Nissan North America has notified current and former employees that their personal information may have been exposed in a cyber event tied to Oracle’s PeopleSoft software, which the company uses to manage payroll, tax administration, and other personnel records. Oracle told Nissan that hundreds of companies may have had personnel records obtained by threat actors through this same incident, and Nissan says it has since confirmed it was specifically targeted. This falls into the category of a hacking or system intrusion, with the initial point of failure sitting at Oracle (PeopleSoft) rather than inside Nissan’s own systems. Nissan says it activated incident response protocols, worked with outside experts to secure systems, and has been in contact with authorities throughout its response.