Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home News

Equifax Fined £11m for 2017 Data Breach

October 16, 2023
Reading Time: 2 mins read
in News

The UK’s financial regulator, the Financial Conduct Authority (FCA), has imposed a fine of over £11 million ($13.4 million) on Equifax Ltd. for its failure to protect UK consumer data stolen in the well-known 2017 data breach. The FCA revealed the penalty on October 13, 2023, stating that Equifax’s UK division did not adequately secure the personal data of 13.8 million UK consumers, which was under the control of its US-based parent company.

Furthermore, the data breach, involving the exposure of sensitive information, was ruled as preventable, stemming from the exploitation of an unpatched Apache Struts vulnerability by threat actors.

The breach occurred because Equifax Ltd. had outsourced data to Equifax Inc.’s servers in the US for processing, including information such as names, dates of birth, phone numbers, Equifax membership login details, partially exposed credit card data, and residential addresses. The FCA emphasized that the theft of UK data was entirely avoidable, attributing this to Equifax’s lack of oversight and security measures, despite known weaknesses in its parent company’s data security systems. The delay in informing UK customers that their data had been compromised stemmed from Equifax Ltd.’s late discovery of the breach, shortly before the official announcement in September 2017.

The FCA criticized Equifax Ltd.’s public statements, which provided an inaccurate impression of the number of consumers affected, and the mishandling of complaints from UK consumers due to a lack of quality assurance checks. The regulator emphasized that financial firms are responsible for customer data, whether or not it is outsourced. The severity of the penalty underscores the importance of cybersecurity and data protection in the financial services industry, highlighting that firms must uphold high standards for data resiliency and ethics.

In previous settlements, Equifax Inc. agreed to pay $575 million to the Federal Trade Commission and 50 US states in 2019, while the UK Information Commissioner’s Office (ICO) imposed a £500,000 fine in 2018. Equifax was found to have violated several data protection principles during the incident, as per the Data Protection Act 1998.

Reference:
  • UK watchdog fines Equifax $13.4 million for role in cyber breach
Tags: Cyber NewsCyber News 2023CybersecurityData BreachEquifaxFCAFinancial Conduct AuthorityNews 2023October 2023UK
ADVERTISEMENT

Related Posts

Glilot Capital Raises 500 Million Fund

Glilot Capital Raises 500 Million Fund

September 18, 2025
Glilot Capital Raises 500 Million Fund

Researchers Uncover Ransomware Links

September 18, 2025
Glilot Capital Raises 500 Million Fund

DOJ Resentences BreachForums Founder

September 18, 2025
RaccoonO365 Phishing Network Down

RaccoonO365 Phishing Network Down

September 17, 2025
Windows 10 Support Ends in 30 Days

Windows 10 Support Ends in 30 Days

September 17, 2025
RaccoonO365 Phishing Network Down

Exchange 2016, 2019 Support Ends Soon

September 17, 2025

Latest Alerts

FileFix Uses Steganography To Drop StealC

Apple Backports Fix For Exploited Bug

Google Removes 224 Android Malware Apps

ChatGPT Calendar Flaw Lets Email Theft

Windows Update Breaks SMBv1 Shares

Scattered Spider Returns Despite Exit

Subscribe to our newsletter

    Latest Incidents

    AI Forged Military IDs Used In Phishing

    Insight Partners Warns After Data Breach

    ShinyHunters Claims Salesforce Data Theft

    DHS Data Hub Leaked Sensitive Intel

    Worm Infects 180 npm Packages

    Jaguar Land Rover Delays Restart After Cyberattack

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial