• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Equifax Hacked - 143M US Consumers could be affected

Page 8 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.
Yeah, I also think the number of people that are freezing their credit (and opting out of prescreened offers as a result) have to be hurting their bottom lines.

[edit: freeze doesn't opt you out like I thought it did]
 
Last edited:
So if you don't freeze your credit and you become an actual victim, is none of it reversible? Are we in any way protected after the fact?

Or are people going through the trouble to freeze because they don't want to go through the hassle later if something does happen?
 
Yeah, I also think the number of people that are freezing their credit (and opting out of prescreened offers as a result) have to be hurting their bottom lines.

Something I haven't confirmed yet - does freezing your credit automatically opt you out of pre-screened offers? Or is possible to freeze your credit and still get pre-screened offers?
 
Something I haven't confirmed yet - does freezing your credit automatically opt you out of pre-screened offers? Or is possible to freeze your credit and still get pre-screened offers?
Good point, ftc says no, it doesn't:
https://www.consumer.ftc.gov/articles/0497-credit-freeze-faqs said:
Does a credit freeze stop prescreened credit offers?
No. If you want to stop getting prescreened offers of credit, call 888-5OPTOUT (888-567-8688) or go online.
 
Just read this on Ars this morning:

https://arstechnica.com/information...caused-by-failure-to-patch-two-month-old-bug/

"We know that criminals exploited a US website application vulnerability. The vulnerability was Apache Struts CVE-2017-5638. We continue to work with law enforcement as part of our criminal investigation, and have shared indicators of compromise with law enforcement."

Why was such sensitive data accessible via an outside-facing website vulnerability?
 
So if you don't freeze your credit and you become an actual victim, is none of it reversible? Are we in any way protected after the fact?

Or are people going through the trouble to freeze because they don't want to go through the hassle later if something does happen?
You can always dispute via annualcreditreport.com. A much easier process than before the govt set that up.
 
"We know that criminals exploited a US website application vulnerability. The vulnerability was Apache Struts CVE-2017-5638. We continue to work with law enforcement as part of our criminal investigation, and have shared indicators of compromise with law enforcement."

Why was such sensitive data accessible via an outside-facing website vulnerability?
Patch was available 2 months prior... that's almost the amount of time a big company takes to test & implement fixes. 😀
 
Some good information about credit freeze (if you want to go that route), especially the cost of doing so for each state- https://www.usatoday.com/story/mone...e-your-credit-protect-your-identity/657304001

Equifax shares are down 31% since the announcement, $5 billion USD of value is wiped out - http://www.marketwatch.com/story/eq...re-erasing-5-billion-in-market-cap-2017-09-14

Well at least those execs sold their stock. Wouldn't want to hurt their bottom line.
 
So, how did she land that position if her background is in music, and no security or IT experience? 😵
casting couch?

OK in (some) seriousness, getting into a C-suite has as much to do with mastering politics than with merit. I certainly would never hire an unqualified person for a senior technical role but then again I'm not a CEO!
 
Anybody know if Equifax was even running their own web servers? Or were they using a 3rd party to handle that since their main IT person would have no idea how to setup a web server (and in Susan Mauldin's mind - Apache, why do Indians of the southwest keep sending me info about some critical web thingy, guess I will just put them in my spam box, I don't have time for this Indian web nonsense, now back to my best music works) much less keep one up to date 😕.

I would hate to see how their internal machines are setup - wonder how many passwords are "password"?

Just more evidence that is not what you know but who you know.

Since this basically hit nearly every household in the US, 9~400,000 in the UK, and some in Canada, who gets to be held accountable? Or is it not what you know but who you know again?

At least she should be able to make a song to comfort herself knowing we will all be dealing with this for the rest of our lives, way to go Susan Mauldin 😵😡😕😳🙁.
 
Yeah, I also think the number of people that are freezing their credit (and opting out of prescreened offers as a result) have to be hurting their bottom lines.

[edit: freeze doesn't opt you out like I thought it did]

I just got a letter from Equifax saying they were opting me out of prescreened offers for 5 years. If I wanted it permanent, fill out this form. I did a freeze the day the story broke.
 
Back
Top