Skip to content
Search AI Powered

Latest Stories

Equifax Adds Insult to Injury With Scam Site Redirect

Equifax Adds Insult to Injury With Scam Site Redirect

Equifax’s response to its data breach has left much to be desired.

Equifax's response to a data breach of 143 million people's personal information, including their Social Security numbers, has left much to be desired. The company riled consumers once again after news reports revealed the company’s official Twitter account has been directing users to afake lookalike website.

Nick Sweeting, a software engineer, created an imitation of equifaxsecurity2017.com, Equifax’s page about the security breach. Several posts from the company’s Twitter account directed consumers to Sweeting’s version, securityequifax2017.com. Equifax deleted its tweets after the error was publicized, but one of these tweets has been captured in a screenshot below.


Gizmodo's staff also found eight tweets containing the fake URL dating back to September 9th:

Sweeting’s website looks slightly different than the official Equifax website, but his website was upfront about what it was. (As of last night, the Chrome, Firefox and Safari browsers have blacklisted Sweeting's version. Sweeting told reporters that by then, the site had already received more than 200,000 hits.)

It's simple for phishers to create their own versions of the Equifax page, and that could have been catastrophic for those required to enroll in identity theft protection: They would have been required to enter their surname and the last six digits of their Social Security number. Sweeting disabled the form in his version, so no information was saved.

“Their site is dangerously easy to impersonate,” Sweeting said in an email to The New York Times, noting that his intentions––to draw attention to Equifax's weak security measures––were successful. “It only took me 20 minutes to build my clone. I can guarantee there are real malicious phishing versions already out there. It’s in everyone’s interest to get Equifax to change this site to a reputable domain. I knew it would only cost me $10 to set up a site that would get people to notice, so I just did it.”

In a statement yesterday, Equifax said all posts containing the wrong link had been deleted:

We apologize for the confusion. Consumers should be aware of fake websites purporting to be operated by Equifax. Our dedicated website for consumers to learn more about the incident and sign up for free credit monitoring is https://www.equifaxsecurity2017.com, and our company homepage is equifax.com. Please be cautious of visiting other websites claiming to be operated by Equifax that do not originate from these two pages.

Creating a subdomain of the equifax.com website––and directing users there––would have avoided this PR nightmare altogether, because phisherscannot create pages on the equifax.com domain. An Equifax spokeswoman, Marisa Salcines, did not respond when asked why the company had created a separate website rather than a subdomain of equifax.com.

More from News

Karoline Leavitt
Win McNamee/Getty Images

Karoline Leavitt Slammed After Suggesting Reports Of Deadly Strike On Iranian Girls' School Are Just 'Propaganda'

White House Press Secretary Karoline Leavitt was criticized after she rejected reports that the U.S. struck a girls' elementary school in Iran, killing 175 people, insisting in remarks to the press pool that it's just Iranian "propaganda" that they've "fallen" for.

Iranian state media and health officials said the strike occurred early Saturday morning in Minab, in the country’s southern Hormozgan Province. Journalists from international news organizations have not been granted access to independently verify the reported death toll or the circumstances surrounding the strike.

Keep ReadingShow less
Screenshots from @madswellness's TikTok video
@madswellness/TikTok

Woman Sparks Debate With Her Viral Hot Take That We Should 'Normalize Not Liking Dogs'

We're all different people with different interests, and it's perfectly okay that we like different things.

But there are some people who passionately, even vehemently, draw the line at other people liking or disliking dogs.

Keep ReadingShow less
Screenshots from @vanellimelli030's TikTok video
@vanellimelli030/TikTok

Model Accuses Fashion Brand Of Using AI To Recreate Her Looks For Ad Instead Of Hiring Her

There used to be laws in place for someone's likeness being used without their consent, and most certainly if their likeness was being used in an exploitative way for profit.

But now with the rise of AI-generated photographs, advertisements, and other digital products, the lines seem to have become muddied between the illegal stealing of someone's likeness and AI "inspiration."

Keep ReadingShow less
Screenshots from @anissahm15's TikTok video
@anissahm15/TikTok

TikToker Secretly Records Unhinged Spectrum Employee Screaming At Her For Trying To Cancel Her Service

Employees in commission-based positions are feeling increasingly pressured to acquire new clients, retain previous clients, and solve the issues their clients call in about with high satisfaction ratings.

Even though tensions are high, and the pressure they're feeling may be unrealistic for any one person to take, that doesn't give them the right to mistreat people who do not want to sign up or want to cancel.

Keep ReadingShow less
Screenshots from @hustleb***h's TikTok video
@hustleb***h/TikTok

Travel Influencer Posts Viral 'Hack' Using Hotel Coffee Maker To Wash Her Underwear—And We're Horrified

We've all worried about packing enough clothes when we go on a trip, especially when it's the really important stuff, like underwear and socks.

But travel influencer @tarawoodcox11 thoroughly grossed out the internet when she shared a hack for maintaining clean, or at least cleaner underwear, while on the go. The video was later shared by the TikTok platform @hustleb*tch where it went viral.

Keep ReadingShow less