To be honest, I feel bad for the engineering team at Equifax. The vulnerability that compromised their system was a bug in an open-source Java library, Apache Struts, and security researchers only noticed it a few days ago. It seems that the Equifax team had very little time to react and update their software. In some sense, I feel that more blame should be placed on the engineers who built the highly popular open-so…
Equifax Faces Multibillion-Dollar Lawsuit Over Hack
661–670 of 670 posts
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#662Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#663Earlier quoted context omitted.
There is no such agencies in lots of countries (e.g. France) and still people get loans. When I came to US, I had to purposely take extra credits/loans to boost my inexistent credit history. Now I am credit worthy thanks to my artificial debt.
I'm not arguing against you, just curious... in France, what prevents people from just applying for loans over and over and never paying them back?
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#664Earlier quoted context omitted.
I think it's unlikely you'll actually be damaged. Any real financial impact would have been reversed by your bank. Maybe a fee or two that two parties argue about who should reimburse your for it, however I can't see stuff like that adding up to $1,000 (or even $100).
You misunderstood how this affects SS #s holders. Its way more serious than just opening up a credit card and disputing it later on. In such situation the bank will reimburse you and close down fake account, but many banks will put negative information on your account just to warn other banks. You have to look at it from bank perspective, not your own. The bank can report: "okay we don't know how and when but someone…
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#665Where have I seen this model before??
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#666Earlier quoted context omitted.
Probably for good reason. $500 per class member is an insanely high damages estimate. 99.9% of people will suffer zero damages because their identities will not be stolen. Even the ones who do have their identities stolen will likely be made whole by the credit card companies. The real damages here are going to be to the banks and credit card companies that will have to absorb the costs of all the fraud. As to the Ti…
If there are 140 million members then any settlement will be individually quite modest (Equifax has annual income of ~600 million dollars, so multiple years of all of it to get to even $10). It does seem like any penalty for something like this should severely impact the ability of the company to operate though. I suppose a $0 way to penalize them severely would be to force Equifax to allow individuals to opt out of…
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#667Earlier quoted context omitted.
> I said it elsewhere, but I think the right response is to opt out of the class, and sue for $1000 in small claims court. If ~15% of the class does this, they are out of business, and lawyers don't get a dime of the $1000. IANAL, but can't you only sue for actual damages not hypothetical damages? According to this [1] your identity with SSN is only worth $30 on the black market. To get $1000 out of them you'd probab…
You can sue for anything. They'll have to show up to respond, or you win by default regardless of whether your case is valid or not. This would cost them a fortune.
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#668I'd love to see the $70B number pan out (though $500 per person is less than the damages, I think) -- Equifax is a $17B company, and would presumably stop existing if that happened. On the other hand, these things always settle out of court, and Equifax certainly won't settle the suit for more than they're worth. I said it elsewhere, but I think the right response is to opt out of the class, and sue for $1000 in smal…
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#669To be honest, I feel bad for the engineering team at Equifax. The vulnerability that compromised their system was a bug in an open-source Java library, Apache Struts, and security researchers only noticed it a few days ago. It seems that the Equifax team had very little time to react and update their software. In some sense, I feel that more blame should be placed on the engineers who built the highly popular open-so…
ObjectInputStream ois = new ObjectInputStream(input);
MyObject obj = (MyObject)ois.readObject();
https://lgtm.com/blog/finding_unsafe_deserialization_with_qlRe: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#670Does anyone know how the hackers got in?