Current:Home > NewsNissan data breach exposed Social Security numbers of thousands of employees -WealthMindset
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-14 04:36:41
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (395)
Related
- Apple iOS 18.2: What to know about top features, including Genmoji, AI updates
- A ban on outdoor burning is set in 7 Mississippi counties during dry conditions
- Wisconsin judge rules governor properly used partial veto powers on literacy bill
- Eminem's daughter cried listening to his latest songs: 'I didn't realize how bad things were'
- Civic engagement nonprofits say democracy needs support in between big elections. Do funders agree?
- Inadequate inspections and lack of oversight cited in West Virginia fatal helicopter crash
- Ex-gang leader accused of killing Tupac Shakur won’t be released on bond, judge rules
- LA to pay more than $38M for failing to make affordable housing accessible
- A White House order claims to end 'censorship.' What does that mean?
- BMW, Tesla among 743,000 vehicles recalled: Check car recalls here
Ranking
- Juan Soto praise of Mets' future a tough sight for Yankees, but World Series goal remains
- NFL owners approve rule allowing portion of franchise to be sold to private equity firms
- What to know about the Oropouche virus, also known as sloth fever
- Martin Short Shares His Love for Meryl Streep Amid Dating Rumors
- Trump invites nearly all federal workers to quit now, get paid through September
- Newsom’s hands-on approach to crime in California cities gains critics in Oakland
- Body of Utah man who fell from houseboat recovered from Lake Powell
- Brian Austin Green and Tori Spelling didn't speak for 18 years after '90210'
Recommendation
Nevada attorney general revives 2020 fake electors case
Second Romanian gymnast continuing to fight for bronze medal in Olympic floor final
Sarah Ferguson Shares Royally Sweet Note Honoring Queen Elizabeth II's Corgis
Miles Teller’s Wife Keleigh Surprises Him With Proposal and “Dream Boat” for 5th Wedding Anniversary
Could Bill Belichick, Robert Kraft reunite? Maybe in Pro Football Hall of Fame's 2026 class
First rioter to enter Capitol during Jan. 6 attack is sentenced to over 4 years in prison
Carrie Underwood Breaks Silence on Replacing Katy Perry on American Idol 20 Years After Win
1 killed in interstate crash involving truck carrying ‘potentially explosive’ military devices