ebay hacked - change your password

UKworkshop.co.uk

Help Support UKworkshop.co.uk:

This site may earn a commission from merchant affiliate links, including eBay, Amazon, and others.
My thoughts ea
Mr_P":1aml1na8 said:
http://www.bbc.co.uk/news/technology-27503290

Good of them to rush and tell us since it happened back in Feb/March.

My thoughts entirely - and still no mention of it on their website when I logged in to change my password.
 
Yep, came here to post this, but I got delayed canting my password first. Interestingly:

The database, which was compromised between late February and early March, included eBay customers’ name, encrypted password, email address, physical address, phone number and date of birth.

Although the passwords are 'encrypted' [0], the mechanism by which this is done is generally known. It's then just a matter of time (and inclination) to get a computer to try to crack the passwords - hence why one should change the password _now_. In principle, I would expect that a dedicated intent would have cracked a number of them by now - and the general modus operandi would be the use the password to change the existing password on eBay, then start 'selling' fraudulently, or 'buying' with rubber cheques….

The fact that they also got physical addresses, date of birth, and email addresses also opens some (limited) opportunity to try to crack other online accounts. They don't say, but I strongly suspect that the 'secret question' data would also have been leaked.

Any other site that you use the same userid for, particularly if you use the same password too [1], I'd recommend changing passwords and 'secret question' there too, and keeping an eye on such places.

Spending _any_ amount of time doing computer security does tend to give one a creeping sense of paranoia… You'd be surprised how easy it can be to break into computer systems...

[0] I'm hoping that it's actually a one-way hash, rather than a reversible encryption.

[1] Bad! Bad internet user! No biscuit! For _exactly_ this reason.
 
I must've had my account hacked back then as I suddenly started to sell IPhone 5's and relocated myself to Northampton...
 
Mr_P":1ef5cul9 said:
Good of them to rush and tell us since it happened back in Feb/March.
Did you manage to read as far as the bit that says;
"attackers accessed the information after obtaining "a small number of employee log-in credentials", allowing them to access its systems - something it only became aware of a fortnight ago." and then "Extensive forensics subsequently identified the compromised eBay database, resulting in the company's announcement today"
 
Blimey over 48 hours after the story broke I get an email telling me to change my password.
 
My brother-in-laws, step daughter who is just 12 years old, hacked his computer and advised him of all his passwords in a matter of minutes. :shock:

So what chance do we stand, for me a non savvy computer user, my chances are zero. #-o

Which means I don’t use these type of sites.

Take care.

Chris R.
 
Rhossydd":1im3psze said:
RogerS":1im3psze said:
ChrisR":1im3psze said:
....
So what chance do we stand, for me a non savvy computer user, my chances are zero. #-o
.....
Buy a Mac ? :-"
Complacency and ignorance, the thief's friend.

Yup, those lazy PC owners who can't be bothered to keep their anti-virus stuff up--to-date.
 
ChrisR said:
My brother-in-laws, step daughter who is just 12 years old, hacked his computer and advised him of all his passwords in a matter of minutes. :shock:

/quote]

So, if you have a list of your passwords, don't call it "passwords' and don't keep it on your computer :)
 
RogerS":1ndouzxh said:
Yup, those lazy PC owners who can't be bothered to keep their anti-virus stuff up--to-date.
You think anti-virus software is the answer to poor password protocol and identity theft ?

I rest my case.
 
Rhossydd":2362o9jv said:
RogerS":2362o9jv said:
Yup, those lazy PC owners who can't be bothered to keep their anti-virus stuff up--to-date.
You think anti-virus software is the answer to poor password protocol and identity theft ?

I rest my case.

Don't be such a patronising prat. I have probably forgotten more about IT security than you have had hot dinners.

My original post was said somewhat tongue in cheek but you just HAD to start making snide comments (and continue to do so).

I have a job for that involves sex and travel.
 
Back
Top