One of the most wretching thing for this year and weekend is Equifax issue. The follow up from the credit agency and its response to know whether you are affected or not is more frustrating. The protection that is offered for identity threat is 1 year. Heck, they already did an announcement almost after 6 weeks, and they can protect their customers only for 1 year. After that one has to pay $17 every month to be protected from this wretched organization. So from the initial reports, looks like they failed to upgrade their open source stack. The naked security explaination seems to be the best possible explaination how the struts framework was exploited.
I think this wrtie up from free code camp was much lighter read and was more informative.