HackingTargetedEmployee Data InvolvedIDENTITY_BASICEMPLOYMENTLowContained
NISSAN NORTH AMERICA, INC.
bd_f9f622a7f0322044 · schema v1 · pii pii-v1
Full breach record for NISSAN NORTH AMERICA, INC. →Nissan North America, Inc. disclosed a targeted cyberattack discovered on November 7, 2023, affecting employee personal information. The incident impacted 17 residents in Rhode Island and 3 in Vermont. Data accessed included names and employment details; financial data was not compromised. Nissan notified law enforcement, engaged cybersecurity experts, and provided 24 months of Experian IdentityWorks services to affected employees.
Vermont clock✗ VT AG >45 bday27 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_a4b8e4f0871ced96Indiana State AGfiled 2024-05-15Verified
- bd_019206705c1b1957Montana State AGfiled 2024-05-14(1d gap)Candidate
- bd_3b0533440a89abdaMaine State AGfiled 2024-05-14(1d gap)Verified
- bd_a270e89ba8e11073California State AGfiled 2024-05-14(1d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 1d gap
- bd_a59484e9435b26e2New Hampshire State AGfiled 2024-05-14(1d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-05-15-nissan-north-america-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 15, 2024
- Raw hash
- 2769eef14630aea518c07d65d7cdf6dcc4b25a8b466311660bdafa11217b3ff9
Reporting entity
- Name
- NISSAN NORTH AMERICA, INC.norm: nissan north america
Victim entity
- Name
- NISSAN NORTH AMERICA, INC.norm: nissan north america
Incident
- Discovered
- Nov 7, 2023
- Materiality determined
- —
- Notification sent
- May 15, 2024
- Affected individuals
- 17
- Data types
- IDENTITY_BASICEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- promptly notified law enforcement
Compliance
- Time to disclose
- 27 weeks(190 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.