Breaking News

Firewalla App 1.67 Brings Enterprise Wi-Fi, RADIUS, and Advanced AP7 Controls to Small Businesses and Power Users Samsung To Unveil AI Vision Built With Google Gemini at CES 2026 Samsung Unveils New Odyssey Gaming Monitor Lineup COLORFUL Launches iGame GeForce RTX 50 MINI OC Series Graphics Cards for Compact PCs LG Display unveils world’s first 240Hz RGB stripe OLED panel

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Unpatched Software Led to Massive Equifax Breach

Unpatched Software Led to Massive Equifax Breach

Enterprise & IT Sep 14,2017 0

The Equifax breach that exposed sensitive data for as many as 143 million US consumers was accomplished by exploiting a Web application vulnerability, company officials said Thursday.

"Equifax has been intensely investigating the scope of the intrusion with the assistance of a leading, independent cybersecurity firm to determine what information was accessed and who has been impacted," company officials wrote in an update posted online. "We know that criminals exploited a US website application vulnerability. The vulnerability was Apache Struts CVE-2017-5638. We continue to work with law enforcement as part of our criminal investigation, and have shared indicators of compromise with law enforcement."

The flaw in the Apache Struts framework was fixed on March 6. Three days later, the bug was already under mass attack by hackers who were exploiting the flaw to install rogue applications on web servers.

The disclosure suggests that Equifax failed to update its Web applications, despite demonstrable proof the bug gave real-world attackers an easy way to take control of sensitive sites.

Equifax Chief Executive Richard Smith is expected to testify before a U.S. House of Representatives panel on Oct. 3 after nearly 40 states joined a probe of the company's handling of the breach.

The Federal Trade Commission on Thursday said it has opened an investigation into the data breach at Equifax.

Apache Struts is a framework for developing Java-based apps that run both front-end and back-end Web servers. It's relied on heavily by banks, government agencies, large Internet companies, and Fortune 500 companies.

Tags: EquifaxHacking
Previous Post
Apple Explains the 'Failed' Face ID Demo on iPhone X event
Next Post
Samsung to Create US$300 Million Fund for Auto-related Technologies

Related Posts

  • MSI has been hacked, be warned about where you download files

  • Hackers gain access to PS5 Debug Menu and show decrypted PS5 firmware files

  • HP Threat Research Shows Attackers Exploiting Zero‐Day Vulnerability Before Enterprises Can Patch

  • EA Gets hacked - 780GB of data and sourcecode stolen

  • European Supercomputers Researching Covid-19 Report Hacking Attacks

  • Microsoft Offers You $100,000 If You Can Hack the Linux-based Azure Sphere

  • Zoom Users' Data have Been on Sale on Dark Web: report

  • Indonesia's Tokopedia Inverstigates Alleged Data Leak of 91 Million Users

Latest News

Firewalla App 1.67 Brings Enterprise Wi-Fi, RADIUS, and Advanced AP7 Controls to Small Businesses and Power Users
Enterprise & IT

Firewalla App 1.67 Brings Enterprise Wi-Fi, RADIUS, and Advanced AP7 Controls to Small Businesses and Power Users

Samsung To Unveil AI Vision Built With Google Gemini at CES 2026
Consumer Electronics

Samsung To Unveil AI Vision Built With Google Gemini at CES 2026

Samsung Unveils New Odyssey Gaming Monitor Lineup
Consumer Electronics

Samsung Unveils New Odyssey Gaming Monitor Lineup

COLORFUL Launches iGame GeForce RTX 50 MINI OC Series Graphics Cards for Compact PCs
GPUs

COLORFUL Launches iGame GeForce RTX 50 MINI OC Series Graphics Cards for Compact PCs

LG Display unveils world’s first 240Hz RGB stripe OLED panel
Enterprise & IT

LG Display unveils world’s first 240Hz RGB stripe OLED panel

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed