Sponsored Community Message Browse Free. Go deeper with Full Access. Free visitors can browse public knowledge. Full Access unlocks participation, member areas, and an ad-free experience.

Giant Equifax data breach: 143 million people could be affected-gctid248704

Started by Ajamu, Sep 08, 2017, 04:35 AM

Previous topic - Next topic
https://www.clickondetroit.com/money/how-to-find-out-if-youre-affected-by-the-equifax-hack


How to find out if you're affected by the Equifax hack

143 million people could be affected

By KATIE LOBOSCO
Posted: 7:35 PM, September 07, 2017Updated: 10:07 PM, September 07, 2017

NEW YORK (CNNMoney) - You may have never used Equifax yourself -- or even heard of it -- but the credit reporting agency could still have a treasure trove of your personal information.

Equifax said Thursday that 143 million people could be affected by a recent data breach in which cybercriminals stole information including names, Social Security numbers, birth dates, addresses, and the numbers of some driver's licenses.

Additionally, credit card numbers for about 209,000 people were exposed, as was "personal identifying information" on roughly 182,000 customers involved in credit report disputes.

Equifax is one of three nationwide credit-reporting companies that track and rate the financial history of U.S. consumers. It gets its data -- without you even knowing -- from credit card companies, banks, retailers, and lenders.

Equifax will not be contacting everyone who was affected, but will send direct mail notices to those whose credit card numbers or dispute records were accessed.

The company suggests you sign up for credit file monitoring and identity theft protection. It is providing free service for one year through TrustedID Premier -- whether or not you've been affected by the breach.

To enroll, go to www.equifaxsecurity2017.com and click on the Check Potential Impact tab. You must submit your last name and last six digits of your Social Security number there. At that point you'll be given a date when you can return to the site and sign up for the service.

The site says once you've submitted your information you will receive a message indicating whether you've been affected. But it's unclear when or how you will receive that message.

The company also recommends that you review account statements and credit reports yourself to check for incidents of fraud. You can request a copy of your credit report online at www.annualcreditreport.com. You are allowed a free copy once a year from each of the three credit reporting agencies: Equifax, Experian, and TransUnion.

If you see any unauthorized activity, immediately report it to your bank and/or credit card company. If you believe you've been a victim of identity theft, you should also contact law enforcement.

Another way to protect yourself is by immediately placing fraud alerts on your credit reports, according to credit expert John Ulzheimer, who previously worked at FICO and Equifax. This means that a lender must contact you to verify your identity before it issues credit in your name. You can place an alert on your report for free by contacting one of the credit agencies, which is required to notify the other two. It will last for 90 days and can be renewed.

Since cybercriminals may have accessed what Ulzheimer calls the "crown jewels of information" at Equifax, he also suggests putting a long term freeze on your credit.

A freeze takes your credit report out of circulation. If someone else goes to take out a loan in your name, the lender will not be able to pull your report and therefore cannot extend the credit. If you want to take out a loan yourself, you'll have to contact the reporting agency to temporarily lift the freeze.

Fees to freeze your account vary by state, but commonly range from $5 to $10.

"It's a pretty extreme measure, but when 143 million people have been exposed like this, I think you have to take it," Ulzheimer said.

The Federal Trade Commission's website, www.ftc.gov/idtheft, also offers information about how to protect yourself against fraud.

If you have more questions for Equifax, the company has set up a designated call center at 866-447-7559.

https://www.cnet.com/how-to/how-to-survive-the-equifax-data-breach-2017/

Here's your guide to surviving the Equifax data breach

If you think your data was exposed, read this.

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • BY
  • SHARON PROFIS
    ').'")."n
"'

SEPTEMBER 7, 2017 8:00 PM PDT


One of the largest data breaches in history has left 143 million people wondering if their highly personal data has been exposed to hackers. For now, Equifax doesn't explicitly tell you if you were a victim, and in 99.99 percent of cases (yes, literally), it won't notify you by direct mail. But, if you're concerned you're vulnerable to identity theft because of the breach, this guide is for you.

Read more: Everything you need to know about the Equifax hack

But first: A quick recap

Equifax, one of the three major credit bureaus, lost control of customer data that included social security numbers, home addresses, credit card numbers, drivers license numbers and birth dates. The company estimates that the data of 143 million people were exposed, which equals roughly half the US population. That means that the chances you are affected are pretty high.

