{"id":921,"date":"2026-07-14T15:00:38","date_gmt":"2026-07-14T09:30:38","guid":{"rendered":"https:\/\/www.hexnode.com\/threat-watch\/?p=921"},"modified":"2026-08-19T12:05:16","modified_gmt":"2026-08-19T06:35:16","slug":"nihon-kotsu-cyberattack","status":"publish","type":"post","link":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/","title":{"rendered":"Nihon Kotsu Cyberattack Disrupts Japan&#8217;s Largest Taxi Operator After Malware Incident"},"content":{"rendered":"<p>The Nihon Kotsu cyberattack highlights the importance of rapid containment, business continuity planning, and endpoint visibility when responding to malware incidents that affect operational systems.<\/p>\n<p><strong>Incident at a Glance<\/strong><\/p>\n<table class=\" aligncenter\" style=\"width: 96.1243%; font-weight: 400; height: 288px;\" data-tablestyle=\"MsoTableGrid\" data-tablelook=\"1696\" aria-rowcount=\"12\">\n<tbody>\n<tr style=\"height: 24px;\" aria-rowindex=\"1\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Item<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:2,&quot;335551620&quot;:2,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Details<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:2,&quot;335551620&quot;:2,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"2\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Organization<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Nihon Kotsu<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"3\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Industry<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Transportation<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"4\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Country<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Japan<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 28.0992%;\"><b><span data-contrast=\"auto\">Scale<\/span><\/b><\/td>\n<td style=\"width: 120.04%;\"><span data-contrast=\"auto\">Approximately US$1 billion in annual revenue, 18,000+ employees, and 10,000+ vehicles across the group<br \/>\n<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"5\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Incident Type<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Malware incident<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"6\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Initial Access<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Not disclosed<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"7\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Malware Family<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Not disclosed<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"8\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Threat Actor<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Unknown<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"9\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Data Leak<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Not confirmed<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"10\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Ransomware<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Not confirmed<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"11\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Operational Impact<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Dispatch, reservation, and some internal systems disrupted<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<tr style=\"height: 24px;\" aria-rowindex=\"12\">\n<td style=\"width: 28.0992%; height: 24px;\" data-celllook=\"0\"><b><span data-contrast=\"auto\">Investigation<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<td style=\"width: 120.04%; height: 24px;\" data-celllook=\"0\"><span data-contrast=\"auto\">Ongoing<\/span><span data-ccp-props=\"{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0}\">\u00a0<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2><\/h2>\n<h2><\/h2>\n<h2>What Happened in the Nihon Kotsu Cyberattack?<\/h2>\n<p>Nihon Kotsu, Japan&#8217;s largest taxi operator by group revenue, has confirmed a cybersecurity incident involving unauthorized external access and a malware infection affecting parts of its internal environment.<\/p>\n<p>The incident was detected during the early hours of July 11, 2026. As an immediate containment measure, Nihon Kotsu disconnected systems and isolated its internal network while launching an investigation with an external cybersecurity organization.<\/p>\n<p>The disruption affected several customer-facing and internal services, including telephone-based taxi dispatch, chauffeur-service web ordering and reservation management, and some internal systems. The taxi dispatch system remained offline at the time of publication.<\/p>\n<p>Nihon Kotsu also advised customers to remain cautious of suspicious emails or messages claiming to originate from the company, particularly those containing unexpected links or attachments.<\/p>\n<p>The company is investigating whether any information may have been exposed but stated that no data leak had been confirmed at the time of publication.<\/p>\n<h2>How the Incident Unfolded<\/h2>\n<p>Based on Nihon Kotsu&#8217;s public disclosure, investigators have confirmed the following as of publication:<\/p>\n<ul>\n<li>Unauthorized external access led to a malware incident.