Current:Home > MyNissan data breach exposed Social Security numbers of thousands of employees -文件: temp/data/webname/news/nam2.txt
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-17 18:22:01
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (818)
Related
- Tony Hawk drops in on Paris skateboarding and pushes for more styles of sport in LA 2028
- Georgia governor names first woman as chief of staff as current officeholder exits for Georgia Power
- Margot Robbie Has a Surprising Answer on What She Took From Barbie Set
- Trump embraces the Jan. 6 rioters on the trail. In court, his lawyers hope to distance him from them
- From family road trips to travel woes: Americans are navigating skyrocketing holiday costs
- A teen is found guilty of second-degree murder in a New Orleans carjacking that horrified the city
- The Excerpt podcast: Israel-Hamas truce extended through Wednesday
- Former Indiana lawmaker pleads guilty to casino corruption charge
- Immigration issues sorted, Guatemala runner Luis Grijalva can now focus solely on sports
- Court clears France’s justice minister of conflict of interest
Ranking
- The White House is cracking down on overdraft fees
- NFL power rankings Week 13: Panthers, Patriots in ugly contest for league's worst team
- Surge in respiratory illnesses among children in China swamping hospitals
- Pakistan acquits ex-Premier Nawaz Sharif in a graft case. He’s now closer to running in elections
- Intel's stock did something it hasn't done since 2022
- Red Lobster's 'Endless Shrimp' deal surpassed expectations, cost company millions
- iCarly’s Jennette McCurdy Details Past Pregnancy Scare
- Michigan man accused of keeping dead wife in freezer sentenced to up to 8 years in prison
Recommendation
US auto safety agency seeks information from Tesla on fatal Cybertruck crash and fire in Texas
A Hong Kong Court hears final arguments in subversion trial of pro-democracy activists
All The Only Ones: I can't wait
Illinois man wins $25K a year for life from lottery ticket after clerk's lucky mistake
Organizers cancel Taylor Swift concerts in Vienna over fears of an attack
British inquiry finds serious failings at hospitals where worker had sex with more than 100 corpses
Why You Still Need Sunscreen in Winter, According to a Dermatologist
John Cale, ever restless, keeps moving out of his comfort zone