equifax executives step down
Last Updated : GMT 09:03:51
Almaghrib Today, almaghrib today
Almaghrib Today, almaghrib today
Last Updated : GMT 09:03:51
Almaghrib Today, almaghrib today

after major hack

Equifax executives step down

Almaghrib Today, almaghrib today

Almaghrib Today, almaghrib today Equifax executives step down

There are still many unanswered questions about the Equifax breach that exposed the personal information of millions of Americans.
San Francisco - Al Maghrib Today

Equifax, the credit reporting agency, said Friday that its chief information officer and chief security officer were retiring “effective immediately.” The announcement came one week after the company revealed that a cyberattack potentially compromised confidential information of 143 million Americans. On Friday, the company also provided further details about when it had discovered the breach and which part of its website had been targeted by hackers. But many details about the breach, who was behind it and the computer security defenses at Equifax are still unclear.

What We Know

• Hackers exploited a vulnerability in website software. They gained access to certain files containing names, Social Security numbers, birth dates, addresses and driver’s license numbers. Equifax also said the thieves lifted credit card numbers for about 209,000 consumers. The company on Friday disclosed that around 400,000 British consumers may have also been affected.

• The breach was open from mid-May to July 29. That was when Equifax first detected it. The company said it had immediately worked to stop the intrusion, and the following week engaged Mandiant, an independent cybersecurity firm, to oversee an investigation into the scope and causes of the breach.

• Equifax is making personnel changes following the breach. On Friday, Equifax said its chief information officer, Susan Mauldin, and its chief security officer, David Webb, were retiring. The company said the changes were “effective immediately.”

• The breach involved the company’s web page for disputes. The company said the breach occurred in a public website application where consumers could dispute the accuracy of credit information collected by the company. The company said it noticed suspicious traffic to the application on July 29 and took the application offline the next day. It then patched the vulnerability in the application and put the application back online.

Continue reading the main story
Advertisement

Continue reading the main story
• The hack involved a known vulnerability in software used by Equifax. The New York Post first reported that hackers had exploited a vulnerability in Apache Struts, a kind of open-source software that companies like Equifax use to build websites.

On Thursday, Equifax confirmed that the breach involved a bug in Apache Struts, and identified the specific vulnerability. This security weakness was publicly identified in March and a patch to fix it had been available since then.

The rules for commercial use of open-source software can vary. Generally speaking, open-source software is built collaboratively by developers inside companies, academia and even hobbyists, and is available for free or at a low cost. Different types of Apache software are widely used all over the world.

What We Don’t Know

• It is not clear why the company’s security methods failed to stop the attack. Equifax said that it was aware of the vulnerability two months earlier and worked to patch the bug then. It is not clear why this patch was unsuccessful, and the company said that it may release additional information as its investigation into the incident continues.

Avivah Litan, a security analyst with the research firm Gartner, said that the bug alone was not to blame. “You have to have layered security controls,” Ms. Litan said. “You have to assume that your prevention methods are going to fail.”
• The perpetrators of the Equifax breach have not been identified. A group of hackers calling themselves the “PastHole Hacking Team” has claimed responsibility, and threatened to release the data if their ransom demand of 600 Bitcoin — roughly $2.5 million — was not met. In posts and communications with security researchers, members of the team claimed they were able to garner far more data than they expected when they targeted Equifax.

• That doesn’t mean this group of hackers was really responsible. Intelligence officials and security analysts in private industry said that while it is far too early to say definitively who breached Equifax, the leading theory is that the company was hit by a nation-state or hackers operating on a nation-state’s behalf. They point to the sheer scale of theft, which most likely would have required a heightened degree of sophistication to pull off without being detected.

Other security experts said it would be smart to consider motivation and intent. “Are cybercriminals going to try and sell circa 150 million records in dark web auctions? That’s nearly half the population of the United States,” said Thomas Boyden, president of GRA Quantum, a company that specialized in cyberattack incident response. “Are there standard cybercriminals out there with the purchasing power for that type of data?”

Still, the detailed personal and financial information collected by a company like Equifax can be resold on the so-called Deep Web. It is much more valuable than credit card numbers, because it has a longer life span and can be used to access all kinds of other information, like bank accounts, loan details and medical records.

• Have these hackers struck before? Mr. Boyden and others said that the breach had many parallels with previous breaches of personal information by nation-states and their contractors. Such government-affiliated hackers compile giant databases of stolen information to see if there is material that can be used for espionage or perhaps even blackmail. Using data-sifting technologies, they comb through massive collections of information to find useful material.

