{"id":692,"date":"2026-07-01T16:45:03","date_gmt":"2026-07-01T11:15:03","guid":{"rendered":"https:\/\/www.hexnode.com\/threat-watch\/?p=692"},"modified":"2026-08-18T16:45:46","modified_gmt":"2026-08-18T11:15:46","slug":"nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk","status":"publish","type":"post","link":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/","title":{"rendered":"Nissan Data Breach: PeopleSoft Zero-Day Puts HR Identity Data at Risk"},"content":{"rendered":"<p>The Nissan data breach shows why enterprise HR systems need the same urgency as internet-facing infrastructure during active exploitation. Nissan has disclosed a breach affecting current and former employees after attackers exploited an Oracle PeopleSoft vulnerability tied to a wider <a href=\"https:\/\/www.hexnode.com\/blogs\/mobile-device-security-mdm-theft-prevention\/\">data-theft campaign<\/a>.<\/p>\n<p>Nissan\u2019s PeopleSoft environment managed payroll, tax administration, and personnel records.<\/p>\n<p>The company said its investigation remains in the early stages, but potentially accessed information may include employee contact details, banking information, Social Security numbers, Social Insurance Numbers, National Identification Numbers, financial and tax information, and dependent and beneficiary information.<\/p>\n<p>That makes the incident operationally significant beyond the initial data exposure. When attackers reach HR and payroll systems, exposed records can support payroll workflow abuse, employee <a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-phishing\/\">phishing<\/a>, and long-term identity risk unless organizations tighten access, verify sensitive changes, and review identity activity.<\/p>\n<p><center>    \t\t<!-- button style scb20be917a3efc78059cf9961ee4e54284 -->\r\n    \t\t<style>\r\n    \t\t\t.scb20be917a3efc78059cf9961ee4e54284, a.scb20be917a3efc78059cf9961ee4e54284{\r\n    \t\t\t\tcolor: #fff;\r\n    \t\t\t\tbackground-color: #00868B;\r\n    \t\t\t}\r\n    \t\t\t.scb20be917a3efc78059cf9961ee4e54284:hover, a.scb20be917a3efc78059cf9961ee4e54284:hover{\r\n    \t\t\t\t    \t\t\t\tbackground-color: #32b8bd;\r\n    \t\t\t}\r\n    \t\t<\/style>\r\n    \t\t<a href=\"https:\/\/www.hexnode.com\/xdr\/\" class=\"ht-shortcodes-button scb20be917a3efc78059cf9961ee4e54284  hn-cta__blogs--inline-button \" id=\"\" style=\"\" >\r\n    \t\tAchieve unified threat management with Hexnode XDR<\/a>\r\n    \t\t<\/center><\/p>\n<h2>Why security teams are paying attention<\/h2>\n<p>Nissan Americas uses PeopleSoft to manage employee information, including payroll, tax administration, and personnel records. According to the breach notice, Oracle informed Nissan that personnel records across hundreds of companies may have been obtained, and Nissan later learned it had been specifically targeted.<\/p>\n<p>Nissan said the investigation is still in its early stages. The company believes accessed information may include:<\/p>\n<ul>\n<li>Employee contact details<\/li>\n<li>Banking information<\/li>\n<li>Social Security numbers, Social Insurance Numbers, and National Identification Numbers<\/li>\n<li>Financial and tax information<\/li>\n<li>Dependent and beneficiary information<\/li>\n<\/ul>\n<p>The incident is believed to affect current and former employees in the United States, Canada, Mexico, and Brazil.<\/p>\n<p>That makes this more than a routine HR data breach. Employee identity data can support targeted social engineering, payroll change fraud attempts, tax fraud attempts, and account recovery abuse.<\/p>\n<p>Even when the affected application is patched, security teams still need to investigate how exposed data could be misused afterward.<\/p>\n<h2>What the Oracle PeopleSoft Zero-Day changed<\/h2>\n<p>Oracle published a security alert for <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2026-35273utm_source=hexnode_blog&amp;utm_medium=referral&amp;utm_campaign=nissan_data_breach\" target=\"_blank\" rel=\"noopener\">CVE-2026-35273<\/a>, a vulnerability in Oracle PeopleSoft PeopleTools. Oracle states that the issue is remotely exploitable without authentication and may result in remote code execution.<\/p>\n<p>The core technical details are direct enough for security teams to prioritize quickly:<\/p>\n<ul>\n<li><strong>Affected product:<\/strong> PeopleSoft Enterprise PeopleTools<\/li>\n<li><strong>Affected supported versions:<\/strong> 8.61 and 8.62<\/li>\n<li><strong>Component:<\/strong> Updates Environment Management<\/li>\n<li><strong>Access required:<\/strong> Network access via HTTP<\/li>\n<li><strong>Authentication required:<\/strong> None<\/li>\n<li><strong>Impact:<\/strong> Potential compromise or takeover of PeopleSoft Enterprise PeopleTools<\/li>\n<li><strong>CVSS 3.1 score:<\/strong> 9.8, based on Oracle\u2019s CNA score listed by NVD<\/li>\n<\/ul>\n<p>Mandiant and Google Threat Intelligence Group attributed related exploitation activity to UNC6240, also known as ShinyHunters. Because the observed activity predated Oracle\u2019s June 10, 2026, advisory, the flaw was exploited as an Oracle PeopleSoft zero-day.