Irish SEO,  Marketing & Webmaster Discussion

 

My Pay Pal hacked - how??

This is a discussion on My Pay Pal hacked - how?? within the General Chat forums, part of the Lounge category; This is interesting. Luckily enough Pay Pal refunded my money within minutes and it was a small amount of cash. ...


Go Back   Irish SEO, Marketing & Webmaster Discussion > Lounge > General Chat

Register Forum Rules FAQDonate Members List Calendar Search Today's Posts Mark Forums Read


Notices

Reply

 

LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 25-10-2007, 01:53 PM
EdenWeb's Avatar
Wannabe Geek
Recent Blog: Golden Spider Awards
 
Join Date: Jul 2006
Location: Dublin, WIcklow
Posts: 343
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
EdenWeb will become famous soon enough
Default My Pay Pal hacked - how??

This is interesting. Luckily enough Pay Pal refunded my money within minutes and it was a small amount of cash. Any thoughts?

Here's the timeline.

Bank phones me to tell me that my credit card *may* have been comprimised and they were issuing me a new one. Details were sketchy (or they couldn't say exactly what details they had) but they finally told me that a business I had bought from recently may have been 'comprimised'. The last 3 businesses I spent money on were komplett, google and an Irish hosting company.

I get the new credit card and log the new card details with PayPal

This morning I get a confirmation email from an online store regarding a purchase through PayPal. Normally I wouldn't pay this any attention or put it down to phishing but they list my account confirmation password as an actual password that I use for PayPal!

That's pretty much it. I've changed my password now and everything is sorted. I'm a little unsettled though as to how exactly they got a password
that I normally use. I am guessing that they somehow hacked direct into my PayPal account.

Any ideas? I am fully Virus and Spyware proof here so I don't think they were key logging etc. Incidentally, the PayPal password was the same used for one of the 3 businesses used above so I am kinda thinking that they were hacked themselves or breached maybe?
__________________
Peter Knight - Web Designer
.................................................. ..................................................
Eden Web - Web Design Ireland Virtual Tour Company Dublin Photographer
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #2 (permalink)  
Old 25-10-2007, 04:11 PM
louie's Avatar
Senior Member
 
Join Date: Jan 2006
Location: Dublin, Ireland
Posts: 2,048
Nominated 5 Times in 3 Posts
Nominated TOTW/F/M Award(s): 1
louie will become famous soon enoughlouie will become famous soon enoughlouie will become famous soon enoughlouie will become famous soon enoughlouie will become famous soon enoughlouie will become famous soon enoughlouie will become famous soon enoughlouie will become famous soon enough
Send a message via Yahoo to louie Send a message via Skype™ to louie
Default

very strange situation as I don't think PayPal stores the password in plain text, so the weird thing is that your password was in the email you got.

PayPal never sends your password as is meant to be encrypted.
If you forgot it they send you a link to change it, of course after few verifications emails.
__________________
:. Web Design & Development Web Design Ireland
:. Search Engines Optimization Search Engines Optimization
:. Directory Submission Directory Submission
:. News & Press Release Ireland GiveItSocks.com
:. Used Cars Ireland, Car Parts & Car Audio Cars For Sale, Car Parts & Accessories
:. I Have 2 Find It Directory SEF Directory
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #3 (permalink)  
Old 25-10-2007, 05:40 PM
Cormac's Avatar
Cormac Moylan
 
Join Date: Jan 2006
Location: Baile Ath Cliath / Corcaigh
Posts: 1,251
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Cormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud ofCormac has much to be proud of
Send a message via AIM to Cormac Send a message via MSN to Cormac Send a message via Yahoo to Cormac Send a message via Skype™ to Cormac
Default

Do you store your passwords in your browsers? I find Firefox very unsecure for this kind of thing. All someone needs to do is to look at your stored passwords and you're ******ed. I'm amazed that they have yet to password protect their password manager.
__________________
blog | Geansaí Gorm - Written entirely in, awful, Irish! | Me on Blue Jumpers
*
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #4 (permalink)  
Old 25-10-2007, 07:37 PM
Hardcore Geek
 
Join Date: Aug 2006
Location: Dublin
Posts: 1,048
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Gavin has a spectacular aura about
Default

Quote:
Originally Posted by Cormac View Post
I'm amazed that they have yet to password protect their password manager.
Yeah they do now.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #5 (permalink)  
Old 26-10-2007, 10:21 AM
EdenWeb's Avatar
Wannabe Geek
Recent Blog: Golden Spider Awards
 
Join Date: Jul 2006
Location: Dublin, WIcklow
Posts: 343
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
EdenWeb will become famous soon enough
Default

@ Cormac
I do for some websites but not Pay Pal.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #6 (permalink)  
Old 14-12-2007, 06:24 PM
johnmryan's Avatar
Coder
 
Join Date: Mar 2007
Location: Dublin
Posts: 66
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
johnmryan will become famous soon enough
Send a message via MSN to johnmryan
Default

That is a scary story - could have easily gone much much worse
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #7 (permalink)  
Old 23-12-2007, 01:35 AM
The Walsho's Avatar
Coder
Recent Blog: Goldfish Magazine
 
Join Date: Dec 2007
Location: Lucan, Dublin
Posts: 39
Nominated 1 Time in 1 Post
TOTW/F/M Award(s): 0
The Walsho will become famous soon enough
Default

It's a horrible thought alright, someone getting into your paypal. Glad no serious harm came of it
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #8 (permalink)  
Old 23-12-2007, 11:54 AM
Forbairt's Avatar
respect my AW-THOR-IT-AYY
Recent Blog: Geansai Gorm
 
Join Date: Jun 2007
Location: My Office, Dublin
Posts: 2,101
Nominated 2 Times in 1 Post
Nominated TOTW/F/M Award(s): 1
Forbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enoughForbairt will become famous soon enough
Send a message via AIM to Forbairt Send a message via MSN to Forbairt Send a message via Yahoo to Forbairt Send a message via Skype™ to Forbairt
Default

Quote:
Originally Posted by Cormac View Post
I'm amazed that they have yet to password protect their password manager.
The master password feature has been there for a good while hasn't it ?
__________________
Forbairt Media | Web Design & Development Galway / Dublin, Ireland - coming soon ... ( vague but descriptive isn't it )
Recent Work: Safari Club African Safari Holidays - Malawi Safaris
Other Stuff: FluffyLinkulator Rapid Inclusion Service Tools
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Reply

Tags
hacked, pal, pay

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads

Thread Thread Starter Forum Replies Last Post
What's the most you pay per click? blacknight Pay Per Click Advertising (PPC) 31 19-11-2008 01:03 PM
Would You Pay For Backlinks? blacknight Search Engine Optimisation 25 09-11-2008 07:49 PM
New affilate program on offer, excellent pay out oliflorence Affiliate Programs 9 07-09-2007 10:21 AM
MattCutts Blog hacked paul Blogs & Blogging 4 03-04-2007 05:15 PM
Want to front page Digg and Slashdot? Get hacked. gary.b Webmaster Discussion 6 17-01-2007 04:31 PM


Sponsored links

Paid On Results


All times are GMT +1. The time now is 12:36 AM.


Powered by: vBulletin Version 3.7.3, Copyright ©2000 - 2008, Jelsoft Enterprises Limited.
Hosted in Ireland by Blacknight - Test your ISP |Irish Hosting Directory| Armchair.ie|Logo by Eden Web Design|Avatars by Afterglow |Latest Blog Entries | VPS HostingAd Management by RedTyger

Search Engine Friendly URLs by vBSEO 3.2.0