Source: AFP

almaghribtoday
almaghribtoday

GMT 10:41 2018 Friday ,19 January

Taiwan chip 'godfather' bullish on cryptocurrency

GMT 14:50 2018 Thursday ,18 January

YouTube toughens rules regarding

GMT 13:41 2018 Wednesday ,17 January

Remand extended for Palestinian teen

GMT 12:17 2018 Tuesday ,16 January

Russia's Lavrov lashes out at US

GMT 11:44 2018 Sunday ,14 January

Facebook move will play out

GMT 12:33 2018 Saturday ,13 January

New Eurogroup chief vows to press

GMT 09:37 2018 Friday ,12 January

S. Korea govt sends bitcoin
Almaghrib Today, almaghrib today

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

equifax executives step down equifax executives step down

 



Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

equifax executives step down equifax executives step down

 



Almaghrib Today, almaghrib today Skincare PR Performance Full Year 2017

GMT 09:22 2018 Monday ,22 January

Skincare PR Performance Full Year 2017
Almaghrib Today, almaghrib today New hunt for flight MH370 gets under way

GMT 11:03 2018 Wednesday ,24 January

New hunt for flight MH370 gets under way
Almaghrib Today, almaghrib today Modern colorful bedroom renovation

GMT 10:57 2017 Thursday ,21 December

Modern colorful bedroom renovation
Almaghrib Today, almaghrib today Puigdemont candidate for Catalan president

GMT 13:56 2018 Tuesday ,23 January

Puigdemont candidate for Catalan president
Almaghrib Today, almaghrib today Turkey detains dozens more

GMT 10:47 2018 Wednesday ,24 January

Turkey detains dozens more
Almaghrib Today, almaghrib today The Rake announces editorial updates

GMT 10:46 2018 Tuesday ,16 January

The Rake announces editorial updates
Almaghrib Today, almaghrib today Europe brings on charm and blue skies

GMT 11:51 2018 Tuesday ,23 January

Europe brings on charm and blue skies
Almaghrib Today, almaghrib today For the Variety of Interior Design Styles

GMT 10:46 2017 Tuesday ,19 December

For the Variety of Interior Design Styles
Almaghrib Today, almaghrib today US Christian tourists see deep meaning

GMT 13:44 2018 Monday ,22 January

US Christian tourists see deep meaning
Almaghrib Today, almaghrib today Amazon to open first cashierless shop

GMT 10:03 2018 Tuesday ,23 January

Amazon to open first cashierless shop

GMT 07:51 2017 Wednesday ,29 November

Merkel 'horrified' by knife attack

GMT 14:24 2017 Monday ,16 October

How Trump may have set a trap for Iran

GMT 17:01 2017 Friday ,10 February

Heavy Rain to Return to Morocco Friday

GMT 10:07 2018 Wednesday ,24 January

France's Carrefour revamps operations

GMT 12:44 2018 Friday ,12 January

Ancient mining ops buildings found

GMT 09:18 2017 Tuesday ,19 December

Egypt’s government signs agreement with Switzerland

GMT 15:35 2018 Sunday ,21 January

Twitter says Russia-linked accounts more widespread

GMT 14:24 2017 Monday ,04 September

NASA astronaut comes back to Earth

GMT 07:04 2017 Wednesday ,29 November

Evacuation centres, hotels fill up

GMT 18:08 2017 Thursday ,05 October

Christmas Gift Guide - netdoctor.co.uk

GMT 12:30 2011 Friday ,10 June

Spanish police swoop on vigilante hackers

GMT 06:57 2017 Wednesday ,29 November

Egyptian minister calls for dialogue

GMT 10:11 2017 Wednesday ,29 November

Victoria’s Secret China show struts on

GMT 12:46 2017 Friday ,28 April

Online videos of killings pose tricky problem

GMT 23:18 2012 Tuesday ,31 January

Wooden Fairy Palace In Poland

GMT 16:47 2017 Monday ,06 November

UN chief calls for stability in Lebanon

GMT 18:25 2017 Sunday ,31 December

2018: A big year for Latin America elections

GMT 17:47 2017 Sunday ,31 December

BA owner to buy bankrupt Austrian airline Niki

GMT 12:33 2017 Saturday ,23 December

Five Wishes for Morocco in the New Year 2018
Almaghrib Today, almaghrib today
 
 Almaghrib Today Facebook,almaghrib today facebook  Almaghrib Today Twitter,almaghrib today twitter Almaghrib Today Rss,almaghrib today rss  Almaghrib Today Youtube,almaghrib today youtube  Almaghrib Today Youtube,almaghrib today youtube

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2025 ©

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2025 ©

.almaghribtoday .almaghribtoday .almaghribtoday .almaghribtoday
almaghribtoday almaghribtoday almaghribtoday
almaghribtoday
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
almaghribtoday, Almaghribtoday, Almaghribtoday