<\/li>\n<li>Nihon Kotsu disconnected systems and isolated its internal network as containment measures.<\/li>\n<li>Telephone-based taxi dispatch, chauffeur-service web ordering and reservation management, and some internal systems were disrupted.<\/li>\n<li>The company&#8217;s labor taxi service for pregnant women was temporarily suspended because reservation systems were unavailable.<\/li>\n<li>An external cybersecurity organization is helping determine the scope of the incident, investigate its cause, and analyze logs.<\/li>\n<li>No data leak has been confirmed.<\/li>\n<li>No ransomware or extortion group has publicly claimed responsibility.<\/li>\n<\/ul>\n<p>Several technical details remain undisclosed. Nihon Kotsu has not revealed the malware family involved, the initial intrusion method, or whether customer or operational data was affected. Until the investigation concludes, it would be inaccurate to characterize the incident as ransomware or a confirmed data breach.<br \/>\n<section id='resource-single'>\n                    <div class='resource-box'>\n                        <div class='resource-box__image-section'>\n                            <div class='resource-box__image-wrap'>\n                                <img decoding=\"async\" src=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck.webp?format=webp\" class=\"resource-box__image\" alt=\"Thumbnail-For-XDR-Intro-Deck\" loading=\"lazy\" srcset=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck.webp?format=webp 1796w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck-300x168.webp?format=webp 300w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck-1024x575.webp?format=webp 1024w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck-768x431.webp?format=webp 768w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck-1536x862.webp?format=webp 1536w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Thumbnail-For-XDR-Intro-Deck-178x100.webp?format=webp 178w\" sizes=\"auto, (max-width: 1796px) 100vw, 1796px\" title=\"Thumbnail-For-XDR-Intro-Deck\" \/>\n                            <\/div>\n                        <\/div>\n                        <div class='resource-box__content-section'>\n                            <h5 class='resource-box__content-subheading'>\n                            Featured resource\n                            <\/h5>\n                            <h4 class='resource-box__content-heading'>\n                            Introduction to Hexnode XDR\n                            <\/h4>\n                            <p class='resource-box__contents'>\n                            Get a quick overview of Hexnode XDR's threat detection, investigation, and response capabilities for enterprise endpoint security.\n                            <\/p>\n                            <a class='resource-box__content-link hn-cta__blogs--resource-box' href='https:\/\/www.hexnode.com\/resources\/introduction-to-hexnode-xdr\/'>\n                            Download the Presentation\n                            <svg xmlns='http:\/\/www.w3.org\/2000\/svg' width='20' height='20' viewBox='0 0 20 20'>\n                            <g id='arrow' transform='translate(-309 -191)' opacity='0'>\n                                <rect id='base' width='20' height='20' transform='translate(309 191)' fill='none'\/>\n                                <path id='arrow-2' data-name='arrow' d='M13.093.5,6.8,6.8.5.5' transform='translate(315 207.594) rotate(-90)' fill='none' stroke='#0549d1' stroke-linecap='round' stroke-linejoin='round' stroke-width='1.2'\/>\n                            <\/g>\n                            <\/svg>\n\n                            <\/a>\n                        <\/div>\n                    <\/div>\n                <\/section><\/p>\n<h2>What Investigators Are Still Determining<\/h2>\n<p>Although the investigation is ongoing, several key questions remain unanswered:<\/p>\n<ul>\n<li>How attackers initially gained access.<\/li>\n<li>Whether the malware spread to additional systems.<\/li>\n<li>Whether any customer, employee, or operational information was accessed or copied.<\/li>\n<li>Whether compromised credentials or lateral movement played a role.<\/li>\n<li>The identity and motivation of the attackers.<\/li>\n<\/ul>\n<p>Investigators have not attributed the incident to a known <a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-threat-group\/\">threat group<\/a>, nor have they disclosed evidence linking it to an existing malware campaign. Until additional findings are released, organizations should avoid drawing conclusions beyond the confirmed facts.<\/p>\n<h2>Why the Nihon Kotsu Cyberattack Matters for Enterprise Security<\/h2>\n<p>The Nihon Kotsu cyberattack demonstrates that malware incidents can quickly become operational resilience challenges, even before investigators determine whether data was exposed or identify the attackers.<\/p>\n<p>Organizations across industries, including transportation, healthcare, retail, logistics, manufacturing, and government, depend on the availability of their IT systems to deliver essential services. When critical operational systems are disrupted, security teams must balance rapid containment with safely restoring business functions.