Equifax on Monday said an investigation into the massive data breach at the credit agency discovered 2.5 million additional potential victims, bringing the total to 145.5 million.
Interim chief executive Paulino do Rego Barros, made the disclosure in a statement, saying: “Our priorities are transparency and improving support for consumers. I will continue to monitor our progress on a daily basis.”
The statement said the cybersecurity firm Mandiant made the new estimate after a forensic review of the incident, which is believed to be one of the worst breaches because of the sensitivity of data leaked.
The review “also has concluded that there is no evidence the attackers accessed databases located outside of the United States,” the Equifax statement said.
Mandiant found that about 8,000 Canadian consumers were affected by the hack, fewer than the initial estimate of 100,000. The company said a review of the impact on British consumers was still being analyzed.
Separately on Monday, former Equifax chief executive officer Richard Smith said in testimony prepared for a congressional hearing that the security team at Equifax failed to patch a vulnerability in March after getting a warning about the flaw.
Smith offered a timeline of the cyberattack which leaked US Social Security numbers and other sensitive data.
Smith said in prepared remarks to a House of Representatives panel that the company on March 9 circulated an internal memo warning about a software flaw identified by the US government’s Computer Emergency Response Team.
He added that Equifax policy would have required a patch to be applied within 48 hours and that this was not done — but he could not explain why.
Equifax’s information security department ran scans that should have identified any systems that were vulnerable, but failed to identify any flaws in the software known as Apache Struts.
“I understand that Equifax’s investigation into these issues is ongoing,” he said in the statement. “The company knows, however, that it was this unpatched vulnerability that allowed hackers to access personal identifying information.”
Smith said he was notified of the breach on July 31, but was not aware “of the scope of this attack.”
He informed the company’s lead director three weeks later, on Aug. 22, and board meetings were held on the matter Aug. 24 and Aug. 25.
Equifax, one of the major agencies gathering data used in credit ratings for banks, has come under fire for waiting until Sept. 7 to publicly disclose the breach, and investigators are looking into stock sales by two senior executives in August.
Smith stepped down last week amid the investigation, while indicating he would remain in a consulting capacity during the investigation, which includes a congressional hearing scheduled for yesterday.
Smith offered a fresh apology for the attack, saying in his statement: “As CEO I was ultimately responsible for what happened on my watch. Equifax was entrusted with Americans’ private data and we let them down.”
PATENTS: MediaTek Inc said it would not comment on ongoing legal cases, but does not expect the legal action by Huawei to affect its business operations Smartphone integrated chips designer MediaTek Inc (聯發科) on Friday said that a lawsuit filed by Chinese smartphone brand Huawei Technologies Co (華為) over alleged patent infringements would have little impact on its operations. In an announcement posted on the Taiwan Stock Exchange, MediaTek said that it would not comment on an ongoing legal case. However, the company said that Huawei’s legal action would have little impact on its operations. MediaTek’s statement came after China-based PRIP Research said on Thursday that Huawei filed a lawsuit with a Chinese district court claiming that MediaTek infringed on its patents. The infringement mentioned in the lawsuit likely involved
EXPECTATIONS: The firm, which is on track to outpace global foundry industry revenue growth, said it expects constrained advanced process capacity amid stronger AI demand Taiwan Semiconductor Manufacturing Co (TSMC, 台積電) yesterday increased its projected revenue growth for this year to above 25 percent, as stronger-than-expected demand for premium smartphones and artificial intelligence (AI) devices are to drive greater utilization of cutting-edge 3-nanometer and 5-nanometer chips. In April TSMC estimated 21 to 24 percent annual growth. The firm’s revenue growth is on track to greatly outpace the global foundry industry, which is expected to rise about 10 percent this year. “Over the past three months, we have observed stronger AI and high-end smartphone demand from our customers, which is to boost the overall capacity utilization for our leading-edge
INVESTMENT: The company’s planned complex in Texas would be the first 12-inch silicon wafer fab built in the US in more than 20 years, a GlobalWafers official said GlobalWafers Co (環球晶圓), the world’s No. 3 silicon wafer supplier, yesterday said it secured up to US$400 million in direct funding from the US Department of Commerce under the CHIPS and Science Act for the construction of two new advanced fabs in the US. Its subsidiaries GlobalWafers America and MEMC LLC are to build a 12-inch silicon wafer fab in Sherman, Texas, and another one in Missouri to produce silicon-on-insulator (SOI) wafers used to make leading-edge chips. “With the support of the [US President Joe] Biden Administration, we are honored to be bringing to American shores the world’s most cutting-edge 12-inch semiconductor
Powerchip Semiconductor Manufacturing Co (力積電) yesterday said that net losses ballooned to NT$1.96 billion (US$60.1 million) in the second quarter, as heavy manufacturing costs from a new fab outweighed the improvement in customer demand and factory utilization. That compared with losses of NT$439 million in the first quarter. The company posted a net profit of NT$617 million a year earlier. Gross margin plummeted to 5.3 percent last quarter, from 15.4 percent in the previous quarter and 16.8 percent in the same period last year. It was the weakest since the fourth quarter of last year. The chipmaker blamed heavy depreciation and higher manufacturing