Copyright ©1997-2008 Glenn Fleishman except as noted otherwise. All rights reserved. For permission to reprint, contact Glenn Fleishman at glenn at glennf.com. Photo © 2008 Laurence Chen; used with permission.
Turning technology from mumbo-jumbo into rich tasty gumbo
� Egg Sucking | Main | The Google Pay-for-Position Deal �A few weeks ago, someone stole my identity (temporarily) on eBay. I was mystified at the time, and eBay (which handled the problem beautifully for me) also was at a loss. My password is not subject to dictionary attacks and comprises letters, numbers, and punctuation. My email account was not compromised. I have never spoken my eBay password aloud or stored it on my computer. I haven't accessed the account at insecure locations. So how was it ripped off?
Turns out I'm not alone. A PC World editor was similarly hijacked - and she and eBay have no explanation, either. eBay may have a mole, or may have someone who has figured out how to manipulate DNS temporarily to redirect outbound email to specific domains. This would allow someone to generate a password change request, intercept the email, login, and change the account. In my case, the hijacker was trying to sell digital cameras with 7-day auctions (which eBay said was weird - usually the auctions are quick to get in and out). They required international money orders for payment, too. Bells should be going off.
Anyone else hijacked?
Posted by Glennf at February 19, 2002 11:09 AM TrackBack URL for this entry: Would someone PLEASE post the procedures to contact eBay Fraud dept? I cannot get a live help person anywhere! The page asking for my credit card number and bank account number keeps popping up whenever I try to register to sell something on eBay, can't figure out how to delete this Host link OR to send it to eBay Security people so they can figure out where it's coming from - and help me remove it from my machine so I can get back to eBay business. There's GOT to be a way to let eBay know what's happening, so far it seems like they are oblivious. Posted by: Ernest Buckler at October 29, 2003 11:14 PM I got a very strange email yesterday from eBay stating that my email address change was in process and to follow the link to complete the change. It was a valid eBay link, but I chose to not follow it. I closed my browser window and manually typed in www.ebay.com, went to My eBay and checked on my personal information. Sure enough, my email address had been changed but the password information had not yet been changed. So I immediately changed the email address back to my own, changed my password for my email account which was the same as my eBay login password. I then changed my password on my eBay account as well. Then off to my bank account, Paypal accounts, yadda yadda yadda.... Thus far I've changed passwords for every online service that I use, that I can think of anyhow. I'm currently looking into getting an answer from eBay (nothing since last night) and other services that may have been tampered with. I wish you all the best of luck. I think the best piece of advice I can give all of you at this point is: Good luck everybody! I lucked out and got only email messages from people the guy had contacted, but no sales or purchases had taken place. Posted by: Beth at September 30, 2003 8:53 AM I too have been hijacked, yesterday at 10pm. How do i contact ebay directly???? I am in UK and when i try to use the site's email it asks me for my username and password that have been hijacked, thus i cannot login... It stinks... Help, please, anyone??? Posted by: rick marland at September 27, 2003 12:00 PM www.auctionguild.com for ANYONE that has this happen to them..the direct numbers to ebay. What a nightmare -Dean Posted by: dean at September 18, 2003 12:24 AM Similar story, or should I say nightmare. I came home from vacation to find myself locking out of yahoo and ebay (same password for both accounts) with an invalid password message. I knew I didn't change my password. Ebay confirmed that while I was away, someone in "Greece" had taken over my sellers identity and had computer equipment listed. I believe this person knew when I would be out of town from my on line travel itinerary in my yahoo email. Ebay was helpful in restoring my account. If you have this problem, go to the help section, Security Center, fraud, and there is a live help link. I've been back to them several times and the customer service is excellent. Yahoo took awhile but perseverence is the key. I got no response to numberous email but did finally get through via phone (408) 349-1572 is the direct number for yahoo security if anyone needs this information. When trying to resolve via email with yahoo, I got no where because I couldn't veryify my registration information. Of course I couldn't, because the person who took over the account had changed everything. I've learned a lot through this, first of all, don't keep anything person as