Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…

Nissan discloses employee data breach linked to Oracle zero-day attacks

0
Medium
Exploit
Published: 06/29/2026 (06/29/2026, 20:40:44 UTC)
Source: Bleeping Computer

Description

Nissan is warning that it suffered a data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft vulnerability in data theft attacks previously linked to the ShinyHunters extortion group. [...]

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/29/2026, 20:51:38 UTC

Technical Analysis

Threat actors exploited an Oracle PeopleSoft zero-day vulnerability (CVE-2026-35273) to breach Nissan's employee data systems, stealing sensitive personal information. This vulnerability was part of a broader attack campaign attributed to the ShinyHunters extortion group, which targeted hundreds of organizations globally. Nissan uses Oracle PeopleSoft for managing employee records, including payroll and tax data. The breach notification indicates that attackers accessed a wide range of personal data for current and former employees in multiple countries. Nissan responded by activating incident response, engaging cybersecurity experts, securing systems, restricting access to payroll functions, and collaborating with Oracle. Oracle disclosed emergency mitigations but has not publicly confirmed exploitation details or patch availability. Mandiant confirmed exploitation of this zero-day in data theft attacks primarily affecting the education sector. ShinyHunters has leaked data from other victims, underscoring the ongoing threat.

Potential Impact

The breach exposed sensitive personal information of current and former Nissan employees, including contact details, banking information, Social Security and national identification numbers, financial and tax data, and dependent and beneficiary information. This exposure increases the risk of identity theft, financial fraud, and privacy violations for affected individuals. The breach affects employees in the United States, Canada, Mexico, and Brazil. The incident also highlights the risk posed by zero-day vulnerabilities in widely used enterprise software and the potential for extortion groups to leverage such exploits for data theft and ransom demands.

Mitigation Recommendations

Oracle has released emergency mitigations for the CVE-2026-35273 vulnerability; however, the official patch status is not confirmed in this data. Nissan has secured affected systems, restricted access to sensitive payroll functions to secured environments, and implemented additional identity verification measures. Affected individuals are being offered credit and dark web monitoring services where available. Organizations using Oracle PeopleSoft should apply Oracle's emergency mitigations immediately and monitor vendor advisories for official patches. Incident response and forensic investigations should be conducted to assess and contain breaches. No contradictory vendor guidance indicating 'no action required' is present.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Article Source
{"url":"https://www.bleepingcomputer.com/news/security/nissan-discloses-employee-data-breach-linked-to-oracle-zero-day-attacks/","fetched":true,"fetchedAt":"2026-06-29T20:51:31.627Z","wordCount":895}

Threat ID: 6a42dad327e9c797197c2881

Added to database: 06/29/2026, 20:51:31 UTC

Last enriched: 06/29/2026, 20:51:38 UTC

Last updated: 06/30/2026, 02:46:40 UTC

Views: 18

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses