3 ms·
Something's doesn't sound quite right over at Equifax, I would have thought that with the scale of the last breach a full and thorough audit of all existing sys
by cag_ii 9y ago
Something's doesn't sound quite right over at Equifax, I would have thought that with the scale of the last breach a full and thorough audit of all existing systems would have been a major priority!
- grasshopperpurp 9y agoWhy would you think that? >Hack Will Lead to Little, if Any, Punishment for Equifax https://www.nytimes.com/2017/09/20/business/equifax-hack-penalties.html https://www.nytimes.com/2017/09/20/business/equifax-hack-pen...
- appleiigs 9y agoJust a normal, slow moving, bureaucratic corporation. But even if they were faster, I'm sure an audit of all existing systems is not as simple as making sure all the doors and windows are locked around the house.
- yawz 9y agoYou can hire a good group of independent pen testers or security companies, and let them hammer your public facing sites. They don't lack the necessary financial resources. At least they would have discovered that type of problems. It's not difficult when there's a will.
- ionforce 9y agoKnowing your vulnerabilities, fixing them, and caring about them at all are all different things.
- StanislavPetrov 9y ago>I would have thought that with the scale of the last breach a full and thorough audit of all existing systems would have been a major priority! Why would you think that? Equifax hasn't suffered for its poor security - you have. Indeed, Equifax was rewarded with a massive IRS contract for its malfeasance. Its very much like what we see in the banking sector, where even when the banks get caught stealing, at worse they are fined only a fraction of what they stole, leaving them with a hefty profit. That's what crony-capitalism looks like. Why would Equifax or any other corporation change their very profitable business practices if they don't suffer any downside for their wrongdoing?