far as credit card info or account numbers in your email. Secondly, make sure you have different passwords for every account you have...ebay, email, everything. There's got to be a link with using the same password and a person's ability to hack into these accounts. So far, the only charges I've had have been sellers fees from ebay which they promptly reversed, but I'll have to keep an eye on things for a long time until I feel secure again. Posted by: Jamie at August 7, 2003 2:57 PM I stupidly answered one of those ebay emails about account security request and filled out their form. I can't believe I fell for that, it looked so real. So far nothing has happened, I closed my credit card account, contacted the credit bureau to have a fraud alert put on my accounts. Every time I think about it I feel sick. Are these people ever caught and punished or are just us innocent people punished? Posted by: J P at July 24, 2003 7:38 AM I recently had my Hotmail and Ebay accounts hacked into. I was unable to recover the Hotmail account, the hacker changed all my information, so I had no other option other than just make a new one. I did manage to get my Ebay account back, they were actually very helpful. I went on a live chat with them after a few emails to their security and theft department. I guess Ebay dropped all account activity and whatever else the hacker did. I've got a picture of all the activity that occured while I was unable to access my Ebay account on my webpage. Posted by: Adam Bowers at July 15, 2003 1:03 PM My Ebay account was just stolen this weekend and I can not find any way except for emails to contact Ebay. I have not received a reply from them (Ebay) yet. I can not get into my account. I received auto ebay messages that my account password was changed and a few other auto response message fom them about my account being suspended then reinstated and then unauthorized people accessing my account. Do they have LIVE people to talk to so I can get this cleared up? Posted by: Mike at July 7, 2003 6:05 AM same exact problem for me .. first, couldn't access my yahoo account .. called yahoo .. they were great and fixed my account - accept for the "welcome" part still says "welcome bi" - who the heck is Ms. bi bi? can't figure out how to change that! i have reentered my info several times and still can't reset it! seems strange that the hackers could though .. then i had an e-mail from ebay that i could finally access -- linked over to ebay and that account was compromised .. so i called ebay and they said the take over on my account was from romania too .. seems quite coincidental .. cover up?! ebay was already aware of the fraud though and i wasn't selling anything -- thank god! what else do i get to find out has been stolen today! be warned everyone!!! any ideas of good e-mail accounts - i'm seriously considering getting rid of my yahoo account! Posted by: leslie at June 24, 2003 11:16 AM same exact problem for me .. first, couldn't access my yahoo account .. called yahoo .. they were great and fixed my account - accept for the "welcome" part still says "welcome bi" - who the heck is Ms. bi bi? can't figure out how to change that! i have reentered my info several times and still can't reset it! seems strange that the hackers could though .. then i had an e-mail from ebay that i could finally access -- linked over to ebay and that account was compromised .. so i called ebay and they said the take over on my account was from romania too .. seems quite coincidental .. cover up?! ebay was already aware of the fraud though and i wasn't selling anything -- thank god! what else do i get to find out has been stolen today! be warned everyone!!! Posted by: leslie at June 24, 2003 11:15 AM same exact problem for me .. first, couldn't access my yahoo account .. called yahoo .. they were great and fixed my account - accept for the "welcome" part still says "welcome bi" - who the heck is Ms. bi bi? can't figure out how to change that! i have reentered my info several times and still can't reset it! seems strange that the hackers could though .. then i had an e-mail from ebay that i could finally access -- linked over to ebay and that account was compromised .. so i called ebay and they said the take over on my account was from romania too .. seems quite coincidental .. cover up?! ebay was already aware of the fraud though and i wasn't selling anything -- thank god! what else do i get to find out has been stolen today! be warned everyone!!! Posted by: leslie at June 24, 2003 11:15 AM same exact problem for me .. first, couldn't access my yahoo account .. called yahoo .. they were great and fixed my account - accept for the "welcome" part still says "welcome bi" - who the heck is Ms. bi bi? can't figure out how to change that! i have reentered my info several times and still can't reset it! seems strange that the hackers could though .. then i had an e-mail from ebay that i could