News: 1200+ eBay accounts hacked!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Highlight
- Report Inappropriate Content
on 28-09-2007 11:21 PM
1200+ eBay accounts hacked!
Friday, September 28 2007 @ 10:10 PM IST
Contributed by: onlygeek
Tech Industry News
With great power comes great responsibility and with great success comes greater enemies. Reports are coming that 1200+ eBay accounts were recently compromised but a unidentified hacker, who posted confidential information from these id's on the eBay Trust and Safety (TnS) forums.
It is still unconfirmed wether the leak was due to a security breach in the eBay system or a mega social engineering operation (as we believe).
While the original posts and the YouTube video showing the list of names have been removed from the Web, an eBay member has secured several account names and posted them on a personal web site so that people can easily check to see if their account was one of the original 1,200 (Can't be sure if even that will be online for long).
Most of the usernames that we cross checked were from eBay US. However its unconfirmed at the moment if any eBay.in accounts are involved in the incident. ---------------
With Regards,
Navaneeth (snrama) 😉
Friday, September 28 2007 @ 10:10 PM IST
Contributed by: onlygeek
Tech Industry News
With great power comes great responsibility and with great success comes greater enemies. Reports are coming that 1200+ eBay accounts were recently compromised but a unidentified hacker, who posted confidential information from these id's on the eBay Trust and Safety (TnS) forums.
It is still unconfirmed wether the leak was due to a security breach in the eBay system or a mega social engineering operation (as we believe).
While the original posts and the YouTube video showing the list of names have been removed from the Web, an eBay member has secured several account names and posted them on a personal web site so that people can easily check to see if their account was one of the original 1,200 (Can't be sure if even that will be online for long).
Most of the usernames that we cross checked were from eBay US. However its unconfirmed at the moment if any eBay.in accounts are involved in the incident. ---------------
With Regards,
Navaneeth (snrama) 😉
---------------
With Regards,
Navaneeth (snrama) 😉
With Regards,
Navaneeth (snrama) 😉

Message 1 of 6
5 REPLIES 5
News: 1200+ eBay accounts hacked!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Highlight
- Report Inappropriate Content
on 28-09-2007 11:23 PM
Hi All,
I was shocked to see this news, So posted here. Hope this will happen never in future. ---------------
With Regards,
Navaneeth (snrama) 😉
I was shocked to see this news, So posted here. Hope this will happen never in future. ---------------
With Regards,
Navaneeth (snrama) 😉
---------------
With Regards,
Navaneeth (snrama) 😉
With Regards,
Navaneeth (snrama) 😉

Message 2 of 6
News: 1200+ eBay accounts hacked!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Highlight
- Report Inappropriate Content
on 29-09-2007 12:49 PM
Hi snrama,
For the benefit of all the community members, I will like to post certain clarification to the news, so that all of us get a clear picture of the events:
Very early yesterday morning (Tuesday 25th September 2007), a malicious fraudster made posts on the Trust & Safety forum on eBay.com containing name and contact information for 1,200 eBay members.
It appears that the the fraudster may have obtained this information from users in a phishing email, or it may be false information.
Within an hour, our Trust and Safety team were proactively addressing this situation and confirmed that this is not a security breach from eBay.
The posts also appeared to contain credit card data -- however, eBay confirmed that these credit cards did not match the credit card on file with the members’ eBay account. After doing further research, we do not believe any authentic credit card numbers were posted. We have reason to believe this data was falsified to cause public concern.
To ensure the safety of our members, we are also proactively contacting members by phone.After more investigation, including phone conversations with many of the members, it appears that these numbers were not valid at all.
Each of these accounts was the victim of an Account Take Over, most likely through a successful phishing campaign. In addition to phone calls, we are also contacting our members via My Messages to ensure that impacted members are completely informed and can take safety precautions.
This incident underscores the need for all of us to take proper safety precautions while we are on the internet. As a reminder, eBay will never send an email to you that asks for a response that is not also in My Messages. Before responding to an email that appears to be from eBay, check My Messages first. When in doubt about the authenticity of an email, send to spoof@ebay.com.
Regards,
Sapana
For the benefit of all the community members, I will like to post certain clarification to the news, so that all of us get a clear picture of the events:
Very early yesterday morning (Tuesday 25th September 2007), a malicious fraudster made posts on the Trust & Safety forum on eBay.com containing name and contact information for 1,200 eBay members.
It appears that the the fraudster may have obtained this information from users in a phishing email, or it may be false information.
Within an hour, our Trust and Safety team were proactively addressing this situation and confirmed that this is not a security breach from eBay.
The posts also appeared to contain credit card data -- however, eBay confirmed that these credit cards did not match the credit card on file with the members’ eBay account. After doing further research, we do not believe any authentic credit card numbers were posted. We have reason to believe this data was falsified to cause public concern.
To ensure the safety of our members, we are also proactively contacting members by phone.After more investigation, including phone conversations with many of the members, it appears that these numbers were not valid at all.
Each of these accounts was the victim of an Account Take Over, most likely through a successful phishing campaign. In addition to phone calls, we are also contacting our members via My Messages to ensure that impacted members are completely informed and can take safety precautions.
This incident underscores the need for all of us to take proper safety precautions while we are on the internet. As a reminder, eBay will never send an email to you that asks for a response that is not also in My Messages. Before responding to an email that appears to be from eBay, check My Messages first. When in doubt about the authenticity of an email, send to spoof@ebay.com.
Regards,
Sapana
Message 3 of 6
News: 1200+ eBay accounts hacked!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Highlight
- Report Inappropriate Content
on 01-10-2007 01:18 PM
Thanks Sapana for the reply. :-)
---------------
With Regards,
Navaneeth (snrama) 😉
With Regards,
Navaneeth (snrama) 😉
---------------
With Regards,
Navaneeth (snrama) 😉
With Regards,
Navaneeth (snrama) 😉

Message 4 of 6
News: 1200+ eBay accounts hacked!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Highlight
- Report Inappropriate Content
on 02-10-2007 01:03 PM
Dear Snrama,
You just panicked your self. I saw this news two day ago your post. I did not post and didn't want to give a wrong impression to India members.
Rule No.1 : DON'T BELIEVE EVERYTHING POSTED ON NET.
There are bad elements in the world targeting popularity. If they can get 1200 members registration info, why not the other million members in the same database ?. This is not a true news, you can judge quickly.
Take CNN, they publish everything they get, they don't testify. I don't read it.
I read BBC, because they don't publish no spam news. They always make sure before they publish. Also BBC never hurry up publishing splash news until it is confirmed. This brings the trust and attracts readers.
Best regards,
CoolBrasCo.
You just panicked your self. I saw this news two day ago your post. I did not post and didn't want to give a wrong impression to India members.
Rule No.1 : DON'T BELIEVE EVERYTHING POSTED ON NET.
There are bad elements in the world targeting popularity. If they can get 1200 members registration info, why not the other million members in the same database ?. This is not a true news, you can judge quickly.
Take CNN, they publish everything they get, they don't testify. I don't read it.
I read BBC, because they don't publish no spam news. They always make sure before they publish. Also BBC never hurry up publishing splash news until it is confirmed. This brings the trust and attracts readers.
Best regards,
CoolBrasCo.
Message 5 of 6
News: 1200+ eBay accounts hacked!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Highlight
- Report Inappropriate Content
on 02-10-2007 02:00 PM
Dear CoolBrasCo,
"It is still unconfirmed wether the leak was due to a security breach in the eBay system or a mega social engineering operation (as we believe)."
SnRama's post alreadt indicated that this might be a phishing attack (social engineering)
Regards
TechiE
"It is still unconfirmed wether the leak was due to a security breach in the eBay system or a mega social engineering operation (as we believe)."
SnRama's post alreadt indicated that this might be a phishing attack (social engineering)
Regards
TechiE
Message 6 of 6

