{"id":26625,"date":"2017-09-14T11:17:43","date_gmt":"2017-09-14T15:17:43","guid":{"rendered":"http:\/\/ok-cleek.com\/blogs\/?p=26625"},"modified":"2017-09-14T11:18:02","modified_gmt":"2017-09-14T15:18:02","slug":"update-your-software","status":"publish","type":"post","link":"https:\/\/ok-cleek.com\/blogs\/?p=26625","title":{"rendered":"Update Your Software"},"content":{"rendered":"<blockquote><p><a href=\"https:\/\/www.theregister.co.uk\/2017\/09\/14\/missed_patch_caused_equifax_data_breach\">As the Apache Foundation<\/a> pointed out earlier this week, it reported CVE-2017-5638 in March 2017. Doubt us? Here's the <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2017-5638\">NIST notification<\/a> that mentions it as being notified on March 10th.<\/p>\n<p>Equifax was breached in \u201cmid-May\u201d 2017, realised it in July and got around to telling the world in Early September. If we take \u201cmid-May\u201d as the 15th of the month, Equifax had nine working weeks in which to apply the patch.<\/p>\n<p>That its data breach was entirely avoidable is not the end of Equifax's woes, as the new Progress Update also reveals that \u201cDue to the high volume of security freeze requests, we experienced temporary technical difficulties and our system was offline for approximately an hour at 5PM ET on September 13, 2017 to address this issue.\u201d<\/p>\n<p>The company also appears to have suffered another data breach, this time in Argentina where its <a href=\"https:\/\/krebsonsecurity.com\/2017\/09\/ayuda-help-equifax-has-my-data\/\">Bryan Krebs<\/a> reports \u201can online portal designed to let Equifax employees in Argentina manage credit report disputes from consumers in that country was wide open, protected by perhaps the most easy-to-guess password combination ever: \u201cadmin\/admin.\u201d <\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>As the Apache Foundation pointed out earlier this week, it reported CVE-2017-5638 in March 2017. Doubt us? Here's the NIST notification that mentions it as being notified on March 10th. Equifax was breached in \u201cmid-May\u201d 2017, realised it in July and got around to telling the world in Early September. If we take \u201cmid-May\u201d as [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-26625","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=\/wp\/v2\/posts\/26625","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=26625"}],"version-history":[{"count":2,"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=\/wp\/v2\/posts\/26625\/revisions"}],"predecessor-version":[{"id":26627,"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=\/wp\/v2\/posts\/26625\/revisions\/26627"}],"wp:attachment":[{"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=26625"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=26625"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ok-cleek.com\/blogs\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=26625"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}