Security News

Equifax Confirms March Struts Vulnerability Behind Breach
2017-09-14 20:00

Equifax divulged on Wednesday that the culprit behind this summer's breach of 143 million Americans was an Apache Struts vulnerability, CVE-2017-5638, patched back in March.

Equifax breach happened because of a missed patch
2017-09-14 17:14

The attackers who breached Equifax managed to do so by exploiting a vulnerability in its US website, the company has finally confirmed. The vulnerability in question was Apache Struts...

U.S. Watchdog Confirms Probe of Huge Equifax Data Breach
2017-09-14 15:33

A U.S. consumer protection watchdog agency said Thursday it has begun an investigation into a massive data breach at credit bureau Equifax that may have leaked sensitive information on 143 million...

Equifax Suffered Data Breach After It Failed to Patch Old Apache Struts Flaw
2017-09-14 01:38

The massive Equifax data breach that exposed highly sensitive data of as many as 143 million people was caused by exploiting a flaw in Apache Struts framework, which Apache patched over two months...

On the Equifax Data Breach
2017-09-13 17:49

Last Thursday, Equifax reported a data breach that affects 143 million US customers, about 44% of the population. It's an extremely serious breach; hackers got access to full names, Social...

Equifax's Latest Data Breach: Argentina
2017-09-13 10:32

Unsecure Customer Service Portal Exposes National ID NumbersEquifax has a new problem on its hands: Argentina. Investigators with security consultancy Hold Security discovered that Equifax's...

Canadian Class Action Suit Launched Against Equifax Over Data Breach
2017-09-13 02:03

A class action lawsuit by Canadian consumers whose data was stolen in a massive hack of US credit bureau Equifax was launched Tuesday, seeking damages of Can $550 billion ($450 billion US). read more

Cynic's Guide to the Equifax Breach: Nothing Will Change
2017-09-12 13:33

Massive Breach Turns Equifax's 'Products' Into Victims, But Don't Expect JusticeIf the Equifax breach turns out like every other massive data breach we've seen for more than a decade, after a big...

Taking a Deep Dive into the Equifax Breach
2017-09-12 10:03

A detailed analysis of the Equifax breach highlights the latest edition of the ISMG Security Report. Also, update on Russia exploiting social media to influence the 2016 presidential vote.

Apache Foundation Refutes Involvement in Equifax Breach
2017-09-11 19:02

The Vice President of the Apache Struts PMC says the attackers likely used an unknown Struts zero day or an earlier announced vulnerability.