Equifax can't seem to get anything right. After exposing the personal information of potentially 143 million Americans to hackers,emerson college love and eroticism the credit reporting agency is under fire yet again for the way it attempted to secure the credit reports of those affected. It turns out that process, too, was vulnerable to cybercriminals.
Now, the company is scrambling to fix what can only be called a bungled response to the data breach. For some victims, it might even be too late.
SEE ALSO: Twitter is *not having* Equifax's response to that massive hackThe problem lies in how Equifax went about implementing credit freezes — something consumers worried about identity theft and fraud should implement. Essentially, if you request a credit freeze, Equifax will no longer send out credit reports to those who request it. That means if someone tries to open up a credit card in your name, the issuing bank won't be able to get a hold of your credit report. As such, they will deny the fraudulent application.
But what happens if and when you decide that you need a new credit card? Well, then, you simply put in an unfreeze request and validate that it's actually you (and not the aforementioned criminal) with a PIN provided by Equifax. Except, here's the thing: The PIN wasn't randomly generated. Instead, it was a timestamp based upon when you asked for the credit freeze.
And you guessed it: those PINs are vulnerable to being brute-forced by hackers.
This Tweet is currently unavailable. It might be loading or has been removed.
In other words, if someone had your social security number and tried to do something shady — only to find your credit was frozen — they could unfreeze it by guessing your PIN. Not too hot, right?
This Tweet is currently unavailable. It might be loading or has been removed.
The company is taking a lot of criticism for this online, and a spokesperson told Ars Technicathat it would change the process by which PINs are generated.
"While we have confidence in the current system, we understand and appreciate that consumers have questions about how PINs are currently generated," explained the spokesperson. "We are engaged in a process that will provide consumers a randomly generated PIN. We expect this change to be effective within 24 hours."
But what if you already received one of the shady PINs? Well then, you can request that Equifax change your existing one. Which, considering how badly the company has handled pretty much every aspect of this breach, is sure to go over flawlessly.
Topics Cybersecurity
iPhone umbrellas? This hack prevents autoVenezuela vs. Canada 2024 livestream: Watch Copa America quarter final for freeWordle today: The answer and hints for July 5Mars may have harbored a shocking amount of water, scientists findBest KitchenAid deals: Up to 27% off KitchenAid at AmazonChina’s SAIC extends partnership with CATL on auto battery swapping · TechNodeTencent limits minors to 15 hours of gaming during 2025 winter break · TechNodeIntuitive Machines' moon landing succeeds in bold attemptWeChat removed from US’s soU.S. spacecraft on the moon finally sends home the money shotBest Home Depot deals: Save big on backyard items and much more01.AI refutes rumors of selling teams to Alibaba · TechNodeSwiatek vs. Martic 2024 livestream: Watch Wimbledon for freeEurope’s first selfWebb telescope makes curious find in deep space: alcoholCES 2025: Ling.ai debuts childREI 4th of July Sale: Best REI dealsJD.com gradually rolls out Alipay integration as China pushes for eSamsung’s Xi’an NAND flash factory reportedly cuts production by over 10% · TechNodeNASA finds doomed asteroid that exploded in Mars atmosphere This openly gay football player is about to make history 'Watchmen': Everything you need to know from the comic after Episode 5 Ed Sheeran celebrated the 7 Trump was caught practicing his speech, so the internet made jokes Humans are an unknown in California's new earthquake warning system Disney+ launches in Australia, with (almost) every Simpsons episode Bird bets e 10 new Christmas TV movies from Netflix, Hulu and more Macy's data breach sees customer payment details stolen Trump finally says why he will skip the White House Correspondents' Dinner Facebook blocks famous nude artwork and feels the internet's ire Hey Windows users, Apple still loves you (according to this job listing) Unlikely animal friendship blossoms when a carriage Watch LeBron James high five himself after he's left hanging Apple wants to fix the mess that was iOS 13 in time for its next major release 'The Mandalorian' concept art proves Baby Yoda was always adorable Yeah, the Oscars may not be the best thing to talk about on your next date Google Stadia day one review: It works, but only for early adopters Valve announces 'Half Singapore's Ministry of Defence suffers its first successful cyberattack
3.4967s , 8289.078125 kb
Copyright © 2025 Powered by 【emerson college love and eroticism】,Openness Information Network