News: 1200+ eBay accounts hacked!

snrama
Community Member
1200+ eBay accounts hacked!

Friday, September 28 2007 @ 10:10 PM IST
Contributed by: onlygeek
Tech Industry News


With great power comes great responsibility and with great success comes greater enemies. Reports are coming that 1200+ eBay accounts were recently compromised but a unidentified hacker, who posted confidential information from these id's on the eBay Trust and Safety (TnS) forums.

It is still unconfirmed wether the leak was due to a security breach in the eBay system or a mega social engineering operation (as we believe).

While the original posts and the YouTube video showing the list of names have been removed from the Web, an eBay member has secured several account names and posted them on a personal web site so that people can easily check to see if their account was one of the original 1,200 (Can't be sure if even that will be online for long).


Most of the usernames that we cross checked were from eBay US. However its unconfirmed at the moment if any eBay.in accounts are involved in the incident. ---------------
With Regards,
Navaneeth (snrama) ๐Ÿ˜‰
---------------
With Regards,
Navaneeth (snrama) ๐Ÿ˜‰
Message 1 of 6
latest reply
5 REPLIES 5

News: 1200+ eBay accounts hacked!

snrama
Community Member
Hi All,

I was shocked to see this news, So posted here. Hope this will happen never in future. ---------------
With Regards,
Navaneeth (snrama) ๐Ÿ˜‰
---------------
With Regards,
Navaneeth (snrama) ๐Ÿ˜‰
Message 2 of 6
latest reply

News: 1200+ eBay accounts hacked!

sapana@ebay.com
eBay Employee
eBay Employee
Hi snrama,

For the benefit of all the community members, I will like to post certain clarification to the news, so that all of us get a clear picture of the events:

Very early yesterday morning (Tuesday 25th September 2007), a malicious fraudster made posts on the Trust & Safety forum on eBay.com containing name and contact information for 1,200 eBay members.

It appears that the the fraudster may have obtained this information from users in a phishing email, or it may be false information.

Within an hour, our Trust and Safety team were proactively addressing this situation and confirmed that this is not a security breach from eBay.
The posts also appeared to contain credit card data -- however, eBay confirmed that these credit cards did not match the credit card on file with the membersโ€™ eBay account. After doing further research, we do not believe any authentic credit card numbers were posted. We have reason to believe this data was falsified to cause public concern.

To ensure the safety of our members, we are also proactively contacting members by phone.After more investigation, including phone conversations with many of the members, it appears that these numbers were not valid at all.

Each of these accounts was the victim of an Account Take Over, most likely through a successful phishing campaign. In addition to phone calls, we are also contacting our members via My Messages to ensure that impacted members are completely informed and can take safety precautions.

This incident underscores the need for all of us to take proper safety precautions while we are on the internet. As a reminder, eBay will never send an email to you that asks for a response that is not also in My Messages. Before responding to an email that appears to be from eBay, check My Messages first. When in doubt about the authenticity of an email, send to spoof@ebay.com.


Regards,
Sapana
Message 3 of 6
latest reply

News: 1200+ eBay accounts hacked!

snrama
Community Member
Thanks Sapana for the reply. :-) ---------------
With Regards,
Navaneeth (snrama) ๐Ÿ˜‰
---------------
With Regards,
Navaneeth (snrama) ๐Ÿ˜‰
Message 4 of 6
latest reply

News: 1200+ eBay accounts hacked!

coolbrasco
Community Member
Dear Snrama,

You just panicked your self. I saw this news two day ago your post. I did not post and didn't want to give a wrong impression to India members.

Rule No.1 : DON'T BELIEVE EVERYTHING POSTED ON NET.

There are bad elements in the world targeting popularity. If they can get 1200 members registration info, why not the other million members in the same database ?. This is not a true news, you can judge quickly.

Take CNN, they publish everything they get, they don't testify. I don't read it.

I read BBC, because they don't publish no spam news. They always make sure before they publish. Also BBC never hurry up publishing splash news until it is confirmed. This brings the trust and attracts readers.

Best regards,
CoolBrasCo.
Message 5 of 6
latest reply

News: 1200+ eBay accounts hacked!

techniwas
Community Member
Dear CoolBrasCo,

"It is still unconfirmed wether the leak was due to a security breach in the eBay system or a mega social engineering operation (as we believe)."

SnRama's post alreadt indicated that this might be a phishing attack (social engineering)

Regards


TechiE
Message 6 of 6
latest reply