First American says product defect could have caused customer data exposure

A design defect in one of its production applications had made this possible


Reuters May 25, 2019
Counsels of accused to cross examine complainant, witnesses today. PHOTO: AFP

US real estate title insurance company First American Financial said on Friday it had learned of a design defect in one of its production applications that had made possible unauthorised access to customer data.

The statement was sent in response to a report by security news website Krebs on Security, which said First American’s website had exposed about 885 million files dating back to 2003.

WhatsApp, security and spyware: what happened

First American said it had shut down access to the application and was evaluating the impact of the defect.

“We are currently evaluating what effect if any, this had on the security of customer information. We have hired an outside forensics firm to assure us that there has not been any meaningful unauthorised access to our customer data,” First American said in an emailed statement.

Database exposes millions of Instagram account information

Digitised records including bank account numbers and statements, mortgage and tax records, social security numbers, wire transaction receipts, and drivers’ license images were available without authentication to anyone with a web browser, according to the Krebs on Security report.

COMMENTS

Replying to X

Comments are moderated and generally will be posted if they are on-topic and not abusive.

For more information, please see our Comments FAQ