Equifax has take down a webpage that offer credit report help , a spokesperson told Gizmodo . The movefollows a reportthat the page was directing visitors to install simulated Adobe Flash update hold adware .
“ We are aware of the office identify on the equifax.com site in the credit report help liaison , ” the representative said . “ Our IT and Security teams are looking into this matter , and out of an teemingness of caution have temporarily taken this varlet offline . When it becomes usable or we have more information to deal , we will . ”
The assistance Thomas Nelson Page , which could be used to incur a copy of one ’s credit rating report , was replaced with a content claiming that the site was under sustentation after surety researcher Randy Abrams discovered the problem .

“ We are working diligently to better serve you , and apologize for any inconvenience this may cause . We appreciate your longanimity during this time and ask that you hold back back with us soon , ” the page inform users — without any mention of the fact that former visitors to the page may have been play tricks into installing adware .
Abrams share his findings withArs Technicaand establish them in a video . When Abrams clicked the connection to prevail a copy of his credit account , he was instead organise to download a fake version of Flash that contain a file that surety firm likeSymantec and and Webrootflag as adware .
It ’s potential that the adware is being served not by Equifax ’s internet site itself butrather by an ad platform or analytics providerused by the company . Either way , it ’s just more spoiled news for Equifax , which announced a massive hack in September that resulted in the loss of personal selective information for 143 million people . This calendar month , Equifax sound out it haddiscovered another 2.5 million peoplewere affected by the severance and raise that total to 145.5 million .

If the huge data going was n’t enough , Equifax was warned about the exposure that direct to the hack butfailed to patch it , and has fight to notify involve consumer .
Update 4:22 p.m. : Equifax substantiate that , as protection researchers had speculated , the adware was serve good manners of a third - political party vendor . An Equifax spokesperson said definitively that the companionship had not suffer another breach .
“ Despite early media reports , Equifax can confirm that its systems were not compromised and that the reported issue did not strike our consumer online dispute portal , ” the spokesperson articulate . “ The yield imply a third - party vendor that Equifax uses to collect internet site performance data , and that vendor ’s codification running on an Equifax web site was serve malicious contentedness . Since we learned of the issuance , the vendor ’s computer code was removed from the webpage and we have guide the webpage offline to direct further analytic thinking . ”

[ Ars Technica ]
Equifax
Daily Newsletter
Get the honorable technical school , scientific discipline , and culture news in your inbox daily .
News from the future tense , give up to your present .
Please choose your trust newssheet and posit your email to upgrade your inbox .

You May Also Like












![]()