eBay compromised - change your password!

Discussion in 'Off Topic Discussion' started by retro, May 21, 2014.

  1. retro

    retro Resigned from mod duty 15 March 2018

    Joined:
    Mar 13, 2004
    Messages:
    10,354
    Likes Received:
    822
    http://www.bbc.co.uk/news/technology-27503290

    eBay have been TERRIBLE with this. The staff accounts were compromised in February / March. They found out about two weeks ago, decided to look into it, then made it public today with a post on their corporate site.

    They did NOTHING on the main sites - no pop-up. They have NOT e-mailed users, despite claiming they are starting a good 12 hours after the media reported that they are asking users to change their passwords. Their corporate Twitter account (who'd follow that?!) posted some vague messages that they've found no evidence of credit card details being used, but not explaining what happened, several hours after the media reported that eBay were asking users to change passwords. They then put a post on their corporate site, explaining and telling people to change their passwords, and shared it on Facebook.... at least 5 hours after the media had started reporting on it! Initial reports said that they put up a weird post on their corporate site that was broken, promising details to follow.

    I've now found, when I try to log in, that I get the following:

    [​IMG]

    It then logs me out. Yup - they tell you that you need to change your password, but don't let you!

    Terribly handled by eBay.
     
  2. HEX1GON

    HEX1GON FREEZE! Scumbag

    Joined:
    May 4, 2011
    Messages:
    9,916
    Likes Received:
    837
    This was horrible, just crap. I only found out by Life Hacker.

    Change your PayPal, eBay and Email password - there's been reports by other users that all other accounts have been accessed. So double check your information guys! - Turfster if you're reading this, it's why your PayPal account was drained (I remember talking to you about this in chat).
     
  3. geluda

    geluda <B>Site Supporter 2012</B><BR><B>Site Supporter 20

    Joined:
    Apr 25, 2011
    Messages:
    1,422
    Likes Received:
    13
    Hmm, I noticed my messages had been removed, possibly related?
     
  4. Forcer UK

    Forcer UK Active Member

    Joined:
    Feb 13, 2014
    Messages:
    40
    Likes Received:
    0
    Thanks for the heads up retro first I've head of this.
     
  5. XboxSurgeon

    XboxSurgeon Site Supporter Since 2013

    Joined:
    Nov 18, 2013
    Messages:
    2,109
    Likes Received:
    923
    Yep, had a friend of mine who hates ebay so much, he doesn't even have an account, tell me about it vai text message about 30 minutes ago. At no point did I ever receive an email from Ebay or Paypal regarding this nor did I receive an ebay message.
     
  6. Mystical

    Mystical Resolute Member

    Joined:
    May 3, 2011
    Messages:
    935
    Likes Received:
    35
    yeah not great news and i still havent received anything from ebay informing me of the problem
     
  7. Cyantist

    Cyantist Site Supporter 2012,2013,2014,2015

    Joined:
    Oct 28, 2008
    Messages:
    4,158
    Likes Received:
    20
    Found out as and when thanks to Graham Cluley's e-Mail newsletter!
     
  8. Jord9622

    Jord9622 Site Supporter 2014 Site Benefactor

    Joined:
    Apr 23, 2012
    Messages:
    390
    Likes Received:
    42
    WOW!!!!!!! I think this is the 100th password I've had to change this year!!!!!!!!!!!!!!!!!!!!
     
    Last edited: May 22, 2014
  9. BamBoo

    BamBoo Robust Member

    Joined:
    Oct 27, 2010
    Messages:
    274
    Likes Received:
    7
    Yeah I seem to be changing passwords all the time, it was just last week I had to change my ebay and paypal passwords, I use the same for ebay and paypal but a different one for my email.
    My email account was locked 4 times in 1 week, when I tried to log in I got a message saying somthing about suspicious activity, every time I had to verify my details in a form and from the phone number attached to my Hotmail account then wait for Hotmail to unlock my account.
    It was because of repeated failed login attampts, so someone using my ebay password and guessing my password trying to get into my email.

    They should have a system where you can only log in from an IP address in England, so even if someone in India/Pakistan/China/Somalia have my password they can't login.
     
    Last edited: May 22, 2014
  10. Banjo

    Banjo <B>Site Supporter 2014</B>

    Joined:
    Oct 11, 2012
    Messages:
    606
    Likes Received:
    10
    I had the suspicious sign in alert this morning too on my email account associated with ebay. Looking at the sign in history I've signed in places such as Argentina, Chile, Italy, and Thailand.

    Now granted I occasionally use a VPN, but that is set to US only so definitely something up. Have just changed my password, off to change ebay and paypal ones too.
     
  11. HEX1GON

    HEX1GON FREEZE! Scumbag

    Joined:
    May 4, 2011
    Messages:
    9,916
    Likes Received:
    837
    That's worrying... Very worrying.

    I didn't get any sign in attempts or notices about suspicious activity, but it's happened to my sister's email quite some time ago.
     
  12. Unknown-Organization

    Unknown-Organization <B>Site Supporter 2014</B>

    Joined:
    Sep 28, 2011
    Messages:
    782
    Likes Received:
    6
    Well I just changed my password for the first time. Change it couple minute ago. I not have any suspicion yet but part from ebay took my £25 fees and after I sold the item. I hate that. FUCK YOU EBAY and PAYPAL
     
  13. Sonny_Jim

    Sonny_Jim Enthusiastic Member

    Joined:
    Apr 29, 2012
    Messages:
    525
    Likes Received:
    31
    The bit about ebay contacting users is bullcrap. I haven't seen any communication from either eBay or Paypal to change my passwords.

    The only time I did see anything like that was when I was in the process of changing my password and it said at the top "You might want to change your password if you haven't already done so after x date because of blah".
     
  14. cde

    cde Site Supporter 2017

    Joined:
    Mar 5, 2008
    Messages:
    284
    Likes Received:
    15
    Same here, no contact from eBay about password changes, changed mine as soon as i got word.. BBC news I think!
     
  15. MaxWar

    MaxWar <B>Site Supporter 2013</B>

    Joined:
    Aug 13, 2012
    Messages:
    1,486
    Likes Received:
    28
    I read about this on the newspaper today.
    I changed my password. Pretty annoying, like we dont have zillions of passwords to keep track of already, now we need to change them around too because of hackerz.
     
  16. Rogue

    Rogue Intrepid Member

    Joined:
    Feb 15, 2008
    Messages:
    638
    Likes Received:
    28
    I think this is bullshit to people change to the new password criteria they ask. Who knows...
     
  17. Sonny_Jim

    Sonny_Jim Enthusiastic Member

    Joined:
    Apr 29, 2012
    Messages:
    525
    Likes Received:
    31
    I very, very much doubt that a company would fake a security break in to roll in new password measures.
     
  18. HEX1GON

    HEX1GON FREEZE! Scumbag

    Joined:
    May 4, 2011
    Messages:
    9,916
    Likes Received:
    837
  19. LeHaM

    LeHaM Site Soldier

    Joined:
    May 5, 2013
    Messages:
    2,634
    Likes Received:
    292
    I found out from the mail man lol
     
    Last edited: May 23, 2014
  20. Rogue

    Rogue Intrepid Member

    Joined:
    Feb 15, 2008
    Messages:
    638
    Likes Received:
    28
    That's why an official announcement is important.
     
sonicdude10
Draft saved Draft deleted
Insert every image as a...
  1.  0%

Share This Page