finally access -- linked over to ebay and that account was compromised .. so i called ebay and they said the take over on my account was from romania too .. seems quite coincidental .. cover up?! ebay was already aware of the fraud though and i wasn't selling anything -- thank god! what else do i get to find out has been stolen today! be warned everyone!!! Posted by: leslie at June 24, 2003 11:14 AM same exact problem for me .. first, couldn't access my yahoo account .. called yahoo .. they were great and fixed my account - accept for the "welcome" part still says "welcome bi" - who the heck is Ms. bi bi? can't figure out how to change that! i have reentered my info several times and still can't reset it! seems strange that the hackers could though .. then i had an e-mail from ebay that i could finally access -- linked over to ebay and that account was compromised .. so i called ebay and they said the take over on my account was from romania too .. seems quite coincidental .. cover up?! ebay was already aware of the fraud though and i wasn't selling anything -- thank god! what else do i get to find out has been stolen today! be warned everyone!!! Posted by: leslie at June 24, 2003 11:14 AM My EBay account was just stolen, what should I do? I talked to the guy after he called me, said he was frauded. But, what am I suppose to do now, like, how to I close my EBay account? Posted by: Andrew at June 20, 2003 1:20 PM Re: eBay identity theft ... I had exactly the Nothing like this ever happened to me before, and Live and learn, I guess. I've been wondering if BTW, I found this site by doing a google search Any comments welcome. Thanks for indulging me my Regards, Posted by: Lane at June 1, 2003 11:06 AM Identity Theft Posted by: Phil M at May 28, 2003 10:18 PM My ebay ID was just hijacked two days ago, along with my Yahoo mailbox. Quite stupidly of me, I had the same name and password for both. Here's the way they got me: I got an email saying it was from Yahoo, telling me I would loose my account if I didn't "reconfirm" my account. I clicked a link and it went to a page that looked just like a Yahoo page. it asked for my username and password, and I fell for it. I just wasn't ready for that. Ebay is looking into it right now, as well as Yahoo. neil Posted by: Neil at May 2, 2003 11:06 PM My account was hijacked and then shutdown by ebay after a sinister user using the ebay handle thx in adv doc Posted by: Dr.NT at April 11, 2003 10:48 AM I too got a strange "request to change password" confirmation via e-mail a couple weeks ago. Very strange, someone's trying a bunch of accounts and seeing who they can hijack, it seems. Posted by: Jerry Kindall at March 5, 2002 5:51 PM Last fall, I received three emails in one day about requests to change my eBay password. I was alarmed and forwarded all three emails including headers to eBay's fraud department. The response I received was disappointing. It was somewhat dismissive stating that "our systems and procedures are state of the art, no one can change your password without your knowledge, blah, blah, blah". After reading that article, I wonder how many users it took before eBay decided that maybe their system is less than perfect. Posted by: Don Arbow at February 21, 2002 9:12 AM I thought that it might be Passport, since I am linked in some fashion, but I barely use Passport and my account wasn' t used in any fashion except to hijack the eBay system. Doesn't sound quite right, but I might be wrong. (I would have thought they'd have changed my shipping address and used my credit card.) That reminds me: i should just disable my Passport account. I don't use it and it's creepy. Oh, wait, I can't do all sorts of stuff in Windows XP without it. Posted by: Glenn Fleishman at February 19, 2002 7:58 PM I wonder, Glenn, whether you logged into eBay's system using a Microsoft Passport, since it's now an option to do so? Call me paranoid and an anti-MS zealot, but isn't it possible that this is how the identity thieves were able to log into eBay without having access to more normal modes of password-gathering/hacking (you said your email account hadn't been compromised). Could it just be that someone has figured out how to hack Passport to generate temporary user accounts/passwords based on existing accounts? If you've shown that there hasn't been a security compromise elsewhere, what's left? Posted by: Damien Barrett at February 19, 2002 7:55 PMTrackback Pings
Comments
Ernie B. Spokane, WA
a) have seperate passwords for every online site you use
b) don't have Windows remember the password, if you have problems remembering them keep a log book with dates for every password you use.
c) change your passwords often, once a month I would think would be a good idea.
same experience as Phil M. eBay straightened
things out pretty quickly on their end, no real
damage done, but my Yahoo account is probably a
wash (and they haven't been very helpful, either).
