Skip to content
TopicTracker
From HackerNewsView original
TranslationTranslation

Nissan says Oracle PeopleSoft break-in may have spilled payroll records, SSNs

Nissan has reported that a breach of its Oracle PeopleSoft system may have exposed payroll records and Social Security numbers of its employees. The carmaker disclosed the incident, which involved unauthorized access, and stated that investigations are ongoing to determine the full scope of the data spill.

Background

- Nissan reported a data breach involving its instance of Oracle PeopleSoft, an enterprise resource planning (ERP) system used for HR and financial management. The intruder may have accessed payroll data and Social Security numbers. - Oracle PeopleSoft is a legacy software suite (originally developed by PeopleSoft Inc., acquired by Oracle in 2005) still widely used by large organizations for managing employee records, payroll, and accounting. - This is part of a broader pattern: ERP and HR systems have become high-value targets for attackers because they contain bulk personal identifiable information (PII) and financial data in one place. - The incident follows other recent breaches at major companies where HR/payroll data was exfiltrated, highlighting the risk of keeping sensitive employee data on older, on-premise ERP systems rather than modern cloud HR platforms.