Photonews Logo Photonews logo
  • Home
  • Pakistan
    • Punjab
    • Sindh
    • Khyber Pakhtunkhwa
    • Azad Jammu Kashmir
    • Balochistan
    • Gilgit – Baltistan
  • World
  • Business
  • Entertainment
  • Videos
    Gen V Season 2 trailer
    Videos

    Gen V Season 2 Trailer Cast, Plot, Premiere Details

    July 26, 2025 3 Min Read
    IShowSpeed Daniel La Belle race
    Videos

    IShowSpeed Beats Daniel La Belle in 40-Meter Race, Hits 41M Subscribers

    June 24, 2025 2 Min Read
    Cardi B new single Outside
    Videos

    Cardi B’s ‘Outside’ Single Sparks Buzz Over Offset and Stefon Diggs

    June 20, 2025 2 Min Read
  • Sports
  • Technology
  • Offbeat
  • Blog
  • Contact
Reading: Criticism of Equifax data breach response mounts, shares tumble
PhotoNews Pakistan PhotoNews Pakistan
Font ResizerAa
Search
  • Home
  • Pakistan
    • Punjab
    • Sindh
    • Khyber Pakhtunkhwa
    • Balochistan
    • Azad Jammu Kashmir
    • Gilgit – Baltistan
  • World
  • Business
  • Entertainment
  • Videos
  • Sports
  • Technology
  • Offbeat
  • Blog
  • Contact
Have an existing account? Sign In
Follow US
© 2022 Photonews. All Rights Reserved.
Equifax data
PhotoNews Pakistan > Business > Criticism of Equifax data breach response mounts, shares tumble
BusinessTechTop News

Criticism of Equifax data breach response mounts, shares tumble

Web Desk
By Web Desk Published September 10, 2017 8 Min Read
Share
SHARE

Equifax Inc (EFX.N) faced a storm of criticism on Friday over a hack that may have compromised personal data for some 143 million Americans, with consumers clamoring for answers and cyber security experts questioning the response to the massive breach.

Lawmakers and regulators joined the chorus, scrutinizing the company’s follow-up as it encouraged potential victims to sign up for free credit monitoring services. Equifax shares tumbled as much as 18 percent, the biggest one-day drop in 16 years, as complaints mounted that the company’s online and phone support systems were either broken or insufficient.

The hack, among the largest ever recorded, was especially alarming due to the richness of the information exposed, which included names, birthdays, addresses and Social Security and driver’s license numbers, cyber researchers said.

”Another day, another dumpster fire in cyber security,” said Ryan Kalember, senior vice president of cyber security firm Proofpoint. The breach was “especially troubling” because companies that have suffered data breaches typically offer free credit monitoring services from firms like Equifax, which has now itself suffered a huge cyber attack, he added.

Bigger hacks, such as those disclosed by Yahoo last year, did not put as much sensitive information at risk.

Responding to criticism, Equifax apologized in a corporate statement Friday evening for any inconvenience caused by its support website or call center.

It said the site was now functioning properly and that it had tripled the size of its call center team to more than 2,000 agents, with more to be added.

Moody’s Investors Service said on Friday that the breach would impede Equifax’s growth over the next three to four quarters and hurt its reputation as a custodian of consumer data.

The company would incur significant costs to remediate the breach, potential litigation and regulatory action, and higher cyber insurance premiums, Moody’s said. But it said that Equifax’s rating and stable outlook were not affected.

Credit monitoring services such as Equifax collect vast amounts of financial information from consumers without their knowledge, working with banks and other lenders, for example, to track the creditworthiness of individuals.

At least five state attorneys general, including those of New York and Illinois, said they were formally investigating the breach.

Two proposed class-action lawsuits, one filed in Portland, Oregon, and one in Atlanta, alleged that Equifax had been negligent in protecting consumer data.

Atlanta-based Equifax disclosed the breach on Thursday and said the company had discovered it on July 29. It said hackers accessed accounts between mid-May and July, and some British and Canadian residents were also affected.

The company has not said specifically how attackers were able to break in or why it did not disclose the breach sooner.

Robert W. Baird & Co analyst Jeffrey Meuler wrote to clients that the hackers used a flaw in open-source Struts software, distributed by the nonprofit Apache Software Foundation.

Meuler in the note did not provide the source of the information, and he did not respond to requests for comment.

Equifax did not respond to questions seeking comment.

Struts is widely used in major companies, and an Apache spokeswoman said it appeared that Equifax had not applied the patches for flaws that have been discovered this year.

In March, Apache warned of one flaw, and attack code soon circulated, with hackers exploiting taking advantage soon after that, researchers said.

The Federal Bureau of Investigation said it is tracking the data breach. A US intelligence official told Reuters it was too soon to know if the attack was strictly criminal in nature or if it had the backing of a foreign government.

Waived legal rights?

Equifax drew scrutiny for terms of service that accompanied a free credit monitoring offering to all US consumers worried about the data breach that it promoted on its support website.

Agreeing to the terms appeared to forfeit some rights to sue individually or join a class-action suit, but Equifax said on its website that the arbitration clause applied only to the credit monitoring offer and not to any damages caused by the recently discovered data breach.

The US Consumer Financial Protection Bureau, however, still had concerns with the terms associated with the free credit monitoring offer. It is “troubling that Equifax is forcing people to waive legal rights in order to receive fraud monitoring after the company’s breach put their personal information at risk,” a CFPB spokesman said in a statement.

Some cyber security experts criticized Equifax for setting up a support website under a different domain than the company’s main website, mirroring a tactic that can be used to fraudulently collect data.

Calls for hearings

The US House of Representatives Financial Services Committee and the House Energy and Commerce Committee both announced plans to hold hearings examining the breach.

Representative Ted Lieu asked Equifax why it waited so long to disclose the breach and has asked the House Judiciary Committee to hold a hearing with the three major credit reporting agencies to explain how they will prevent future attacks.

Within the past two years, Equifax has had W-2 federal wage tax data stolen from its website and a subsidiary. Larger rival Experian Plc (EXPN.L) reported a data breach two years ago involving some 15 million people.

The Republican and Democratic leaders of the Senate Finance Committee wrote to Equifax with a series of questions about its required safeguards and asked that committee staffers be briefed by Sept. 15.

Senator Richard Blumenthal pointed to Equifax’s previous incidents and said it had “no excuse” for not strengthening cyber security, and called on the US Federal Trade Commission to investigate.

Equifax shares closed down 13.7 percent at $123.23 after touching a more than seven-month low.

Shares of rival TransUnion (TRU.N) finished down 3.8 percent, while Experian closed down 0.7 percent on the London Stock Exchange.

Equifax handles data on more than 820 million consumers and 91 million businesses worldwide and manages employee information from more than 7,100 employers, according to its website. (Reuters)

Share This Article
Facebook Twitter Pinterest Whatsapp Whatsapp LinkedIn Email Copy Link Print
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Advertisement

HBL Saving Made Easy
HBL Saving Made Easy

Recent Posts

PTA Chairman reinstatement

IHC Reinstates PTA Chairman Hafeez-ur-Rehman After Day of Legal Drama

NADRA Mega Centers in Karachi

NADRA Opens 3 New Mega Centers in Karachi

Imran Khan letter CJP Yahya Afridi from Adiala Jail

Imran Khan Writes Emotional Letter to CJP from Adiala Jail

Post Archives

More Popular from Photonews

Arab-Islamic Summit Israel Qatar
Top NewsWorld

Arab-Islamic Summit Demands Sanctions on Israel for Gaza War, Qatar Attack

3 Min Read
Gaza video game
Offbeat

Former Israeli Soldier’s Gaza Video Game Sparks Controversy

2 Min Read
PSX Saudi defence pact
Business

PSX Surges 1,700 Points After Pakistan-Saudi Defence Pact Signing

3 Min Read
Entertainment

Lazawal Ishq’ Pakistan’s Steamy Love Island Style Show from Istanbul

Ayesha Omar announced her exciting new project: Lazawal Ishq, a bold reality dating show filmed in…

September 16, 2025
Pakistan

Imaan Mazari Demands CCTV Footage from Islamabad High Court Incident

Lawyer Imaan Mazari asked the Islamabad High Court (IHC) to provide CCTV footage from a courtroom…

September 13, 2025
Punjab

Punjab Intermediate Part-II Results 2025: Date, How to Check Online & SMS

The Punjab Board of Intermediate and Secondary Education (BISE) has announced the Punjab Intermediate Part-II results…

September 16, 2025
Business

PIA Posts First Half-Year Profit in 20 Years Ahead of 2025 Privatization

Pakistan International Airlines (PIA) announced a pre-tax profit of Rs11.5 billion ($40.64 million) for the first…

September 16, 2025
PhotoNews Pakistan

Always Stay Up to Date

Subscribe to our newsletter to get our newest articles instantly!

Categories

  • World
  • Pakistan
  • Punjab
  • Sindh
  • Khyber Pakhtunkhwa
  • Balochistan
  • Azad Jammu Kashmir

 

  • Top News
  • Business
  • Entertainment
  • Sports
  • Videos
  • Tech
  • Offbeat
  • Blog

© 2024 Phototnews
All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?