equifax executives step down
Last Updated : GMT 09:03:51
Almaghrib Today, almaghrib today
Almaghrib Today, almaghrib today
Last Updated : GMT 09:03:51
Almaghrib Today, almaghrib today

after major hack

Equifax executives step down

Almaghrib Today, almaghrib today

Almaghrib Today, almaghrib today Equifax executives step down

There are still many unanswered questions about the Equifax breach that exposed the personal information of millions of Americans.
San Francisco - Al Maghrib Today

Equifax, the credit reporting agency, said Friday that its chief information officer and chief security officer were retiring “effective immediately.” The announcement came one week after the company revealed that a cyberattack potentially compromised confidential information of 143 million Americans. On Friday, the company also provided further details about when it had discovered the breach and which part of its website had been targeted by hackers. But many details about the breach, who was behind it and the computer security defenses at Equifax are still unclear.

What We Know

• Hackers exploited a vulnerability in website software. They gained access to certain files containing names, Social Security numbers, birth dates, addresses and driver’s license numbers. Equifax also said the thieves lifted credit card numbers for about 209,000 consumers. The company on Friday disclosed that around 400,000 British consumers may have also been affected.

• The breach was open from mid-May to July 29. That was when Equifax first detected it. The company said it had immediately worked to stop the intrusion, and the following week engaged Mandiant, an independent cybersecurity firm, to oversee an investigation into the scope and causes of the breach.

• Equifax is making personnel changes following the breach. On Friday, Equifax said its chief information officer, Susan Mauldin, and its chief security officer, David Webb, were retiring. The company said the changes were “effective immediately.”

• The breach involved the company’s web page for disputes. The company said the breach occurred in a public website application where consumers could dispute the accuracy of credit information collected by the company. The company said it noticed suspicious traffic to the application on July 29 and took the application offline the next day. It then patched the vulnerability in the application and put the application back online.

Continue reading the main story
Advertisement

Continue reading the main story
• The hack involved a known vulnerability in software used by Equifax. The New York Post first reported that hackers had exploited a vulnerability in Apache Struts, a kind of open-source software that companies like Equifax use to build websites.

On Thursday, Equifax confirmed that the breach involved a bug in Apache Struts, and identified the specific vulnerability. This security weakness was publicly identified in March and a patch to fix it had been available since then.

The rules for commercial use of open-source software can vary. Generally speaking, open-source software is built collaboratively by developers inside companies, academia and even hobbyists, and is available for free or at a low cost. Different types of Apache software are widely used all over the world.

What We Don’t Know

• It is not clear why the company’s security methods failed to stop the attack. Equifax said that it was aware of the vulnerability two months earlier and worked to patch the bug then. It is not clear why this patch was unsuccessful, and the company said that it may release additional information as its investigation into the incident continues.

Avivah Litan, a security analyst with the research firm Gartner, said that the bug alone was not to blame. “You have to have layered security controls,” Ms. Litan said. “You have to assume that your prevention methods are going to fail.”
• The perpetrators of the Equifax breach have not been identified. A group of hackers calling themselves the “PastHole Hacking Team” has claimed responsibility, and threatened to release the data if their ransom demand of 600 Bitcoin — roughly $2.5 million — was not met. In posts and communications with security researchers, members of the team claimed they were able to garner far more data than they expected when they targeted Equifax.

• That doesn’t mean this group of hackers was really responsible. Intelligence officials and security analysts in private industry said that while it is far too early to say definitively who breached Equifax, the leading theory is that the company was hit by a nation-state or hackers operating on a nation-state’s behalf. They point to the sheer scale of theft, which most likely would have required a heightened degree of sophistication to pull off without being detected.

Other security experts said it would be smart to consider motivation and intent. “Are cybercriminals going to try and sell circa 150 million records in dark web auctions? That’s nearly half the population of the United States,” said Thomas Boyden, president of GRA Quantum, a company that specialized in cyberattack incident response. “Are there standard cybercriminals out there with the purchasing power for that type of data?”

Still, the detailed personal and financial information collected by a company like Equifax can be resold on the so-called Deep Web. It is much more valuable than credit card numbers, because it has a longer life span and can be used to access all kinds of other information, like bank accounts, loan details and medical records.

• Have these hackers struck before? Mr. Boyden and others said that the breach had many parallels with previous breaches of personal information by nation-states and their contractors. Such government-affiliated hackers compile giant databases of stolen information to see if there is material that can be used for espionage or perhaps even blackmail. Using data-sifting technologies, they comb through massive collections of information to find useful material.

Source: AFP

almaghribtoday
almaghribtoday

GMT 10:41 2018 Friday ,19 January

Taiwan chip 'godfather' bullish on cryptocurrency

GMT 14:50 2018 Thursday ,18 January

YouTube toughens rules regarding

GMT 13:41 2018 Wednesday ,17 January

Remand extended for Palestinian teen

GMT 12:17 2018 Tuesday ,16 January

Russia's Lavrov lashes out at US

GMT 11:44 2018 Sunday ,14 January

Facebook move will play out

GMT 12:33 2018 Saturday ,13 January

New Eurogroup chief vows to press

GMT 09:37 2018 Friday ,12 January

S. Korea govt sends bitcoin
Almaghrib Today, almaghrib today

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

equifax executives step down equifax executives step down

 



Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

equifax executives step down equifax executives step down

 



Almaghrib Today, almaghrib today Skincare PR Performance Full Year 2017

GMT 09:22 2018 Monday ,22 January

Skincare PR Performance Full Year 2017
Almaghrib Today, almaghrib today New hunt for flight MH370 gets under way

GMT 11:03 2018 Wednesday ,24 January

New hunt for flight MH370 gets under way
Almaghrib Today, almaghrib today Modern colorful bedroom renovation

GMT 10:57 2017 Thursday ,21 December

Modern colorful bedroom renovation
Almaghrib Today, almaghrib today Puigdemont candidate for Catalan president

GMT 13:56 2018 Tuesday ,23 January

Puigdemont candidate for Catalan president
Almaghrib Today, almaghrib today Turkey detains dozens more

GMT 10:47 2018 Wednesday ,24 January

Turkey detains dozens more
Almaghrib Today, almaghrib today The Rake announces editorial updates

GMT 10:46 2018 Tuesday ,16 January

The Rake announces editorial updates
Almaghrib Today, almaghrib today Europe brings on charm and blue skies

GMT 11:51 2018 Tuesday ,23 January

Europe brings on charm and blue skies
Almaghrib Today, almaghrib today For the Variety of Interior Design Styles

GMT 10:46 2017 Tuesday ,19 December

For the Variety of Interior Design Styles
Almaghrib Today, almaghrib today US Christian tourists see deep meaning

GMT 13:44 2018 Monday ,22 January

US Christian tourists see deep meaning
Almaghrib Today, almaghrib today Amazon to open first cashierless shop

GMT 10:03 2018 Tuesday ,23 January

Amazon to open first cashierless shop

GMT 14:51 2017 Thursday ,27 April

Heba El Masry wants her dishes in every house

GMT 10:25 2018 Sunday ,21 January

One dead as accident mars fourth leg

GMT 11:28 2017 Saturday ,14 October

Squeeze on UK health gives advanced

GMT 18:01 2017 Tuesday ,10 October

Sahar underlines importance of mountainous tourism

GMT 15:14 2017 Tuesday ,12 September

In Syria, Israel intervenes at its peril

GMT 10:39 2017 Thursday ,16 November

Boeing announces $27bn from flydubai

GMT 19:35 2014 Saturday ,13 September

7 senior Brotherhood figures asked to leave Qatar

GMT 12:45 2012 Monday ,24 December

Sudan welcomes John Kerry\'s nomination

GMT 09:13 2014 Monday ,27 January

Marrakech Film Festival celebrates Japanese cinema

GMT 11:13 2016 Friday ,11 March

Probe Daesh identity leak reports

GMT 15:21 2014 Tuesday ,16 September

Beyonce and Jay Z release short film 'Bang Bang: Part 1'

GMT 08:42 2011 Monday ,12 September

Knightley glows in Elie Saab

GMT 08:00 2011 Friday ,30 September

Hurley stuns at cancer event

GMT 19:48 2017 Wednesday ,08 March

Muscat bourse recovers on scatted support

GMT 12:43 2011 Monday ,11 July

Qatar 2022 bribery was all a lie

GMT 11:08 2016 Friday ,15 April

Won't attend Doha output freeze talks

GMT 17:49 2015 Monday ,02 March

Qatar's FM meets UNODC executive director

GMT 14:07 2011 Tuesday ,22 November

2013 McLaren \"Mega Mac\"

GMT 14:54 2012 Tuesday ,10 April

Sony Pictures to invest in India’s MAA TV
Almaghrib Today, almaghrib today
 
 Almaghrib Today Facebook,almaghrib today facebook  Almaghrib Today Twitter,almaghrib today twitter Almaghrib Today Rss,almaghrib today rss  Almaghrib Today Youtube,almaghrib today youtube  Almaghrib Today Youtube,almaghrib today youtube

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©

.almaghribtoday .almaghribtoday .almaghribtoday .almaghribtoday
almaghribtoday almaghribtoday almaghribtoday
almaghribtoday
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
almaghribtoday, Almaghribtoday, Almaghribtoday