Homepage / Technology / Equifax's then-CEO waited three weeks to inform board of massive data breach, testimony says
2024 Ücretsiz Demo Oyna & Slot Bonus Mostbet Türkiye Çevrimiçi Kumarhane Mostbet Casin Glory Casino Pra Çekme İşlemi: Nasıl Yapılır? Detaylı Anlat 1win Casino Resmi Site, Bahis Ofisi, Slotlar, Oyun Makineler Игры В Онлайн Казино Бесплатно и Без Регистраци Игры В Онлайн Казино Бесплатно и Без Регистраци 1xbet Обзор 2024 ️ Отзывы Игроков И Рейтинг Эксперто Online Casino Games Play Now And Win Bi Glory On Line Casino Android Ve Ios Cihazlar Için Mobil Uygulamayı Ücretsiz Indiri Türkiyede Fame Casino Giriş Çevrimiçi Slot Ve Diğer Oyunları Oynay Mostbet İncelemesi 2024 » Spor Bahisleri, Giriş & Oyunla Başkanın ilk icraatı işçi kıyımı olmuştur! 719 7slots kumarhane 90 Business Online Solutions What Is a Board Analysis? The Importance of Planning and Programs Development How Board Governance Software Improves Meetings and Governance How to Craft a Successful Board Meeting Reminder Benefits of a Virtual Data Room for Bankruptcy VDR Example for Business Hong Kong ユースカジノの登録方法を初心者にも分かりやすく図解入りで解説 チェリカジ 5 Как быстро пополнить счет в Казино Х в любой валюте Официальный сайт Up X казино и мгновенные игры Paşa Casino Mobil Uygulama 2025 Giriş Üyelik Bonusu Freespin No Deposit Bonus Casino Free Spins In New Zealand What Are The Best Online Casinos For Real Money Pokies And Bonuses In Australia Дэдди Казино официальный сайт Джойказино: информация про официальный сайт Glory Casino giriş için buraya tıkla ve Türkiyede en popüler casino kullanıcısı ol Les Gambling establishments en Ligne en France 2024 200% Reward + 300 Free Rotates LevelUp Internet casino Melbourne En İyi ve Güvenilir Casino Siteleri Canlı Casino Siteleri 2023 Listesi En İyi ve Güvenilir Casino Siteleri Canlı Casino Siteleri 2023 Listesi Le meilleur casino en ligne franзais Extra Casino avec le dйpфt minimal le in addition bas Yeni Casino Siteleri ᐈ Çevrimiçi Kumarhaneler Mart 2024 Les gambling establishments en ligne proposent une grande variйtй de jeux de internet casino gratuits. Türkiye’deki Resmi Web Sitesi Google Play, Türkiye’de kumar oyunlarına izin verecek Her Gün Tatil Olsa ORDU’DA PAZARTESİ GÜNÜ FINDIK FİYATI NASIL? كازينو اون لاين الكازينوهات الممتازة على الإنترنت ألعاب الكازينو المباشرة مينا كازينو العر Google Play, Türkiye’de kumar oyunlarına izin verecek Domain Sorgulama & Domain Fýrsatlarý Canlı Casino Siteleri: 2024 Güvenilir Siteler Seçilmiştir Golden Easter Slot İncelemesi 2024, Demoyu Ücretsiz Oynayın Golden Easter Slot İncelemesi 2024, Demoyu Ücretsiz Oynayın 1xbet Türkiye Giriş Empieza Kayıt 202 Kumar Ve Kumarhaneler Hakkında Pek İlginç 21 Bilgi Kumarhane Doğru Yazımı Nedir? Tdk Ile Kumarhane Kelimesinin Doğru Yazılışı! Mobilbahiste En İyi Kumar Bonusları Ve Kazançlar Mobilbahis Giriş Sayfası On Line Casino Siteleri En Iyi Casino Siteleri 2024 Mostbet: Türkiye’de Internet Casino Mostbet Online Slotlar Ve Canlı-casin Pin Up Casino Oyna Türkiye, Pinup’un Sah Web Sites Ifade Haberleri Son Dakika Ifade Hakkında Güncel Haber Ve Bilgiler “önceliğimiz Transferin Önünü Açmak, Görüştüğümüz Yerler Var” On Line Casino Nuh’un Gemisi Deluxe Resort & Spa, Kıbrıs The Benefits of Document Management Bonus Veren Siteler 3 000 Den Fazla Online Oyunu Ücretsiz Oyna En Tehlikeli Kumar Oyunu Ekşi Sözlük Deneme Bonusu Veren Siteler Deneme Bonusu 2024 Explore the Magic of WildCardCity Güvenilir Bahis Siteleri En İyi Kumar Siteleri Balıkesir Triatlonuna Avrupadan Ödül Tricks of the Aviator gambling establishment game by Spribe Çevrim Içi Kumar Siteleri “bonus” Yalanıyla Kandırıyor En Güvenilir Canlı On Line Casino Siteleri Xbetting-tips Com Uncovering the Abundant Tapestry of Ozwin Gambling establishment Evaluating Board Portal Providers Uncovering the Wealthy Tapestry of Ozwin On line casino Electronic Data Area Providers Evaluation Cobra Internet casino: Raising the Australian On the internet Video gaming Practical experience 4 Things to Search for in Safeguarded Cloud Safe-keeping Fastpay On line casino Australia – Simple and No-Taxation Wagering Web page officielle franзaise de Joka Gambling establishment The Software Development Universe Game Woo Internet casino – Enjoy Slot machine games around australia Ostdeutsche Biersorten What Are Virtual Data Rooms? Vitamin D Receptor Polymorphisms Revue du Casino BlackLabel Faktory, kterй ovlivnujн hodnocenн ceskэch online kasin How to Make the Most of Your Web Development Organization and Advertising Efforts L’essor des casinos en ligne en France Boost Meeting Efficiency With Boardroom Technology Developments WildJoker Casino WildCardCity On line casino – Guaranteed Australian Gambling Portal New Post WildCardCity Casino – The Ideal On the internet Gambling establishment within australia Modern Technologies Produce Sharing Documents Online Faster and More Protect Free Virtual Info Room pertaining to Speedy Due Diligence A Review of Data Area Software For people who do buiness Five Board Bedroom Features Which will help You Acquire a More Productive Boardroom Electronic Systems To your Business Understanding Legal Terms and Laws in Today’s World The Laws and Contracts of Hollywood: A Sunset Blvd. Tale Legal Discussion Between Johnny Cash and Antonin Scalia Legal Insights: What Teens Should Know Legal Issues and Exceptions: What You Need to Know