Even though Equifax set up a program to help people protect their potentially-exposed data, it might not give everyone complete confidence in keeping their identities secure. Here's why:

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • Equifax's enrollment program doesn't explicitly tell you if your data was a part of the breach. The company only makes it clear to those who weren't exposed. It's confusing. (We reached out to Equifax for comment and haven't heard back.)
  • The breach could have started as early as mid-May 2017. That means that the data of 143 million people were exposed for more than three months. It's unclear what the hackers did with the data during those months.
  • Those who would like to be prudent about protecting their identity might have to wait a week before they are officially enrolled in Equifax's protection program. For some, that's just not fast enough.
').'")."n[/list]"'

You don't have to wait to enroll in Equifax's program to start protecting yourself against the hack. Here's what you can do.

Step 1: Enroll in Equifax's program

Equifax's own identity protection program isn't perfect, but it will help ensure you're using every available resource to protect your identity. We put together a guide on how to follow the program here. Note that even if the enrollment tool indicates you weren't exposed, you're still eligible for a free one-year subscription to Equifax's protection services. (Not a bad idea given the frequency of breaches.)

Some language in the terms of service for Equifax's program, Trusted ID, have raised concerns that enrollment in the program prevents consumers from participating in a class-action lawsuit. CNET is looking into this and reached out to Equifax for comment. We'll update this story when we know more.

Step 2: Check your credit reports

More than three months passed between the time the breach may have started and now. We're not sure if the data of those affected was used maliciously during that period, so consider looking through your credit reports for any suspicious activity. The federal government guarantees everyone a free annual credit report from the three major bureaus -- yes, including Experian. You can get those reports here.

When looking through your reports, keep an eye out for new accounts you didn't open, late payments on debts you don't recognize and any other activity that looks unfamiliar.

If you suspect someone used your identity to open credit cards, take on loans, or re-open closed accounts, contact the credit card company's fraud department immediately. You are not responsible for charges made on a fraudulent card, but you have to report the issue in a timely manner. Once you've reported the fraudulent credit, follow this guide to recovering from identity theft.

Step 3: Freeze your credit

It's still early days, so even if your credit report comes back clean, remain vigilant about protecting your credit. One of the most reliable ways to prevent someone from opening credit cards in your name is to place what's called a "credit freeze."

When you freeze your credit, you (or anyone masquerading as you) will be required to un-freeze your account by providing the PIN you got when you froze your credit.

To freeze your credit, contact each of the credit bureaus using these phone numbers:

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • Equifax: 1-800-349-9960
  • Experian: 1‑888‑397‑3742
  • TransUnion: 1-888-909-8872
    ').'")."n
"'

The process is usually automated and can be completed within a few minutes. Just be sure to write down your PINs in a secure place.

Step 4: Set a fraud alert

A fraud alert is another way to make it hard for identity thieves to open accounts in your name. When a fraud alert is set, credit card companies will be required to verify your identity before opening an account. That, combined with the credit freeze, is a great way to keep your credit secure.

To set a fraud alert, contact just one of the credit card bureaus and ask for an initial fraud alert. Once the alert is set, it will last 90 days. After that, you'll have to renew it. Here are the appropriate phone numbers for the bureaus (remember, just call one):

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • Equifax: 1-888-766-0008
  • Experian: 1-888-397-3742
  • TransUnion: 1-800-680-7289
    ').'")."n
"'

Step 5: Repeat the process for your loved ones

Because Equifax is not notifying those affected through direct mail or email, some people will be left without the resources or tech-savvy to protect their identities or find out if they were compromised. With that in mind, consider helping your loved ones -- especially the elderly without computer access -- with the above steps.

Watch out for tax season

It's still to early to know if and how the data exposed in Equifax's breach will be misused, but one major concern comes around during tax season. Identity thieves can use stolen social security numbers to file fraudulent tax returns and receive refunds.

QuoteAjamu;248799 wrote: https://www.cnet.com/how-to/how-to-survive-the-equifax-data-breach-2017/

Here's your guide to surviving the Equifax data breach

If you think your data was exposed, read this.

