Equifax hit with major pay out for data breach settlement

(Image credit: Shutterstock)

After exposing the personal information of almost 150m consumers back in 2017, the credit reporting agency Equifax has reached a deal with US state and federal regulators in which it will pay $700m to settle probes into its data breach.

To date this is the largest settlement ever paid for a data breach and the company will pay to close multiple probes by the Federal Trade Commission, the Consumer Financial Protection Bureau (CFPB) and the state attorneys of 48 states.

“Equifax put profits over privacy and greed over people, and must be held accountable to the millions of people they put at risk," New York Attorney General Letitia James explained in a statement.

"This company’s ineptitude, negligence, and lax security standards endangered the identities of half the U.S. population. Now it’s time for the company to do what’s right and not only pay restitution to the millions of victims of their data breach, but also provide every American who had their highly sensitive information accessed with the tools they need to battle identity theft in the future.”  

Equifax settlement

Under the settlement, Equifax will pay a $175m fine to the states and $100m to the CFPB. The company will also be required to establish a $300m restitution fund for consumers affected by the data breach which could end up being as high as $425m depending on how many people actually use it.

The 2017 data breach saw the information of almost half of US consumers compromised but the restitution fund will only be available to those who can prove they suffered direct costs as a result of the breach. This could be either as victims of fraud or from having to set up credit-monitoring services.

Consumers affected by the breach will be eligible for 10 years of free credit monitoring from Equifax and the company has also agreed to make it easier for consumers to freeze their credit or to dispute inaccurate information found in their credit reports.

Going forward, Equifax will strengthen its own security practices and its policies will be assessed regularly by a third party.

Via Reuters

Anthony Spadafora

After working with the TechRadar Pro team for the last several years, Anthony is now the security and networking editor at Tom’s Guide where he covers everything from data breaches and ransomware gangs to the best way to cover your whole home or business with Wi-Fi. When not writing, you can find him tinkering with PCs and game consoles, managing cables and upgrading his smart home. 

Latest in Security
Woman shocked by online scam, holding her credit card outside
Cybercriminals used vendor backdoor to steal almost $600,000 of Taylor Swift tickets
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Cryptocurrencies
Ransomware’s favorite Russian crypto exchange seized by law enforcement
Wordpress brand logo on computer screen. Man typing on the keyboard.
Thousands of WordPress sites targeted with malicious plugin backdoor attacks
HTTPS in a browser address bar
Malicious "polymorphic" Chrome extensions can mimic other tools to trick victims
ransomware avast
Hackers spotted using unsecured webcam to launch cyberattack
Latest in News
Apple iPhone 16 Review
Three iPhone 17 model dummy units appear in a hands-on video leak
The Samsung Galaxy S25 Edge on display the January 22, 2025 Galaxy Unpacked event.
New Samsung Galaxy S25 Edge may have revealed some key details – including its price
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 9 (game #1140)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Sunday, March 9 (game #371)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Sunday, March 9 (game #637)
WhatsApp
WhatsApp just made its AI impossible to avoid – but at least you can turn it off