<\/p>\n<p>Despite the service disruption, Nihon Kotsu directed customers to continue booking rides through the <strong>GO<\/strong> mobile app and use physical taxi stands where available. The response highlights the importance of resilient fallback processes that help maintain customer access while affected systems are being restored.<\/p>\n<p>The incident also reinforces several practical lessons for enterprise security teams:<\/p>\n<ul>\n<li>Rapid isolation can help limit operational disruption during malware incidents.<\/li>\n<li><a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-a-business-continuity-plan-bcp\/\">Business continuity plans<\/a> should account for temporary service outages affecting customer-facing operations.<\/li>\n<li>Endpoint visibility can help security teams investigate incidents more efficiently.<\/li>\n<li>Recovery planning is as important as prevention when restoring critical services after a cyberattack.<\/li>\n<\/ul>\n<p>Together, these practices can help organizations reduce downtime while supporting a coordinated incident response and recovery process.<br \/>\n<div class=\"next_blog\"><div class=\"post-next\"><div class=\"hex_blog_box_parent\"><div class=\"blog_warp_next\"><div class=\"next_blog_thumb\" style=\"background-image:url(https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/xdr-and-zero-trust-150x150-1.webp?format=webp)\"><\/div><div class=\"next_post_content\"><div class=\"center_box\"><h4>XDR and Zero Trust: Securing Endpoints Together<\/h4><p>Learn how XDR and Zero Trust work together to strengthen endpoint security and incident response.<\/p><\/div><\/div><\/div><a class=\"hex_blog_box_link hn-cta__blogs--blog-box\" href=\"https:\/\/www.hexnode.com\/blogs\/xdr-zero-trust-endpoint-security\/\" aria-label=\"XDR and Zero Trust: Securing Endpoints Together\"><\/a><\/div><\/div><\/div><\/p>\n<h2>How Hexnode UEM and XDR Can Support Incident Recovery<\/h2>\n<p>Organizations can reduce operational disruption by strengthening endpoint management, incident response, and identity controls throughout the recovery process.<\/p>\n<h3>Maintain Secure and Compliant Endpoints with Hexnode UEM<\/h3>\n<p><a href=\"https:\/\/www.hexnode.com\/uem\/\">Hexnode UEM<\/a> helps IT teams manage enterprise endpoints by enforcing security policies, managing applications, monitoring device compliance, and deploying operating system or application updates on supported platforms. During recovery, administrators can remotely manage enrolled devices and reapply required security policies and configurations.<\/p>\n<h3>Investigate Endpoint Activity with Hexnode XDR<\/h3>\n<p><a href=\"https:\/\/www.hexnode.com\/xdr\/\">Hexnode XDR<\/a> helps security teams investigate suspicious endpoint activity by enabling analysts to query endpoint data, investigate suspicious activity, isolate affected devices from the network, and terminate malicious processes during incident response.<\/p>\n<h2>Key Takeaways<\/h2>\n<ul>\n<li>Nihon Kotsu confirmed unauthorized external access and a malware infection.<\/li>\n<li>No data leak has been confirmed, and attribution remains unknown.<\/li>\n<li>The malware family and initial intrusion method have not been disclosed.<\/li>\n<li>Rapid containment, endpoint visibility, and recovery planning remain critical during operational malware incidents.<\/li>\n<\/ul>\n<div class=\"faq-section-wrapper\" itemscope itemtype=\"https:\/\/schema.org\/FAQPage\"><h2 class=\"faq-main-title\">FAQs<\/h2><div class=\"faq-items\"><div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">What caused the Nihon Kotsu cyberattack?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>Nihon Kotsu confirmed that unauthorized external access led to a malware infection. However, the company has not disclosed how attackers initially gained access or identified the malware family involved.<\/p>\n<\/div><\/div><\/div>\n<div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">Was customer data stolen in the Nihon Kotsu cyberattack?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>At the time of publication, Nihon Kotsu stated it was investigating whether the incident exposed any information, but the company had not yet confirmed a data leak.<\/p>\n<\/div><\/div><\/div>\n<div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">Is the Nihon Kotsu cyberattack linked to ransomware?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>No. At the time of publication, Nihon Kotsu had not attributed the incident to a ransomware group, and no ransomware or extortion operation had publicly claimed responsibility.<\/p>\n<\/div><\/div><\/div><\/div><\/div>\n<h3>Conclusion<\/h3>\n<p>The Nihon Kotsu cyberattack demonstrates how <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/japans-largest-taxi-operator-shuts-systems-after-cyberattack\/?utm_source=hexnode_blog&amp;utm_medium=referral&amp;utm_campaign=nihon_kotsu_cyberattack\" target=\"_blank\" rel=\"nofollow noreferrer noopener\">malware can disrupt essential business operations even before investigators determine the full scope of an incident<\/a>.<\/p>\n<p>While many technical details remain under investigation, the company&#8217;s decision to disconnect systems and isolate its internal network highlights the importance of rapid containment during malware incidents.