equifax warned about vulnerability didnt patch it
Last Updated : GMT 05:21:58
Arab Today, arab today
Arab Today, arab today
Last Updated : GMT 05:21:58
Arab Today, arab today

Former CEO Richard Smith

Equifax warned about vulnerability, didn't patch it

Arab Today, arab today

Arab Today, arab today Equifax warned about vulnerability, didn't patch it

Equifax warned about vulnerability, didn't patch it
Washington - Arab Today

 Equifax said Monday an investigation into the massive data breach at the credit agency discovered 2.5 million additional potential victims, bringing the total to 145.5 million.

Interim chief executive Paulino do Rego Barros, made the disclosure in a statement, saying, "Our priorities are transparency and improving support for consumers. I will continue to monitor our progress on a daily basis."

The statement said the cybersecurity firm Mandiant made the new estimate after a forensic review of the incident, which is believed to be one of the worst breaches because of the sensitivity of data leaked.

The review "also has concluded that there is no evidence the attackers accessed databases located outside of the United States," the Equifax statement said.

Mandiant found that about 8,000 Canadian consumers were impacted by the hack, fewer than the initial estimate of 100,000. The company said a review of the impact on British consumers was still being analyzed.

Separately Monday, former CEO Richard Smith said in testimony prepared for a congressional hearing that the security team at Equifax failed to patch a vulnerability in March after getting a warning about the flaw.

Smith, in a statement to a congressional committee released, offered a timeline of the cyber attack which leaked social security numbers and other sensitive data.

Smith said in prepared remarks to a House panel that the company on March 9 circulated an internal memo warning about a software flaw identified by the government's Computer Emergency Response Team (CERT).

He added that Equifax policy would have required a patch to be applied within 48 hours and that this was not done -- but he could not explain why.

Equifax's information security department ran scans that should have identified any systems that were vulnerable but failed to identify any flaws in the software known as Apache Struts.

"I understand that Equifax's investigation into these issues is ongoing," he said in the statement.

"The company knows, however, that it was this unpatched vulnerability that allowed hackers to access personal identifying information."

Smith said he was notified of the breach on July 31, but was not aware "of the scope of this attack." He informed the company's lead director three weeks later, on August 22, and board meetings were held on the matter August 24 and 25.

Equifax, one of the major agencies gathering data used in credit ratings for banks, has come under fire for waiting until September 7 to publicly disclose the breach, and investigators are looking into stock sales by two senior executives in August.

Smith stepped down last week amid the investigation, while indicating he would remain in a consulting capacity during the investigation, which includes a congressional hearing Tuesday.

Smith offered a fresh apology for the attack, saying in his statement: "As CEO I was ultimately responsible for what happened on my watch. Equifax was entrusted with Americans' private data and we let them down.

Source: AFP

arabstoday
arabstoday

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

equifax warned about vulnerability didnt patch it equifax warned about vulnerability didnt patch it

 



Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

equifax warned about vulnerability didnt patch it equifax warned about vulnerability didnt patch it

 



Arab Today, arab today Modern colorful bedroom renovation

GMT 11:23 2017 Thursday ,21 December

Modern colorful bedroom renovation
Arab Today, arab today For the Variety of Interior Design Styles

GMT 11:14 2017 Tuesday ,19 December

For the Variety of Interior Design Styles

GMT 04:50 2017 Wednesday ,16 August

Turkey''s Quake Death Toll Rises to 217

GMT 20:59 2017 Saturday ,25 November

Hariri Arrives in Beirut after Talks in Egypt, Cyprus

GMT 08:44 2016 Thursday ,24 November

Turkish army blames Syrian regime for deadly air strike

GMT 09:59 2017 Monday ,07 August

5 reasons you should consider for your getaway

GMT 17:40 2016 Saturday ,24 December

Cyprus revises up economic projections

GMT 11:52 2015 Friday ,06 February

Kerli thanks Estonia for her music

GMT 06:45 2017 Wednesday ,01 February

Trump names Neil Gorsuch as Supreme Court nominee

GMT 12:18 2011 Thursday ,23 June

UK\'s Libya campaign to cost £260 mln

GMT 13:15 2016 Thursday ,15 December

Steve Smith ton puts Australia

GMT 07:36 2017 Wednesday ,22 February

Wafaa Amer is happy for Sherihan’s return

GMT 21:13 2017 Tuesday ,11 July

39 ships transit Suez Canal

GMT 07:01 2017 Wednesday ,08 November

Trump lands in China for talks on trade, North Korea

GMT 19:20 2017 Saturday ,29 July

Al-Nahda is largest private university in Egypt

GMT 06:31 2016 Sunday ,02 October

Palestinian who wounded Israeli guard killed

GMT 17:33 2017 Saturday ,21 January

4 dead, 20 hurt as car rams Melbourne shoppers

GMT 09:01 2018 Saturday ,13 January

New Zealand bat first in third ODI against Pakistan

GMT 12:35 2016 Saturday ,03 September

Jesus story gets virtual reality treatment in Venice

GMT 20:29 2017 Saturday ,04 March

Egypt sends medical, food aid to S.Sudan

GMT 01:29 2017 Sunday ,07 May

Indian success stories abound in Saudi Arabia
Arab Today, arab today
 
 Arab Today Facebook,arab today facebook  Arab Today Twitter,arab today twitter Arab Today Rss,arab today rss  Arab Today Youtube,arab today youtube  Arab Today Youtube,arab today youtube

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©

arabstoday arabstoday arabstoday arabstoday
arabstoday arabstoday arabstoday
arabstoday
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
arabstoday, Arabstoday, Arabstoday