• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechEquifax

Senators Want Answers From Equifax Over Its Massive Data Breach

Barb Darrow
By
Barb Darrow
Barb Darrow
Down Arrow Button Icon
Barb Darrow
By
Barb Darrow
Barb Darrow
Down Arrow Button Icon
September 12, 2017, 7:52 AM ET

The hits just keep coming for Equifax in the wake of last Thursday’s disclosure of a security breach that may have exposed personal data on up to 143 million people.

Late Monday, the U.S. Senate Committee on Finance informed Equifax CEO Richard Smith that it wants to hear more—a lot more—about the breach. Senators want more information specifically about the types of data that may have been accessed beyond social security numbers and birthdates. Information on some 200,000 credit card holders may have also been compromised. And the committee really wants to know what safeguards Equifax had been using to keep consumer data secure.

In its letter, which is copied in the committee’s press release, the committee asked if Equifax (EFX) has a chief information security officer (CISO) and, if so, to whom that executive reports. The committee also wants a tally of how many employees are dedicated to data security and how often Equifax used an outside experts to conduct penetration tests of both internal and external systems in the past two years.

Companies typically conduct penetration, or “pen tests,” by security experts to find vulnerabilities that could be exploited before bad guys can find and exploit them.

In the days since Equifax disclosed the breach on September 7, claims and counterclaims have swirled around the cause. All Equifax itself has said is that “criminals exploited a U.S. website application vulnerability to gain access to certain files.”

Clearly, more information is needed by regulators and consumers alike. Equifax’s response to date has been slammed. Critics said the company used the breach to tout its own paid credit protection services. Additionally, the website it put up to help customers figure out if they were impacted, itself posed security problems.

Related: Equifax Could Make $700 Million Off Its Own Breach

“The scope and scale of this breach appears to make it one of the largest on record, and the sensitivity of the information compromised may make it the most costly to taxpayers and consumers,” according to the letter from the committee, which is chaired by by Orrin Hatch (R-Utah) with ranking Democrat Ron Wyden (D-Ore.).

The committee also wants to hear about an earlier breach in which W-2 and employee records data was taken from TALX, an Equifax subsidiary that handles payroll for companies.

On Friday, Jeb Hensarling, (R.-Texas) said the House Financial Services Committee wants its own look into the Equifax mess.

Get Data Sheet, Fortune’s technology newsletter.

There have been third-hand claims that Equifax’s use of particular piece of open-source software is at the core of this problem. But that’s a red herring, says a long-time security consultant. He requested anonymity because he works for government agencies and is not authorized to speak to the media.

“Forget the particular patches or bugs,” he says. “What is Equifax’s overall approach to security? Does it work with third-party auditors and security folks to protect what is essentially a good chunk of the U.S. economy?”

All software, including aging Java software that is used by most Fortune 500 and other large companies, has vulnerabilities. And that is true even if those companies use a commercially supported version of open-source software purchased from a vendor. Those frailties, if found by criminals before a company’s own security experts, can and will be exploited.

The issue here is how much due diligence this credit agency put into bullet-proofing that software. And that is apparently what the senators on the Finance Committee aim to find out.

The Committee set a deadline of September 28 for Equifax to respond.

About the Author
Barb Darrow
By Barb Darrow
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Fortune Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

InvestingVenture Capital
NFL legend Joe Montana lived around top VC execs as a 49er, then leveraged those ties to launch his second career as an investor
By Jason MaFebruary 8, 2026
10 hours ago
CybersecurityJeffrey Epstein
FBI found little evidence Epstein ran a sex trafficking ring for powerful men and concluded a ‘client list’ doesn’t exist
By Michael R. Sisak, David B. Caruso, Larry Neumeister and The Associated PressFebruary 8, 2026
12 hours ago
RetailEurope
Trump’s Greenland crisis triggered a surge in apps designed to help shoppers boycott U.S. goods, though few American imports are on store shelves
By James Brooks and The Associated PressFebruary 8, 2026
13 hours ago
nfl
CommentaryTV
The Super Bowl was made for TV and instant replay was made for visual AI. Here’s how it could be better and what it would look like
By Jason CorsoFebruary 8, 2026
14 hours ago
monkey
CybersecurityAnimals
One way AI won’t ruin the world: tools to crack down on the $23 billion animal trafficking trade
By Eve Bohnett and The ConversationFebruary 8, 2026
15 hours ago
heacock
CommentaryLeadership
I’m a CEO who grew a ‘boring’ air filter business into a $260 million company, and AI is going to help blue-collar, everyday people just like me
By David HeacockFebruary 8, 2026
15 hours ago

Most Popular

placeholder alt text
Economy
Elon Musk warns the U.S. is '1,000% going to go bankrupt' unless AI and robotics save the economy from crushing debt
By Jason MaFebruary 7, 2026
1 day ago
placeholder alt text
Success
Gen Z Patriots quarterback Drake Maye still drives a 2015 pickup truck even after it broke down on the highway—despite his $37 million contract
By Sasha RogelbergFebruary 7, 2026
2 days ago
placeholder alt text
Economy
Russian officials are warning Putin that a financial crisis could arrive this summer, report says, while his war on Ukraine becomes too big to fail
By Jason MaFebruary 8, 2026
7 hours ago
placeholder alt text
Success
Even with $850 billion to his name, Elon Musk admits ‘money can’t buy happiness.’ But billionaire Mark Cuban says it’s not so simple
By Preston ForeFebruary 6, 2026
3 days ago
placeholder alt text
Future of Work
Anthropic cofounder says studying the humanities will be 'more important than ever' and reveals what the AI company looks for when hiring
By Jason MaFebruary 7, 2026
1 day ago
placeholder alt text
Commentary
America marks its 250th birthday with a fading dream—the first time that younger generations will make less than their parents
By Mark Robert Rank and The ConversationFebruary 8, 2026
16 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.