<\/p>\n<div class=\"next_blog\"><div class=\"post-next\"><div class=\"hex_blog_box_parent\"><div class=\"blog_warp_next\"><div class=\"next_blog_thumb\" style=\"background-image:url(https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/threat-classification.jpeg?format=webp)\"><\/div><div class=\"next_post_content\"><div class=\"center_box\"><h4>What is Threat Classification?<\/h4><p>Classify endpoint threats by severity, context, and response priority effectively.<\/p><\/div><\/div><\/div><a class=\"hex_blog_box_link hn-cta__blogs--blog-box\" href=\"https:\/\/www.hexnode.com\/blogs\/what-is-threat-classification\/\" aria-label=\"What is Threat Classification?\"><\/a><\/div><\/div><\/div>\n<h2>Where the operational risk sits<\/h2>\n<p>Nissan said it activated <a href=\"https:\/\/www.hexnode.com\/blogs\/how-to-build-a-successful-incident-response-procedure\/\">incident response<\/a>, engaged external cybersecurity experts, secured affected systems, and is working with Oracle. It also restricted pay slip access and direct deposit changes to company network computers or secured VPN connections while adding identity verification for payroll requests.<\/p>\n<p>That response shows why the risk extends beyond exposed records. HR systems also support sensitive workflows, including payroll changes, employee authentication, and personal data validation.<\/p>\n<table style=\"width: 100%;\">\n<thead>\n<tr>\n<th style=\"width: 29.3869%; text-align: left;\">Signal<\/th>\n<th style=\"width: 53.3827%; text-align: left;\">Why it matters<\/th>\n<th style=\"width: 16.279%; text-align: left;\">Priority<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td style=\"width: 29.3869%;\">Broader PeopleSoft zero-day activity before Oracle\u2019s advisory<\/td>\n<td style=\"width: 53.3827%;\">Related campaign activity predated Oracle\u2019s advisory, so organizations should review possible pre-patch exposure.<\/td>\n<td style=\"width: 16.279%;\">Immediate review<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 29.3869%;\">Payroll and direct deposit workflows<\/td>\n<td style=\"width: 53.3827%;\">Exposed data could support fraudulent payroll-change attempts.<\/td>\n<td style=\"width: 16.279%;\">High<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 29.3869%;\">Employee identifiers and tax data<\/td>\n<td style=\"width: 53.3827%;\">Records can support phishing, tax fraud, and identity abuse.<\/td>\n<td style=\"width: 16.279%;\">High<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 29.3869%;\">Access from unmanaged endpoints<\/td>\n<td style=\"width: 53.3827%;\">Untrusted devices increase session and credential risk.<\/td>\n<td style=\"width: 16.279%;\">Medium<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 29.3869%;\">VPN and internal-only restrictions<\/td>\n<td style=\"width: 53.3827%;\">Network controls reduce exposure but do not replace investigation.<\/td>\n<td style=\"width: 16.279%;\">Medium<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>What security teams should verify<\/h2>\n<p>Organizations using PeopleSoft should first confirm whether affected versions are present and whether Oracle\u2019s June 2026 Critical Security Patch Update guidance has been applied. Patching is only the starting point.<\/p>\n<p>Security teams should also review:<\/p>\n<ul>\n<li>PeopleSoft access logs from May 27 through June 9, 2026, plus any organization-specific exposure window after Oracle\u2019s June 10 advisory.<\/li>\n<li>Suspicious access to payroll, employee self-service, and direct deposit functions.<\/li>\n<li>Unusual identity verification failures, MFA resets, and password resets.<\/li>\n<li>External access paths to PeopleSoft and related administrative endpoints.<\/li>\n<li>HR administrator devices used during the confirmed or suspected exposure window.<\/li>\n<li>Any changes to payroll accounts, tax data, dependent records, or beneficiary details.<\/li>\n<\/ul>\n<p>Public reporting has not confirmed every downstream impact of the Nissan incident. The safer approach is to assume exposed HR data can become useful after the initial breach, especially for phishing, fraud, and account takeover attempts.