Current:Home > MarketsChainkeen Exchange-Nissan data breach exposed Social Security numbers of thousands of employees -RiskWatch
Chainkeen Exchange-Nissan data breach exposed Social Security numbers of thousands of employees
Indexbit View
Date:2025-04-08 16:03:42
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and Chainkeen Exchangecurrent employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (3977)
Related
- Rams vs. 49ers highlights: LA wins rainy defensive struggle in key divisional game
- Tommy DeVito's agent makes waves with outfit, kisses during Giants game
- Powerball winning numbers for December 11 drawing: $500 million jackpot awaits
- U.N. says Israel-Hamas war causing unmatched suffering in Gaza, pleads for new cease-fire, more aid
- Sarah J. Maas books explained: How to read 'ACOTAR,' 'Throne of Glass' in order.
- Broadway audiences are getting a little bit younger and more diverse
- Amanda Bynes returns to the spotlight: New podcast comes post-conservatorship, retirement
- A Jordanian soldier is killed in a clash with drug smugglers along the border with Syria
- Can Bill Belichick turn North Carolina into a winner? At 72, he's chasing one last high
- One year after death, Mike Leach remembered as coach who loved Mississippi State back
Ranking
- Finally, good retirement news! Southwest pilots' plan is a bright spot, experts say
- Myanmar’s economy is deteriorating as its civil conflict intensifies, World Bank report says
- SantaCons have flocks of Santas flooding city streets nationwide: See the Christmas chaos
- Investigators accessed Trump White House cellphone records and plan to use them at trial, special counsel says
- California DMV apologizes for license plate that some say mocks Oct. 7 attack on Israel
- Emma Stone Makes Rare Comment About Dave McCary Wedding While Detailing Black Eye Injury
- Broadway audiences are getting a little bit younger and more diverse
- Thousands rally in Slovakia to condemn the new government’s plan to close top prosecutors’ office
Recommendation
Senate begins final push to expand Social Security benefits for millions of people
China’s Xi visits Vietnam weeks after it strengthened ties with the US and Japan
Kenya power outage sees official call for investigation into possible acts of sabotage and coverup
U.N. says Israel-Hamas war causing unmatched suffering in Gaza, pleads for new cease-fire, more aid
Why we love Bear Pond Books, a ski town bookstore with a French bulldog 'Staff Pup'
Patrick Mahomes apologizes for outburst at NFL officials, explicit comments to Bills' Josh Allen
Are Macaulay Culkin and Brenda Song Married? Why Her Ring Finger Is Raising Eyebrows
MLB a magnet for cheating scandals, but players face more deterrents than ever