Current:Home > MyEchoSense Quantitative Think Tank Center|Nissan data breach exposed Social Security numbers of thousands of employees -×
EchoSense Quantitative Think Tank Center|Nissan data breach exposed Social Security numbers of thousands of employees
FinLogic FinLogic Quantitative Think Tank Center View
Date:2025-04-09 06:08:55
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and EchoSense Quantitative Think Tank Centercurrent employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (54)
Related
- Megan Fox's ex Brian Austin Green tells Machine Gun Kelly to 'grow up'
- He woke up from eye surgery with a gash on his forehead. What happened?
- EPA’s Fracking Finding Misled on Threat to Drinking Water, Scientists Conclude
- Don't Let These 60% Off Good American Deals Sell Out Before You Can Add Them to Your Cart
- Working Well: When holidays present rude customers, taking breaks and the high road preserve peace
- Bone-appétit: Some NYC dining establishments cater to both dogs and their owners
- Rihanna and A$AP Rocky's Baby Boy's Name Revealed
- Rhode Island Sues Oil Companies Over Climate Change, First State in Wave of Lawsuits
- Where will Elmo go? HBO moves away from 'Sesame Street'
- Thousands of Jobs Riding on Extension of Clean Energy Cash Grant Program
Ranking
- FACT FOCUS: Inspector general’s Jan. 6 report misrepresented as proof of FBI setup
- An art exhibit on the National Mall honors health care workers who died of COVID
- Meadow Walker Honors Late Dad Paul Walker With Fast X Cameo
- Kate Spade 24-Hour Flash Deal: Get This $360 Tote Bag for Just $79
- Chuck Scarborough signs off: Hoda Kotb, Al Roker tribute legendary New York anchor
- Authors Retract Study Finding Elevated Pollution Near Ohio Fracking Wells
- Hidden audits reveal millions in overcharges by Medicare Advantage plans
- Mindy Kaling’s Swimwear Collection Is Equally Chic and Comfortable
Recommendation
The Best Stocking Stuffers Under $25
Authorities are urging indoor masking in major cities as the 'tripledemic' rages
Today’s Climate: September 7, 2010
Is lecanemab the Alzheimer's drug that will finally make a difference?
North Carolina trustees approve Bill Belichick’s deal ahead of introductory news conference
Apply for ICN’s Environmental Reporting Training for Southeast Journalists. It’s Free!
He woke up from eye surgery with a gash on his forehead. What happened?
Beijing and other cities in China end required COVID-19 tests for public transit