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • BY
  • SHARON PROFIS
    ').'")."n
"'

SEPTEMBER 7, 2017 8:00 PM PDT


One of the largest data breaches in history has left 143 million people wondering if their highly personal data has been exposed to hackers. For now, Equifax doesn't explicitly tell you if you were a victim, and in 99.99 percent of cases (yes, literally), it won't notify you by direct mail. But, if you're concerned you're vulnerable to identity theft because of the breach, this guide is for you.

Read more: Everything you need to know about the Equifax hack

But first: A quick recap

Equifax, one of the three major credit bureaus, lost control of customer data that included social security numbers, home addresses, credit card numbers, drivers license numbers and birth dates. The company estimates that the data of 143 million people were exposed, which equals roughly half the US population. That means that the chances you are affected are pretty high.

Even though Equifax set up a program to help people protect their potentially-exposed data, it might not give everyone complete confidence in keeping their identities secure. Here's why:

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • Equifax's enrollment program doesn't explicitly tell you if your data was a part of the breach. The company only makes it clear to those who weren't exposed. It's confusing. (We reached out to Equifax for comment and haven't heard back.)
  • The breach could have started as early as mid-May 2017. That means that the data of 143 million people were exposed for more than three months. It's unclear what the hackers did with the data during those months.
  • Those who would like to be prudent about protecting their identity might have to wait a week before they are officially enrolled in Equifax's protection program. For some, that's just not fast enough.
').'")."n[/list]"'

You don't have to wait to enroll in Equifax's program to start protecting yourself against the hack. Here's what you can do.

Step 1: Enroll in Equifax's program

Equifax's own identity protection program isn't perfect, but it will help ensure you're using every available resource to protect your identity. We put together a guide on how to follow the program here. Note that even if the enrollment tool indicates you weren't exposed, you're still eligible for a free one-year subscription to Equifax's protection services. (Not a bad idea given the frequency of breaches.)

Some language in the terms of service for Equifax's program, Trusted ID, have raised concerns that enrollment in the program prevents consumers from participating in a class-action lawsuit. CNET is looking into this and reached out to Equifax for comment. We'll update this story when we know more.

Step 2: Check your credit reports

More than three months passed between the time the breach may have started and now. We're not sure if the data of those affected was used maliciously during that period, so consider looking through your credit reports for any suspicious activity. The federal government guarantees everyone a free annual credit report from the three major bureaus -- yes, including Experian. You can get those reports here.

When looking through your reports, keep an eye out for new accounts you didn't open, late payments on debts you don't recognize and any other activity that looks unfamiliar.

If you suspect someone used your identity to open credit cards, take on loans, or re-open closed accounts, contact the credit card company's fraud department immediately. You are not responsible for charges made on a fraudulent card, but you have to report the issue in a timely manner. Once you've reported the fraudulent credit, follow this guide to recovering from identity theft.

Step 3: Freeze your credit

It's still early days, so even if your credit report comes back clean, remain vigilant about protecting your credit. One of the most reliable ways to prevent someone from opening credit cards in your name is to place what's called a "credit freeze."

When you freeze your credit, you (or anyone masquerading as you) will be required to un-freeze your account by providing the PIN you got when you froze your credit.

To freeze your credit, contact each of the credit bureaus using these phone numbers:

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • Equifax: 1-800-349-9960
  • Experian: 1‑888‑397‑3742
  • TransUnion: 1-888-909-8872
    ').'")."n
"'

The process is usually automated and can be completed within a few minutes. Just be sure to write down your PINs in a secure place.

Step 4: Set a fraud alert

A fraud alert is another way to make it hard for identity thieves to open accounts in your name. When a fraud alert is set, credit card companies will be required to verify your identity before opening an account. That, combined with the credit freeze, is a great way to keep your credit secure.

