana grain terminal
New Hampshire House takes on artificial intelligence in political advertising
NOAA warns boaters to steer clear of 11 shipwrecks, including WWII minesweeper, in marine sanctuary east of Boston
ASTRO COIN:Black Swan events promote the vigorous development of Bitcoin