<\/p>\n<section id='resource-single'>\n                    <div class='resource-box'>\n                        <div class='resource-box__image-section'>\n                            <div class='resource-box__image-wrap'>\n                                <img decoding=\"async\" src=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-xdr-infosheet.png?format=webp\" class=\"resource-box__image\" alt=\"hexnode xdr infosheet\" loading=\"lazy\" srcset=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-xdr-infosheet.png?format=webp 960w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-xdr-infosheet-300x225.png?format=webp 300w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-xdr-infosheet-768x576.png?format=webp 768w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-xdr-infosheet-133x100.png?format=webp 133w\" sizes=\"auto, (max-width: 960px) 100vw, 960px\" title=\"hexnode xdr infosheet\" \/>\n                            <\/div>\n                        <\/div>\n                        <div class='resource-box__content-section'>\n                            <h5 class='resource-box__content-subheading'>\n                            Featured resource\n                            <\/h5>\n                            <h4 class='resource-box__content-heading'>\n                            Hexnode XDR Info Sheet\n                            <\/h4>\n                            <p class='resource-box__contents'>\n                            Strengthen endpoint security with unified detection, investigation, response, and UEM-driven threat visibility through Hexnode XDR.\n                            <\/p>\n                            <a class='resource-box__content-link hn-cta__blogs--resource-box' href='https:\/\/www.hexnode.com\/resources\/hexnode-xdr-info-sheet\/'>\n                            DOWNLOAD\n                            <svg xmlns='http:\/\/www.w3.org\/2000\/svg' width='20' height='20' viewBox='0 0 20 20'>\n                            <g id='arrow' transform='translate(-309 -191)' opacity='0'>\n                                <rect id='base' width='20' height='20' transform='translate(309 191)' fill='none'\/>\n                                <path id='arrow-2' data-name='arrow' d='M13.093.5,6.8,6.8.5.5' transform='translate(315 207.594) rotate(-90)' fill='none' stroke='#0549d1' stroke-linecap='round' stroke-linejoin='round' stroke-width='1.2'\/>\n                            <\/g>\n                            <\/svg>\n\n                            <\/a>\n                        <\/div>\n                    <\/div>\n                <\/section>\n<h2>How Hexnode helps strengthen HR Access Control<\/h2>\n<p>The Nissan data breach naturally fits <a href=\"https:\/\/www.hexnode.com\/uem\/\">Hexnode UEM<\/a> because HR and payroll workflows should be limited to managed, compliant, and trusted devices wherever possible.<\/p>\n<p>Hexnode UEM can help IT teams define compliance rules for managed endpoints, including encryption, password compliance, app compliance, inactivity, OS version, BitLocker status, and FileVault status.<\/p>\n<p>These checks can support compliance-driven access decisions through supported identity provider integrations, helping organizations require managed and compliant devices for protected applications.<\/p>\n<p>For incidents involving HR applications, this helps teams:<\/p>\n<ul>\n<li>Enforce encryption, password, and screen-lock requirements on administrator devices.<\/li>\n<li>Use managed connectivity controls, such as per-app <a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-virtual-private-network-vpn\/\">VPN<\/a> where platform support applies.<\/li>\n<li>Maintain visibility into endpoint compliance and use supported <a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-conditional-access\/\">conditional access<\/a> integrations to enforce access decisions for protected applications.<\/li>\n<li>Use Hexnode XDR to review managed Windows endpoints where endpoint-side investigation is in scope.<\/li>\n<\/ul>\n<p>Hexnode should complement, not replace, Oracle remediation, PeopleSoft log review, identity-provider monitoring, and application-specific incident response.<\/p>\n<h2>Conclusion<\/h2>\n<p>The Nissan data breach shows how quickly an enterprise HR platform can become an identity and payroll risk when a critical application vulnerability is exploited. Organizations should treat PeopleSoft systems as high-value assets because they connect sensitive records with sensitive workflows.<\/p>\n<p>Security teams should prioritize Oracle remediation, exposure review, payroll workflow validation, identity monitoring, and managed-device access controls. Strong PeopleSoft security depends on patching, trusted endpoints, verified users, and continuous review of sensitive HR activity.<\/p>\n<div class=\"signup_box\"><div class=\"signup_wrap_img\"><div class=\"signup-bg\" style=\"background-image:url(https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Hexnode-MDM-free-trial.jpg?format=webp)\"><\/div><\/div><div class=\"signup_wrap\"><h5>Secure every sensitive HR access point<\/h5><p>Start your 14-day free trial to strengthen endpoint compliance. <\/p><a href=\"https:\/\/www.hexnode.com\/mobile-device-management\/cloud\/signup\/\" class=\"hn-cta__blogs--signup-stripe\" target=\"_blank\"> SIGN UP NOW<\/a><\/div><\/div>\n<div class=\"faq-section-wrapper\" itemscope itemtype=\"https:\/\/schema.org\/FAQPage\"><h2 class=\"faq-main-title\">FAQs<\/h2><div class=\"faq-items\"><div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">What is CVE-2026-35273?