To set a fraud alert, contact just one of the credit card bureaus and ask for an initial fraud alert. Once the alert is set, it will last 90 days. After that, you'll have to renew it. Here are the appropriate phone numbers for the bureaus (remember, just call one):

'"
    n".self::process_list_items("'.str_replace('
    ', '', '
  • Equifax: 1-888-766-0008
  • Experian: 1-888-397-3742
  • TransUnion: 1-800-680-7289
    ').'")."n
"'

Step 5: Repeat the process for your loved ones

Because Equifax is not notifying those affected through direct mail or email, some people will be left without the resources or tech-savvy to protect their identities or find out if they were compromised. With that in mind, consider helping your loved ones -- especially the elderly without computer access -- with the above steps.

Watch out for tax season

It's still to early to know if and how the data exposed in Equifax's breach will be misused, but one major concern comes around during tax season. Identity thieves can use stolen social security numbers to file fraudulent tax returns and receive refunds.

Meda wo ase

______________________________________________

We must act as if we answer to, and only answer to, our Ancestors, our children, and the unborn.

Amilcar Cabral
"Intellectuals ought to study the past not for the pleasure they find in so doing, but to derive lessons from it"

https://www.cnet.com/news/equifax-hackers-took-10-million-americans-drivers-license-info/

Equifax hackers took driver's license info on 10M Americans

The attackers also took more than 145 million Social Security numbers, along with other pieces of personal info.

BY

LAURA HAUTALA

OCTOBER 10, 2017 3:18 PM PDT

James Martin/CNETIn the Equifax breach, hackers stole the driver's license information of more than 10 million Americans, The Wall Street Journal reported Tuesday.

That's in addition to the Social Security numbers and other personal details about 145.5 million Americans hackers took from Equifax's systems. The company said the stolen data included driver's license information, but it didn't say for how many people. What's more, Equifax said Tuesday that 15.2 million records on more than nearly 700,000 UK consumers were also compromised.

Information from a driver's license includes a home address and the driver's height and weight, not to mention the driver's license number. These pieces of data would make a potential identity thief's job easier. The richly detailed consumer records were stolen between May and the end of July this year by hackers who cracked into Equifax's systems by taking advantage of an unpatched software bug, the company said.

Equifax didn't immediately respond to a request for comment on the number of US driver's license records or UK consumer records the hackers stole. The company announced last week that the total number of Americans affected was 145.5 million, not 143 million as it first announced. It also said it was notifying an unspecified number of UK residents by mail that they were affected in some way by the breach.

I hope they wipe my debt clear!

The Ultimate function of education is to secure the survival of a people. - Dr. Amos Wilson
"Intellectuals ought to study the past not for the pleasure they find in so doing, but to derive lessons from it"

https://www.pcmag.com/news/356736/equifax-website-hacked-again?utm_source=email&utm_campaign=dailynews&utm_medium=title



Equifax Website Hacked Again

Visitors to the site were offered a fake Flash Player update that installed adware.

By Matthew Humphries
October 12, 2017 6:30AM EST

PCMag reviews products independently, but we may earn affiliate commissions from buying links on this page. Terms of use.



Credit reporting agency Equifax already earned its place in the history books for a "cybersecurity incident" that impacted more than half of all adult Americans. Names, Social Security numbers, birth dates, addresses, and driver's license numbers were all exposed through the company's website.

It seems the company failed to learn anything from its security failings, as the Equifax website was compromised yet again.

As Ars Technica reports, for several hours yesterday, Oct. 11, anyone visiting the Equifax website may have been presented with a Flash Player update prompt. It was fake, and installing it infected PCs with adware (specifically Adware.Eorezo).
Here's a video showing how the malicious Flash Player update prompt appears while browsing the site:

https://www.youtube.com/watch?v=XzyDR7f7Wm0

The situation was made worse because only three antivirus providers (of 65) detected the adware being used and offered protection (Panda, Symantec, and Webroot). Everyone else was left with an infected machine or domains flagged as suspicious by security suites.

Independent security analyst Randy Abrams discovered the hack and managed to trigger it several times yesterday. However, today it seems to have disappeared from the Equifax website. Either someone at Equifax noticed and removed the hack, or the hackers have gone quiet realizing the media was on to them.

Independent security analyst Randy Abrams discovered the hack and managed to trigger it several times yesterday. However, today it seems to have disappeared from the Equifax website. Either someone at Equifax noticed and removed the hack, or the hackers have gone quiet realizing the media was on to them.

The advice for now is to not go anywhere near the Equifax website if you can avoid it.