Ditto! Equifax manages ACA exchange verifications and ACA compliance for employers. My guess is they have expanded well beyond the scope of managing credit reports and can't manage all those systems.
I’d sure be curious what failed though. Data dumps like this are supposed to live in the inner sanctum. And access carefully circumscribed.
Don’t forget bad old “social engineering.” Sometimes the inner sanctum gets too self confident. I saw another inner sanctum at a different business where the main Oracle password was going out in random status emails.