Equifax Had 'Admin' as Login and Password in Argentina (bbc.com)
Reader wired_parrot writes: The credit report provider Equifax has been accused of a fresh data security breach, this time affecting its Argentine operations. The breach was revealed after security researchers discovered that an online employee tool used by Equifax Argentina was accessible using the "admin/admin" password combination.
Make Admin Great Again
At this point, Equifux is circling the drain. Time for those insiders to cash out.
What kind of moron working at a credit reporting agency fails to change the DEFAULT login and password. ? I hope that clown got fired
Another day closer to redwood heaven
This needs to be treated and punished the same as intent.
Most ACs are not even worth the keystrokes to insult them. Be generically insulted by this and ignored otherwise.
Yep, oops.
There is no XUL, only WebExtensions...
If this turns out to be true, everyone from the CTO to the entire board of directors needs to go prison for a very long time and their entire net worth distributed to the people affected by this. I'm not talking country club prison here either, I'm talking real prison where poor criminals go. And no class action where the lawyers get it all, but an outright equal distribution to everyone affected. Then the class action can come in and take the rest of the companies assets and pass out the $5 gift cards and the millions to the lawyers.
--- Keep the choice with the user..
That's the same combination I have on my luggage!
Proud neuron in the Slashdot hivemind since 2002.
If this is the kind of internal stuff they have, they have no fucking business holding other people's data.
This is about as incompetent as you can get. Like epic incompetence. You're fired kind of incompetence. You should never have another fucking job in the industry kind of incompetence.
It will be hard to shield themselves from liability with that level of stupid.
I don't think you can single out one person, it seems as if there would be plenty of people to blame for not changing it.
My beliefs do not require that you agree with them.
I mean we all know there is no such thing as 100% safe in information security but this is not even trying..
Second try, I guess Admin/password didn't work.
oooooowwwww
...... On the original hack being caused by something as stupid as this?
This is my opinion. To make sure you don't steal it, it's covered by the DMCA.
We slashdotters like being in the know, so how about sharing the reference? We could all use a good giggle...
I need a wheelchair van for my son. Help me get the word out. https://www.gofundme.com/wheelchair-van-for-jj
I just laughed out loud! Let me guess, all of their routers are admin G3t0ut.
Steve Gibson will have a field day with this one... I wonder how many more eggredious displays of a total lack of security practices it'll take to entirely close the thing down.
Really, I do want to work there!
I'll be a bloody genius there -- hell, even I know enough to change the login combo to "admin/equfax" -- and they'll pay me well for such brilliant security insights.
Oh, but wait.
Now that people -- and even chat-bots -- are suing them blind over this mindless security breach, I'm thinking that maybe there won't be a company left when they're through.
...but stupid goes right to the bone.
E Proelio Veritas.
At first I thought, man that is TOO secure, keeping the admin password only in Argentina.
Then I understood what the headline was trying to say...
"There is more worth loving than we have strength to love." - Brian Jay Stanley
How else are they supposed to remember the password?
this dumbfuckery? Get on it people!
*Ahem* I pretty much said as much previously. It's exciting to imagine a cabal of hackers doing things like this, however reality more often than not is just incompetence.
https://slashdot.org/comments....
Once again this proves that there is no technological solution to stupid human problems.
OTOH, a simple rule in the username/password database that prohibits admin/admin and other similar things like root/root could help. But then you'd just have people using their birthday or somesuch.
The truth is, I never left you
All through my wild days, my mad existence
I kept my promise
Don't keep your distance
And as for fortune, and as for fame
I never invited them in
Equifax Inc. has requested 96 H1B visa over the last 5 years all for $90k salary jobs (job market average there is ~$125k) for their Atlanta, GA offices.
In 2010 they outsourced their call centers overseas and 100 H1B's in the IT for a company of only 9500 employees means, yes, their entire IT department has been outsourced.
Custom electronics and digital signage for your business: www.evcircuits.com