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>CVE-2026-35273 is a critical vulnerability in Oracle PeopleSoft PeopleTools. Oracle says it is remotely exploitable without authentication and may result in remote code execution.<\/p>\n<\/div><\/div><\/div> <div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">Has Nissan confirmed the final data exposure scope?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>Nissan said the investigation is still in early stages and that attackers may have accessed several categories of employee information. Public reporting does not confirm the final scope of exposed employee data.<\/p>\n<\/div><\/div><\/div> <div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">What should PeopleSoft customers check first?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>They should confirm affected PeopleTools versions, apply Oracle\u2019s June 2026 Critical Security Patch Update, review relevant access logs, restrict unnecessary external access, and monitor HR, payroll, and identity workflows.<\/p>\n<\/div><\/div><\/div><\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>The Nissan data breach shows why enterprise HR systems need the same urgency as internet-facing&#8230;<\/p>\n","protected":false},"author":5,"featured_media":696,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[12,13],"class_list":["post-692","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-zero-day","category-identity-abuse","product_category-identity-provider","tab_group-vulnerabilities"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Nissan Data Breach: PeopleSoft HR Data Risk<\/title>\n<meta name=\"description\" content=\"Nissan data breach shows how PeopleSoft attacks can expose employee records, payroll workflows, and identity data across enterprises.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Nissan Data Breach: PeopleSoft HR Data Risk\" \/>\n<meta property=\"og:description\" content=\"Nissan data breach shows how PeopleSoft attacks can expose employee records, payroll workflows, and identity data across enterprises.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/\" \/>\n<meta property=\"og:site_name\" content=\"Hexnode Threat Watch\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hexnode\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-07-01T11:15:03+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-18T11:15:46+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/nissan-data-breach.jpeg?format=webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1340\" \/>\n\t<meta property=\"og:image:height\" content=\"700\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Sophia Hart\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:site\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Sophia Hart\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":[\"Article\",\"BlogPosting\"],\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/\"},\"author\":{\"name\":\"Sophia Hart\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/7303d7e90665b5fbccde155fa1c11430\"},\"headline\":\"Nissan Data Breach: PeopleSoft Zero-Day Puts HR Identity Data at Risk\",\"datePublished\":\"2026-07-01T11:15:03+00:00\",\"dateModified\":\"2026-08-18T11:15:46+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/\"},\"wordCount\":1138,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/nissan-data-breach.jpeg?format=webp\",\"articleSection\":[\"Zero-Day\",\"Identity Abuse\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/\",\"name\":\"Nissan Data Breach: PeopleSoft HR Data Risk\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/nissan-data-breach.jpeg?format=webp\",\"datePublished\":\"2026-07-01T11:15:03+00:00\",\"dateModified\":\"2026-08-18T11:15:46+00:00\",\"description\":\"Nissan data breach shows how PeopleSoft attacks can expose employee records, payroll workflows, and identity data across enterprises.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/nissan-data-breach.jpeg?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/nissan-data-breach.jpeg?format=webp\",\"width\":1340,\"height\":700,\"caption\":\"nissan data breach\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Nissan Data Breach: PeopleSoft Zero-Day Puts HR Identity Data at Risk\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"name\":\"Hexnode Threat Watch\",\"description\":\"Latest cyber threats, smarter enterprise response.\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"alternateName\":\"Threat Watch\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\",\"name\":\"Hexnode\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"width\":100,\"height\":100,\"caption\":\"Hexnode\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/Hexnode\\\/\",\"https:\\\/\\\/x.com\\\/thehexnode\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/hexnode\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/7303d7e90665b5fbccde155fa1c11430\",\"name\":\"Sophia Hart\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g\",\"caption\":\"Sophia Hart\"},\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/author\\\/sophia-hart\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Nissan Data Breach: PeopleSoft HR Data Risk","description":"Nissan data breach shows how PeopleSoft attacks can expose employee records, payroll workflows, and identity data across enterprises.