Technology

Equifax's then-CEO waited three weeks to inform board of massive data breach, testimony says

Equifax‘s former chief executive waited nearly three weeks to tell the company’s board of directors about the now infamous data breach, as a group of company and outside security experts scrambled to figure out what had happened, according to written testimony prepared for his visit to Capitol Hill on Tuesday.

Richard Smith, Equifax’s former CEO who abruptly retired last week, learned about the hack on July 31 and hired outside legal and investigative experts and contacted federal law enforcement the same week. But he didn’t inform the company’s board for another 20 days.

In the meantime, King & Spalding, a law firm, and Mandiant, a cybersecurity forensic consulting firm, investigated what happened. Mandiant and Equifax worked “literally around the clock” to identify and understand unauthorized activity on its network and the scale of the hack, including whether personal information was taken.

The company also contacted the FBI on Aug. 2, he says, and the agency has an ongoing investigation.

Smith’s prepared remarks were released Monday in advance of his appearance before the House Energy and Commerce Committee on Tuesday. He’s also scheduled to testify before the Senate Banking and the Senate Judiciary committees on Wednesday and the House Financial Services Committee on Thursday.

But the former executive has also met with the House Oversight Committee. In a letter Monday, the committee’s ranking Democrat, Elijah Cummings from Maryland, urged Chairman Trey Gowdy of South Carolina to investigate Equifax’s handing of the incident, especially why it waited so long to tell the public.

“Equifax conceded that the FBI never instructed or directed the company to withhold from the public information about the breach,” the letter said. Rep. Cummings is also seeking all communication between Equifax and a government agency that warned companies in March about a glitch in software that needed to be fixed.

According to the testimony, on Aug. 15, Smith learned that consumer personal information had been taken in the hack, and he requested a detailed briefing. Two days later, Smith had a “senior leadership team meeting to receive the detailed briefing on the investigation.” The testimony doesn’t say who attended that meeting.

Smith says he notified the board’s lead independent director, Mark Feidler, and executives who run Equifax’s business units about the breach on Aug. 22.

The full board was told of the breach and the investigation of it on Aug. 24 and 25, according to the testimony. They began developing a plan to help affected consumers.

Smith convened a Sept. 1 board meeting to discuss the size of the breach, the ongoing investigation, and the company’s public disclosure and response.

Smith’s prepared remarks were released Monday in advance of his appearance before the House Energy and Commerce Committee on Tuesday. He’s also scheduled to testify before the Senate Banking and the Senate Judiciary committees on Wednesday and the House Financial Services Committee on Thursday.

The timeline in Tuesday’s testimony doesn’t specifically say who inside the company other than Smith and the security team knew about the breach before he says he told management and the board. But among the swirl of state and federal investigations that have opened since the breach was disclosed to the public on Sept. 7 are stock sales by three company insiders — the chief financial officer and two business heads — in early August.

Unusual trading activity in Equifax options on Aug. 21, now known to be one day before Smith says he told the lead director, also has drawn scrutiny.

An Equifax spokeswoman has said the three executives weren’t aware of the breach when they sold $1.8 million of stock on Aug. 1 and 2. The spokeswoman wasn’t immediately available on Monday.

Equifax has been largely criticized for its handling of the response. Concerned people initially encountered a flawed website, jammed customer service phone lines and confusing information about what remedies were available. It was “overwhelming,” Smith says in the testimony, “and, regrettably, mistakes were made.”

Brian Krebs, who writes about cybersecurity, says Equifax’s response given its one month to prepare for a public onslaught, makes the incident even worse. “It boggles my mind how they have mishandled this,” he said.

It has been known that Equifax didn’t fix a flaw in its software that was known to the public for months. That flaw was announced in March, when the U.S. Department of Homeland Security told Equifax and many other companies that use the software about it, but Equifax didn’t utilize the fix offered by the software developer right away.

“It was this unpatched vulnerability that allowed hackers to access personal identifying information,” Smith says in the written remarks.

Source: Tech CNBC
Equifax's then-CEO waited three weeks to inform board of massive data breach, testimony says

Comments are closed.