<\/p>\n<p>Maintaining endpoint visibility, enforcing consistent security policies, and preparing resilient recovery processes can help organizations reduce operational disruption and restore services more effectively.<\/p>\n<p>Until the investigation concludes, the Nihon Kotsu cyberattack serves as a reminder that operational resilience depends not only on detecting threats but also on containing, investigating, and recovering from them efficiently.<\/p>\n<div class=\"signup_box\"><div class=\"signup_wrap_img\"><div class=\"signup-bg\" style=\"background-image:url(https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Hexnode-MDM-free-trial.jpg?format=webp)\"><\/div><\/div><div class=\"signup_wrap\"><h5>Turn Security Incidents into Faster Recoveries<\/h5><p>Manage endpoints, investigate suspicious activity, and enforce device compliance with Hexnode UEM, XDR, and IdP.<\/p><a href=\"https:\/\/www.hexnode.com\/xdr\/signup\/\" class=\"hn-cta__blogs--signup-stripe\" target=\"_blank\"> Try Hexnode Now<\/a><\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>The Nihon Kotsu cyberattack highlights the importance of rapid containment, business continuity planning, and endpoint&#8230;<\/p>\n","protected":false},"author":4,"featured_media":923,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[15,21],"class_list":["post-921","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-malware","category-patch-management","product_category-extended-detection-and-response","tab_group-malware-and-ransomware"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Nihon Kotsu Cyberattack: Disrupts Japan&#039;s Largest Taxi Operator<\/title>\n<meta name=\"description\" content=\"Learn what happened in the Nihon Kotsu cyberattack, what remains under investigation, and the endpoint security lessons for enterprises.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Nihon Kotsu Cyberattack: Disrupts Japan&#039;s Largest Taxi Operator\" \/>\n<meta property=\"og:description\" content=\"Learn what happened in the Nihon Kotsu cyberattack, what remains under investigation, and the endpoint security lessons for enterprises.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/\" \/>\n<meta property=\"og:site_name\" content=\"Hexnode Threat Watch\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hexnode\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-07-14T09:30:38+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-19T06:35:16+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1350\" \/>\n\t<meta property=\"og:image:height\" content=\"759\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Nora Blake\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:site\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Nora Blake\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":[\"Article\",\"BlogPosting\"],\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/\"},\"author\":{\"name\":\"Nora Blake\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/0c83856887182474458e211729d39f9d\"},\"headline\":\"Nihon Kotsu Cyberattack Disrupts Japan&#8217;s Largest Taxi Operator After Malware Incident\",\"datePublished\":\"2026-07-14T09:30:38+00:00\",\"dateModified\":\"2026-08-19T06:35:16+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/\"},\"wordCount\":1101,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp\",\"articleSection\":[\"Malware\",\"Patch Management\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/\",\"name\":\"Nihon Kotsu Cyberattack: Disrupts Japan's Largest Taxi Operator\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp\",\"datePublished\":\"2026-07-14T09:30:38+00:00\",\"dateModified\":\"2026-08-19T06:35:16+00:00\",\"description\":\"Learn what happened in the Nihon Kotsu cyberattack, what remains under investigation, and the endpoint security lessons for enterprises.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp\",\"width\":1350,\"height\":759,\"caption\":\"Nihon Kotsu Cyberattack Disrupts Japans Largest Taxi Operator After Malware Incident\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/nihon-kotsu-cyberattack\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Nihon Kotsu Cyberattack Disrupts Japan&#8217;s Largest Taxi Operator After Malware Incident\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"name\":\"Hexnode Threat Watch\",\"description\":\"Latest cyber threats, smarter enterprise response.\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"alternateName\":\"Threat Watch\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\",\"name\":\"Hexnode\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"width\":100,\"height\":100,\"caption\":\"Hexnode\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/Hexnode\\\/\",\"https:\\\/\\\/x.com\\\/thehexnode\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/hexnode\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/0c83856887182474458e211729d39f9d\",\"name\":\"Nora Blake\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/a3937eeab99c0b56fb02ea93c3ccf9d03e2a8056395f0c69ce21777a1907569c?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/a3937eeab99c0b56fb02ea93c3ccf9d03e2a8056395f0c69ce21777a1907569c?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/a3937eeab99c0b56fb02ea93c3ccf9d03e2a8056395f0c69ce21777a1907569c?s=96&d=mm&r=g\",\"caption\":\"Nora Blake\"},\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/author\\\/nora-blake\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Nihon Kotsu Cyberattack: Disrupts Japan's Largest Taxi Operator","description":"Learn what happened in the Nihon Kotsu cyberattack, what remains under investigation, and the endpoint security lessons for enterprises.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/","og_locale":"en_US","og_type":"article","og_title":"Nihon Kotsu Cyberattack: Disrupts Japan's Largest Taxi Operator","og_description":"Learn what happened in the Nihon Kotsu cyberattack, what remains under investigation, and the endpoint security lessons for enterprises.","og_url":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/","og_site_name":"Hexnode Threat Watch","article_publisher":"https:\/\/www.facebook.com\/Hexnode\/","article_published_time":"2026-07-14T09:30:38+00:00","article_modified_time":"2026-08-19T06:35:16+00:00","og_image":[{"width":1350,"height":759,"url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp","type":"image\/jpeg"}],"author":"Nora Blake","twitter_card":"summary_large_image","twitter_creator":"@thehexnode","twitter_site":"@thehexnode","twitter_misc":{"Written by":"Nora Blake","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":["Article","BlogPosting"],"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#article","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/"},"author":{"name":"Nora Blake","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/0c83856887182474458e211729d39f9d"},"headline":"Nihon Kotsu Cyberattack Disrupts Japan&#8217;s Largest Taxi Operator After Malware Incident","datePublished":"2026-07-14T09:30:38+00:00","dateModified":"2026-08-19T06:35:16+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/"},"wordCount":1101,"commentCount":0,"publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp","articleSection":["Malware","Patch Management"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/","url":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/","name":"Nihon Kotsu Cyberattack: Disrupts Japan's Largest Taxi Operator","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#primaryimage"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp","datePublished":"2026-07-14T09:30:38+00:00","dateModified":"2026-08-19T06:35:16+00:00","description":"Learn what happened in the Nihon Kotsu cyberattack, what remains under investigation, and the endpoint security lessons for enterprises.","breadcrumb":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#primaryimage","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Nihon-Kotsu-Cyberattack-Disrupts-Japans-Largest-Taxi-Operator-After-Malware-Incident.jpeg?format=webp","width":1350,"height":759,"caption":"Nihon Kotsu Cyberattack Disrupts Japans Largest Taxi Operator After Malware Incident"},{"@type":"BreadcrumbList","@id":"https:\/\/www.hexnode.com\/threat-watch\/nihon-kotsu-cyberattack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.hexnode.com\/threat-watch\/"},{"@type":"ListItem","position":2,"name":"Nihon Kotsu Cyberattack Disrupts Japan&#8217;s Largest Taxi Operator After Malware Incident"}]},{"@type":"WebSite","@id":"https:\/\/www.hexnode.com\/threat-watch\/#website","url":"https:\/\/www.hexnode.com\/threat-watch\/","name":"Hexnode Threat Watch","description":"Latest cyber threats, smarter enterprise response.","publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"alternateName":"Threat Watch","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hexnode.com\/threat-watch\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization","name":"Hexnode","url":"https:\/\/www.hexnode.com\/threat-watch\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","width":100,"height":100,"caption":"Hexnode"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hexnode\/","https:\/\/x.com\/thehexnode","https:\/\/www.linkedin.com\/company\/hexnode"]},{"@type":"Person","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/0c83856887182474458e211729d39f9d","name":"Nora Blake","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/a3937eeab99c0b56fb02ea93c3ccf9d03e2a8056395f0c69ce21777a1907569c?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/a3937eeab99c0b56fb02ea93c3ccf9d03e2a8056395f0c69ce21777a1907569c?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/a3937eeab99c0b56fb02ea93c3ccf9d03e2a8056395f0c69ce21777a1907569c?s=96&d=mm&r=g","caption":"Nora Blake"},"url":"https:\/\/www.hexnode.com\/threat-watch\/author\/nora-blake\/"}]}},"_links":{"self":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/921","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/comments?post=921"}],"version-history":[{"count":2,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/921\/revisions"}],"predecessor-version":[{"id":925,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/921\/revisions\/925"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media\/923"}],"wp:attachment":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media?parent=921"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/categories?post=921"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}