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/","og_locale":"en_US","og_type":"article","og_title":"Nissan Data Breach: PeopleSoft HR Data Risk","og_description":"Nissan data breach shows how PeopleSoft attacks can expose employee records, payroll workflows, and identity data across enterprises.","og_url":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/","og_site_name":"Hexnode Threat Watch","article_publisher":"https:\/\/www.facebook.com\/Hexnode\/","article_published_time":"2026-07-01T11:15:03+00:00","article_modified_time":"2026-08-18T11:15:46+00:00","og_image":[{"width":1340,"height":700,"url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/nissan-data-breach.jpeg?format=webp","type":"image\/jpeg"}],"author":"Sophia Hart","twitter_card":"summary_large_image","twitter_creator":"@thehexnode","twitter_site":"@thehexnode","twitter_misc":{"Written by":"Sophia Hart","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":["Article","BlogPosting"],"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#article","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/"},"author":{"name":"Sophia Hart","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/7303d7e90665b5fbccde155fa1c11430"},"headline":"Nissan Data Breach: PeopleSoft Zero-Day Puts HR Identity Data at Risk","datePublished":"2026-07-01T11:15:03+00:00","dateModified":"2026-08-18T11:15:46+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/"},"wordCount":1138,"commentCount":0,"publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/nissan-data-breach.jpeg?format=webp","articleSection":["Zero-Day","Identity Abuse"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/","url":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/","name":"Nissan Data Breach: PeopleSoft HR Data Risk","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#primaryimage"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/nissan-data-breach.jpeg?format=webp","datePublished":"2026-07-01T11:15:03+00:00","dateModified":"2026-08-18T11:15:46+00:00","description":"Nissan data breach shows how PeopleSoft attacks can expose employee records, payroll workflows, and identity data across enterprises.","breadcrumb":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#primaryimage","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/nissan-data-breach.jpeg?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/nissan-data-breach.jpeg?format=webp","width":1340,"height":700,"caption":"nissan data breach"},{"@type":"BreadcrumbList","@id":"https:\/\/www.hexnode.com\/threat-watch\/nissan-data-breach-peoplesoft-zero-day-puts-hr-identity-data-at-risk\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.hexnode.com\/threat-watch\/"},{"@type":"ListItem","position":2,"name":"Nissan Data Breach: PeopleSoft Zero-Day Puts HR Identity Data at Risk"}]},{"@type":"WebSite","@id":"https:\/\/www.hexnode.com\/threat-watch\/#website","url":"https:\/\/www.hexnode.com\/threat-watch\/","name":"Hexnode Threat Watch","description":"Latest cyber threats, smarter enterprise response.","publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"alternateName":"Threat Watch","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hexnode.com\/threat-watch\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization","name":"Hexnode","url":"https:\/\/www.hexnode.com\/threat-watch\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","width":100,"height":100,"caption":"Hexnode"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hexnode\/","https:\/\/x.com\/thehexnode","https:\/\/www.linkedin.com\/company\/hexnode"]},{"@type":"Person","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/7303d7e90665b5fbccde155fa1c11430","name":"Sophia Hart","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g","caption":"Sophia Hart"},"url":"https:\/\/www.hexnode.com\/threat-watch\/author\/sophia-hart\/"}]}},"_links":{"self":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/692","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/comments?post=692"}],"version-history":[{"count":3,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/692\/revisions"}],"predecessor-version":[{"id":702,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/692\/revisions\/702"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media\/696"}],"wp:attachment":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media?parent=692"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/categories?post=692"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}