Part of that is my fault, I can't remember the
answer to the infamous 'secret question'; evidently
I used my pet's name, trouble is I have 6 pets, LOL.
I can't believe I fell for such a dumb ploy :( But
that Yahoo page sure looked genuine.
I should just cancel my eBay account -- hate to
do it, I enjoy buying things there, but I guess
there are other auction sites.
using the words ebay+account+theft.
two cents' worth.
Lane
Another eBay victim. I was unaware anything was going on until I found out I couldn't access my Yahoo email account. I'd been having problems for days having to re-enter my password numerous times to get in. When I eventually got in, all I had was some junk mail and I logged out. Then it hit me, just after I'd logged out I'd noticed that instead of saying Welcome Phil it said Welcome Virginia. They'd given me a sex change.
I tried to get in but couldn't, the new password must have come into force. I sent the first of numerous emails to Yahoo trying to tell them what had happened. They were absolutely useless.
The next thing I did was check my bank balances and credit cards, they were OK. I then started going back through the history on the computer because I had no record of giving my password to anyone. Then I came to eBay. My password wouldn't work there either but there was no activity, I wasn't buying anything, I hadn't used the account for several months. I continued checking through the history then realised I hadn't checked eBay to see if I was selling anything. I nearly had a heart attack. I live in Australia and there I was selling Plasma T.V's in the U.K. In fact I'd sold four of them for over AUD$17000. I contacted two of the buyers and warned them not to pay any money over and then tried to phone eBay in Australia. What a joke that turned out to be.
To cut a long story short, eBay said they'd closed the auctions before any damage was done and all fees and charges had been re-credited to my account that was about 10 days ago. I've been checking all my accounts every day since and guess what? On my credit card this morning is a bill fron eBay for $315.
You can't trust them with anything. I believe they are covering up a huge fraud scam. I went into the UK eBay site looking for other scams with the plasma T.V.'s. I found 2 U.S. registered eBay customers selling the same T.V's in the U.K.
How the hell did they get my password, yes I must admit I was a bit of a knucklehead using the same password for both accounts but I've never given that password to anyone else.
It has certainly shaken me up, I'm seriously considering closing my eBay account when this mess is finally sorted out.
"billjim_0" linked his fraudulent activities to my email address. Buzz me offline if you have any tips. I am in the vicinity of EBay Headquarters in San Jose and will be visiting Kevin Pursglove
in Corporate Communications today.
| Sun | Mon | Tue | Wed | Thu | Fri | Sat |
|---|---|---|---|---|---|---|
| 1 | 2 | 3 | ||||
| 4 | 5 | 6 | 7 | 8 | 9 | 10 |
| 11 | 12 | 13 | 14 | 15 | 16 | 17 |
| 18 | 19 | 20 | 21 | 22 | 23 | 24 |
| 25 | 26 | 27 | 28 | 29 | 30 | 31 |
Recent Entries
Archives
May 2008 | April 2008 | March 2008 | February 2008 | January 2008 | December 2007 | November 2007 | October 2007 | September 2007 | August 2007 | July 2007 | June 2007 | May 2007 | April 2007 | March 2007 | February 2007 | January 2007 | December 2006 | November 2006 | October 2006 | September 2006 | August 2006 | July 2006 | June 2006 | May 2006 | April 2006 | March 2006 | February 2006 | January 2006 | December 2005 | November 2005 | October 2005 | September 2005 | August 2005 | July 2005 | June 2005 | May 2005 | April 2005 | March 2005 | February 2005 | January 2005 | December 2004 | November 2004 | October 2004 | September 2004 | August 2004 | July 2004 | June 2004 | May 2004 | April 2004 | March 2004 | February 2004 | January 2004 | December 2003 | November 2003 | October 2003 | September 2003 | August 2003 | July 2003 | June 2003 | May 2003 | April 2003 | March 2003 | February 2003 | January 2003 | December 2002 | November 2002 | October 2002 | September 2002 | August 2002 | July 2002 | June 2002 | May 2002 | April 2002 | March 2002 | February 2002 | January 2002 | December 2001 | November 2001 | October 2001 |