http://news.zdnet.co.uk/story/0,,t269-s2107658,00.html
This is nasty and downright scary....my sis trades there. Guess I better keep an eye on the auction list
Printable View
http://news.zdnet.co.uk/story/0,,t269-s2107658,00.html
This is nasty and downright scary....my sis trades there. Guess I better keep an eye on the auction list
Password cache = bad idea
I also use E-bay....that's kind of scary, although I have never used a credit card, I always mail money orders.
EBay has said that the number of accounts compromised by dictionary attacks has been no more than the "low triple digits."
Gee, isn't that enough? I mean I know they have a lot of users, but the "low triple digits" is still a pretty big number when you're talking compromised accounts! :(
Deb
Thank God I ALWAYS pay by money order or personal checks.....
I have never been comfortable sending out a credit card number over the internet....
(or over a cellphone)
I guess a little paranoia pays off.... :)
http://news.zdnet.co.uk/story/0,,t269-s2107350,00.html
Scroll down to the bottom of this article....THEY KNOW THEY HAVE A PROBLEM BUT THEY DON'T TAKE ANY ACTION....That's just like this latest hole...THEY KNEW this was a problem since JANUARY and didn't bother to fix it untill this guy pointed it out. WTF!!!!!!!!!
low triple figures - [sarcasm]sure thats alright then[/sarcasm] :rolleyes:
v_Ln
Doesn't eBay use SSL for login functions? If not, I would never use that site anyway, since my money would be involved. Too bad most folks don't know the significance anyway...Quote:
Security experts have criticised the company's log-in system, saying that because it generally transmits passwords and account information in plain text, it is vulnerable to "packet sniffers," programs that can monitor the transmission of data between computers.
Hey! I just now saw the report on this subject on TechTV...weird...
Anyways...the dictionary attack thing is easily avoided if people would use properly constructed passwords, so that's their own fault...
Ouroboros
SSL is an OPTION for Ebay logins (get that crap)!!!!!!!!!
Option?!? What the hell?...sigh...
Choosing a couple of seconds of speed vs. securing my information isn't a choice at all, IMO...oh well, people will get what they deserve...
Ouroboros
Tell me about it :(Quote:
Originally posted here by Ouroboros
Option?!? What the hell?...sigh...
Choosing a couple of seconds of speed vs. securing my information isn't a choice at all, IMO...oh well, people will get what they deserve...
Ouroboros