Introduction

The Equifax Teachable Moment

The story of the Equifax breach is the nightmare wake-up call that every organization dreads. The high-level overview is simple: Equifax, a major consumer reporting agency, failed to properly address a critical Apache Struts software vulnerability. Arguably, the most important, intriguing, and insidious detail lies at the root cause of the breach, however. When you dig a little further into the weeds, and look past the inadequate security program, the outlier Internet-facing 1970s legacy operating system using Apache Struts, the lacking communication chain, and dysfunctional oversight, this massive data breach was actually a people problem.

Based on the sordid backstory provided by the House Oversight ...

Get Can. Trust. Will. now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.