Equifax can't seem to get anything right. After exposing the personal information of potentially 143 million Americans to hackers,Watch Deputy Knight Mother in law Online the credit reporting agency is under fire yet again for the way it attempted to secure the credit reports of those affected. It turns out that process, too, was vulnerable to cybercriminals.
Now, the company is scrambling to fix what can only be called a bungled response to the data breach. For some victims, it might even be too late.
SEE ALSO: Twitter is *not having* Equifax's response to that massive hackThe problem lies in how Equifax went about implementing credit freezes — something consumers worried about identity theft and fraud should implement. Essentially, if you request a credit freeze, Equifax will no longer send out credit reports to those who request it. That means if someone tries to open up a credit card in your name, the issuing bank won't be able to get a hold of your credit report. As such, they will deny the fraudulent application.
But what happens if and when you decide that you need a new credit card? Well, then, you simply put in an unfreeze request and validate that it's actually you (and not the aforementioned criminal) with a PIN provided by Equifax. Except, here's the thing: The PIN wasn't randomly generated. Instead, it was a timestamp based upon when you asked for the credit freeze.
And you guessed it: those PINs are vulnerable to being brute-forced by hackers.
This Tweet is currently unavailable. It might be loading or has been removed.
In other words, if someone had your social security number and tried to do something shady — only to find your credit was frozen — they could unfreeze it by guessing your PIN. Not too hot, right?
This Tweet is currently unavailable. It might be loading or has been removed.
The company is taking a lot of criticism for this online, and a spokesperson told Ars Technicathat it would change the process by which PINs are generated.
"While we have confidence in the current system, we understand and appreciate that consumers have questions about how PINs are currently generated," explained the spokesperson. "We are engaged in a process that will provide consumers a randomly generated PIN. We expect this change to be effective within 24 hours."
But what if you already received one of the shady PINs? Well then, you can request that Equifax change your existing one. Which, considering how badly the company has handled pretty much every aspect of this breach, is sure to go over flawlessly.
Topics Cybersecurity
Previous:The Silent Treatment
Best Black Friday laptop deal: Save over $285 on LG gram 172024 Black Friday ads: Target, Best Buy, Walmart, Home DepotBest Black Friday deals that make great stocking stuffersBest Black Friday deals under $25: Lego, Echo, CrockEspresso machine Cyber Monday deals: Get up to 53% offBest Cyber Monday printer and scanner deals: Save up to 55% on Epson, Canon, HP, moreShop the best Black Friday deals under $50 before they're goneBest Cyber Monday keyboard deals for daily use and gamingBest Cyber Monday TV deals at Walmart include a $178 552024 Black Friday ads: Target, Best Buy, Walmart, Home DepotBrooklyn Nets vs. Orlando Magic 2024 livestream: Watch NBA for freeBest Cyber Monday 2Best Black Friday deals that make great stocking stuffers'Astro Bot' Black Friday deal: Save $10 at Best BuyBest Cyber Monday deals on books at Walmart, AmazonShop deals on unlocked phones on Cyber Monday 2024Cyber Monday Kindle book deals: Save 93% in on popular readsApple AirPods 4 vs. AirPods 3: Comparing design, features, and priceBest Cyber Monday TV deals at Amazon: TVs start at $79.99Best Black Friday deals under $25: Lego, Echo, Crock Ultimate drama: The World Series is going to Game 7 The 9 most impressive social good innovations from October Tony Hawk's Larry David costume is pretty, pretty, pretty good Brexit is so complicated, even Stephen Hawking won't touch it He's with her: How to address Bill Clinton if Hillary wins Could Britain's 'smart cities' be outsmarted by cyber hackers? Woman sexually assaulted by Brock Turner shares emotional essay about being a survivor Apple just ruined sexting How to hack your hotel's finicky wi Kim Kardashian broke her social media silence — and then deleted the posts Tegan & Sara recorded 'Stop Desire' in the Sims' language Lil Wayne says he doesn't feel 'connected' to Black Lives Matter Twitter users question the timing of a new FBI document dump White nationalist launches disturbing robocall attack on Trump rival Irish Halloween weather report prank isn't over yet Fans aren’t feeling too fantastic about Johnny Depp in ‘Fantastic Beasts’ The InstruMMents 01 will render your tape measure totally obsolete Guy found after 2 weeks in the wild was on a journey of self David Attenborough jokes about shooting Donald Trump A company backed by Alibaba just bought a big online grocer
2.7689s , 8223.15625 kb
Copyright © 2025 Powered by 【Watch Deputy Knight Mother in law Online】,Charm Information Network