5 ms·
Equifax confirms Apache Struts security flaw is to blame
- warrenm 9y agoSounds like they weren't paying attention to CVEs Since it came out a couple months before the breach
- warrenm 9y agoheck - just needed to read one more paragraph down: > "The cited Apache Struts flaw dates back to March, according to a public vulnerability disclosure. Patches were released for the vulnerability, suggesting that Equifax did not install the security updates."