Current:Home > StocksNissan data breach exposed Social Security numbers of thousands of employees -CoinMarket
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-19 06:38:31
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (2)
Related
- This was the average Social Security benefit in 2004, and here's what it is now
- Brazil’s firefighters battle wildfires raging during rare late-winter heat wave
- President Biden welcomes Ukraine's President Volodymyr Zelenskyy as some Republicans question aid
- Governors, Biden administration push to quadruple efficient heating, AC units by 2030
- Are Instagram, Facebook and WhatsApp down? Meta says most issues resolved after outages
- Project Veritas, founded by James O'Keefe, is laying off workers and pausing fundraising
- U.S. offers nearly half-a-million Venezuelan migrants legal status and work permits following demands from strained cities
- Moose headbutts stomps woman, dog, marking 4th moose attack on Colorado hiker this year
- South Korea's acting president moves to reassure allies, calm markets after Yoon impeachment
- EU calls on Bosnian Serb parliament to reject draft law that brands NGOs as ‘foreign agents’
Ranking
- Bill Belichick's salary at North Carolina: School releases football coach's contract details
- A British ex-soldier pleads not guilty to escaping from a London prison
- Trump says he always had autoworkers’ backs. Union leaders say his first-term record shows otherwise
- A potential tropical system is headed toward North Carolina; Hurricane Nigel remains at sea
- The Best Stocking Stuffers Under $25
- Man charged in 2 cold case murders after DNA links him to scenes
- 'My friends did everything right': Injured Grand Canyon hiker says he was not abandoned on trail
- Amal Clooney Wears Her Most Showstopping Look Yet With Discoball Dress
Recommendation
All That You Wanted to Know About She’s All That
Good American's Rare Friends & Family Sale Is Here: Don't Miss Up to 80% Off on All Things Denim and More
'My friends did everything right': Injured Grand Canyon hiker says he was not abandoned on trail
Former Trump aide Cassidy Hutchinson says Rudy Giuliani groped her on Jan. 6, 2021
IRS recovers $4.7 billion in back taxes and braces for cuts with Trump and GOP in power
Biden says Norfolk Southern must be held accountable for Ohio derailment but won’t declare disaster
How Dancing with the Stars Season 32 Will Honor Late Judge Len Goodman
The Era of Climate Migration Is Here, Leaders of Vulnerable Nations Say