Equifax data breach ‘worse than first thought’

Equifax has revealed that approximately 2.5 million additional US customers have been potentially impacted by the cyber security breach at the firm.

Last month it was revealed that consumer credit reporting agency Equifax had fallen victim to a cyber security incident which potentially impacted 143 million US consumers, as well as around 400,000 UK customers.

However, an investigation by cyber security outfit Mandiant following the hack has found that a further 2.5 million US customers may be impacted, bringing the total to 145.5 million.

Mandiant did not identify any evidence of additional or new attacker activity or any access to new databases or tables. Instead, this additional population of consumers was confirmed during Mandiant's completion of the remaining investigative tasks and quality assurance procedures built into the investigative process.

The completed review also has concluded that there is no evidence the attackers accessed databases located outside of the United States.

Newly appointed CEO of Equifax, Paulino do Rego Barros, Jr, said: “I want to apologise again to all impacted consumers. As this important phase of our work is now completed, we continue to take numerous steps to review and enhance our cybersecurity practices.

“We also continue to work closely with our internal team and outside advisors to implement and accelerate long-term security improvements.”

The forensic investigation related to United Kingdom consumers has been completed and the resulting information is now being analysed in the UK.

    Share Story:

Recent Stories


Sanctions evasion in an era of conflict: Optimising KYC and monitoring to tackle crime
The ongoing war in Ukraine and resulting sanctions on Russia, and the continuing geopolitical tensions have resulted in an unprecedented increase in parties added to sanctions lists.

Achieving operational resilience in the financial sector: Navigating DORA with confidence
Operational resilience has become crucial for financial institutions navigating today's digital landscape riddled with cyber risks and challenges. The EU's Digital Operational Resilience Act (DORA) provides a harmonised framework to address these complexities, but there are key factors that financial institutions must ensure they consider.

Legacy isn’t the enemy: what FSIs can do to keep their systems up and running
In this webinar we will examine some of the steps FSIs have already taken to rigorously monitor and test systems – both manually and with AI-powered automation – while satisfying the concerns of regulators and customers.

Optimising digital banking: Unifying communications for seamless CX
In the digital age, financial institutions risk falling behind their rivals if they fail to unite fragmented communications ecosystems to deliver seamless, personalised customer experiences.

This FStech webinar sponsored by Precisely explores vital strategies to optimise cross-channel messaging through omnichannel orchestration and real-time customer data access.