Current:Home > MyNissan data breach exposed Social Security numbers of thousands of employees -Elite Financial Minds
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-12 07:09:46
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (3)
Related
- The Best Stocking Stuffers Under $25
- Man arrested in 1989 killing of 78-year-old Pennsylvania woman who fought her attacker
- The Bachelor's Rachel Nance Reveals Where She Stands With Joey Grazadei and Kelsey Anderson Now
- Donor and consultant convicted again of trying to bribe North Carolina’s insurance commissioner
- Trump's 'stop
- Angie Harmon Suing Instacart After Deliveryman Shot and Killed Her Dog
- Texas governor pardons ex-Army sergeant convicted of killing Black Lives Matter protester
- 2 people caught on camera committing alleged archaeological theft at historic 1800s cowboy camp at Utah national park
- Mets have visions of grandeur, and a dynasty, with Juan Soto as major catalyst
- A fiery tanker crash and hazmat spill shuts down Interstate 70 near Denver
Ranking
- Off the Grid: Sally breaks down USA TODAY's daily crossword puzzle, Triathlon
- Former Connecticut budget official arrested on federal charges
- Indonesia raises alert for Mount Ibu volcano to highest level following a series of eruptions
- Long-term mortgage rates retreat for second straight week, US average at 7.02%
- Nearly half of US teens are online ‘constantly,’ Pew report finds
- Elle King Gives Full Story Behind Drunken Dolly Parton Tribute and Sobbing in Dressing Room After
- Elle King Gives Full Story Behind Drunken Dolly Parton Tribute and Sobbing in Dressing Room After
- The Bachelor's Rachel Nance Reveals Where She Stands With Joey Grazadei and Kelsey Anderson Now
Recommendation
As Trump Enters Office, a Ripe Oil and Gas Target Appears: An Alabama National Forest
Tyson Fury says fighters hating on Mike Tyson vs. Jake Paul bout are just jealous
How we uncovered former police guns that were used in crimes
Army will present Purple Heart to Minnesota veteran 73 years after he was wounded in Korean War
In ‘Nickel Boys,’ striving for a new way to see
West Virginia miner dies in state’s first reported coal fatality of the year
Biden marks Brown v. Board of Education anniversary amid signs of erosion in Black voter support
A new South Africa health law aims at deep inequality, but critics say they’ll challenge it