Breaking News

Casio to Release G-SHOCK with Minimalist Metal Design and Even Better Fit Logitech G325 LIGHTSPEED Delivers Comfort, Style, and Game-Ready Audio Samsung Launches Glasses-Free 3D Digital Signage Globally at ISE 2026 Levelplay Launches Combat Liquid HUD and Combat Liquid SE AIO CPU Coolers Intel Launches new Intel Xeon 600 Processors for Workstation

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Unpatched Software Led to Massive Equifax Breach

Unpatched Software Led to Massive Equifax Breach

Enterprise & IT Sep 14,2017 0

The Equifax breach that exposed sensitive data for as many as 143 million US consumers was accomplished by exploiting a Web application vulnerability, company officials said Thursday.

"Equifax has been intensely investigating the scope of the intrusion with the assistance of a leading, independent cybersecurity firm to determine what information was accessed and who has been impacted," company officials wrote in an update posted online. "We know that criminals exploited a US website application vulnerability. The vulnerability was Apache Struts CVE-2017-5638. We continue to work with law enforcement as part of our criminal investigation, and have shared indicators of compromise with law enforcement."

The flaw in the Apache Struts framework was fixed on March 6. Three days later, the bug was already under mass attack by hackers who were exploiting the flaw to install rogue applications on web servers.

The disclosure suggests that Equifax failed to update its Web applications, despite demonstrable proof the bug gave real-world attackers an easy way to take control of sensitive sites.

Equifax Chief Executive Richard Smith is expected to testify before a U.S. House of Representatives panel on Oct. 3 after nearly 40 states joined a probe of the company's handling of the breach.

The Federal Trade Commission on Thursday said it has opened an investigation into the data breach at Equifax.

Apache Struts is a framework for developing Java-based apps that run both front-end and back-end Web servers. It's relied on heavily by banks, government agencies, large Internet companies, and Fortune 500 companies.

Tags: EquifaxHacking
Previous Post
Apple Explains the 'Failed' Face ID Demo on iPhone X event
Next Post
Samsung to Create US$300 Million Fund for Auto-related Technologies

Related Posts

  • MSI has been hacked, be warned about where you download files

  • Hackers gain access to PS5 Debug Menu and show decrypted PS5 firmware files

  • HP Threat Research Shows Attackers Exploiting Zero‐Day Vulnerability Before Enterprises Can Patch

  • EA Gets hacked - 780GB of data and sourcecode stolen

  • European Supercomputers Researching Covid-19 Report Hacking Attacks

  • Microsoft Offers You $100,000 If You Can Hack the Linux-based Azure Sphere

  • Zoom Users' Data have Been on Sale on Dark Web: report

  • Indonesia's Tokopedia Inverstigates Alleged Data Leak of 91 Million Users

Latest News

Casio to Release G-SHOCK with Minimalist Metal Design and Even Better Fit
Consumer Electronics

Casio to Release G-SHOCK with Minimalist Metal Design and Even Better Fit

Logitech G325 LIGHTSPEED Delivers Comfort, Style, and Game-Ready Audio
Consumer Electronics

Logitech G325 LIGHTSPEED Delivers Comfort, Style, and Game-Ready Audio

Samsung Launches Glasses-Free 3D Digital Signage Globally at ISE 2026
Consumer Electronics

Samsung Launches Glasses-Free 3D Digital Signage Globally at ISE 2026

Levelplay Launches Combat Liquid HUD and Combat Liquid SE AIO CPU Coolers
Cooling Systems

Levelplay Launches Combat Liquid HUD and Combat Liquid SE AIO CPU Coolers

Intel Launches new Intel Xeon 600 Processors for Workstation
Enterprise & IT

Intel Launches new Intel Xeon 600 Processors for Workstation

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed