{"id":13892,"date":"2022-09-20T18:35:00","date_gmt":"2022-09-20T22:35:00","guid":{"rendered":"https:\/\/18fbf770e8.nxcli.io\/?p=13892"},"modified":"2022-09-22T18:56:33","modified_gmt":"2022-09-22T22:56:33","slug":"lessons-to-learn-from-the-equifax-data-breach","status":"publish","type":"post","link":"https:\/\/www.napolilaw.com\/article\/lessons-to-learn-from-the-equifax-data-breach\/","title":{"rendered":"<strong>Lessons to learn from the Equifax data breach<\/strong>"},"content":{"rendered":"\n<p>In 2017, the Equifax data breach was experienced as one of the most damaging data breaches in history. Cybercriminals accessed a massive trove of data on 148 million Americans that <a href=\"https:\/\/www.researchgate.net\/publication\/337916068_A_Case_Study_Analysis_of_the_Equifax_Data_Breach_1_A_Case_Study_Analysis_of_the_Equifax_Data_Breach\" target=\"_blank\" rel=\"noopener\">contained personally-identifying information<\/a>, including 209,000 credit card numbers.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"429\" src=\"https:\/\/www.napolilaw.com\/wp-content\/uploads\/2022\/09\/bigstock-Hacker-In-Binary-Code-Digital-449899955-1024x429.jpg\" alt=\"a hacker violation privacy acts causing a privacy lawsuit at equifax data breach\" class=\"wp-image-13825\" srcset=\"https:\/\/www.napolilaw.com\/wp-content\/uploads\/2022\/09\/bigstock-Hacker-In-Binary-Code-Digital-449899955-1024x429.jpg 1024w, https:\/\/www.napolilaw.com\/wp-content\/uploads\/2022\/09\/bigstock-Hacker-In-Binary-Code-Digital-449899955-500x209.jpg 500w, https:\/\/www.napolilaw.com\/wp-content\/uploads\/2022\/09\/bigstock-Hacker-In-Binary-Code-Digital-449899955-768x322.jpg 768w, https:\/\/www.napolilaw.com\/wp-content\/uploads\/2022\/09\/bigstock-Hacker-In-Binary-Code-Digital-449899955-1536x643.jpg 1536w, https:\/\/www.napolilaw.com\/wp-content\/uploads\/2022\/09\/bigstock-Hacker-In-Binary-Code-Digital-449899955-2048x858.jpg 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>The full impact of the Equifax data breach is still being calculated. Its massive scope highlights ways in which credit reporting agencies and other third parties use our personal data\u2014and the threat that poses to every American.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Understanding the breach<\/strong><\/h3>\n\n\n\n<p>As companies have leaned into the technology that has helped them achieve their business goals, they haven\u2019t always been as diligent with cybersecurity as they should have been.<\/p>\n\n\n\n<p>Prior to the breach, Equifax had <a href=\"https:\/\/sevenpillarsinstitute.org\/case-study-equifax-data-breach\/\" target=\"_blank\" rel=\"noopener\">already conducted an internal audit<\/a> that showed its network was vulnerable. The first Equifax data breach occurred in 2016, resulting in the leak of more than 430,000 names, addresses, social security numbers, and other types of information.<\/p>\n\n\n\n<p>Still, when cybercriminals gained access to Equifax\u2019s data in 2017, many of its cybersecurity systems were out of date. That allowed the hackers to maintain access from May to June of 2017\u2014the second Equifax data breach\u2014without being detected.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>The constitutional right to privacy<\/strong><\/h3>\n\n\n\n<p>Companies that collect personally identifying information have an obligation under the US Constitution to safeguard that data effectively. Although there is no specific \u201crights to privacy amendment,\u201d you call the Bill of Rights the \u201crights to privacy constitution.\u201d In general, <a href=\"http:\/\/law2.umkc.edu\/faculty\/projects\/ftrials\/conlaw\/rightofprivacy.html\" target=\"_blank\" rel=\"noopener\">courts and legal scholars agree<\/a>.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Legal right to privacy<\/strong><\/h3>\n\n\n\n<p>The most significant law that protects our right to privacy is the <a href=\"https:\/\/www.justice.gov\/opcl\/overview-privacy-act-1974-2020-edition\" target=\"_blank\" rel=\"noopener\">Privacy Act of 1974<\/a>, which has been updated periodically to address changes in the information marketplace. In essence, the law enshrines individuals\u2019 right to privacy and establishes duties that companies have when they collect, use, or share personal information.<\/p>\n\n\n\n<p>Based on the Privacy Act\u2019s protections, the <a href=\"https:\/\/www.ftc.gov\/business-guidance\/resources\/protecting-personal-information-guide-business\" target=\"_blank\" rel=\"noopener\">FTC has published best practices<\/a> for businesses when they\u2019re in possession of consumer information.<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Take stock\u2014know what information you have<\/li><li>Scale down\u2014keep only what you need<\/li><li>Lock it\u2014keep it protected from cybercriminals<\/li><li>Pitch it\u2014properly dispose of information when it\u2019s no longer needed<\/li><li>Plan ahead\u2014create a plan to respond to security incidents.<\/li><\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">What we can learn from the Equifax data breach<\/h3>\n\n\n\n<p>Unfortunately, the biggest lesson of the Equifax breach is that it can happen anytime. Cybercrime is a multibillion-dollar business, and even businesses with highly sophisticated data security run the risk of being breached.<\/p>\n\n\n\n<p>Knowing this, though, consumers can take steps to protect themselves. Some <a href=\"https:\/\/www.cnbc.com\/2014\/09\/20\/five-ways-to-protect-yourself-from-data-breaches.html\" target=\"_blank\" rel=\"noopener\">recommendations<\/a> include:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Pay with an app (PayPal or Apple Pay) instead of a credit card<\/li><li>Use a signature instead of a PIN to identify yourself at the point of sale<\/li><li>Avoid scam emails related to data breaches (and everything else)<\/li><li>Study your statements to make sure there aren\u2019t suspicious charges<\/li><li>Use cash whenever possible<\/li><\/ul>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>The Equifax data breach settlement<\/strong><\/h3>\n\n\n\n<p>Given the damage done to consumers by the Equifax data breach, the company agreed to a settlement of up to $425 million to help people who had experienced fraud or identity theft.<\/p>\n\n\n\n<p>The initial deadline to file claims was January 22, 2020. However, if you discover misuse of your personal information you can still get <a href=\"https:\/\/eligibility.equifaxbreachsettlement.com\/en\/Eligibility\" target=\"_blank\" rel=\"noopener\">free identity restoration services<\/a> even if you didn\u2019t file a claim for other benefits.<\/p>\n\n\n\n<p>If you\u2019ve been impacted by a data breach, including the Equifax data breach, and need help to access benefits, contact <a href=\"https:\/\/www.napolilaw.com\/\">Napoli Shkolnik<\/a> today for a free consultation.<\/p>\n\n\n","protected":false},"excerpt":{"rendered":"<p>In 2017, the Equifax data breach was experienced as one of the most damaging data breaches in history. Cybercriminals accessed a massive trove of data on 148 million Americans that&#8230;<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[782],"tags":[],"class_list":["post-13892","post","type-post","status-publish","format-standard","hentry","category-civil-rights"],"acf":[],"page_builder_type":"classic","gutenberg_data":[],"_links":{"self":[{"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/posts\/13892","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/comments?post=13892"}],"version-history":[{"count":0,"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/posts\/13892\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/media?parent=13892"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/categories?post=13892"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.napolilaw.com\/wp-json\/wp\/v2\/tags?post=13892"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}