Members Login
Username 
 
Password 
    Remember Me  
Post Info TOPIC: The Hackfest continues...


Top Poster

Status: Offline
Posts: 3757
Date:
The Hackfest continues...


I stumbled over this pretty big hijacking/ account takeover earlier. Same basic M/O as usual, the difference this time being the stature of the sellers hijacked.

Another thing, ebaY has been imposing limits on numbers items listed in certain categories etc like never before. For the hackers to be able to insert this amount and type of items again points to either them having a trick to get around the alleged fraud filters and/or other, newer seller limitation rulesets, or to have insider assistance.

That aside from how the account logins were acquired in the first place. Are we really to believe these very experienced sellers all fell for phishing ploys?

First the sample fake listing...

 

bwbowersandwilkins805d8.png

Uploaded with ImageShack.us

Now the victim/sellers: globalgolf

 

globalgolf20110915640.png

Uploaded with ImageShack.us
pleasurejohnson

pleasurejohnson20110915.png

Uploaded with ImageShack.us

Last but not least, bobs618, who seems to have some active fake listings as of right now

 

bobs61820110916640.png

Uploaded with ImageShack.us

As an aside, if you look at the golf club seller's feedback, you have to wonder why they are even still there, considering that small sellers with scant fractions of the percentage negs have been exterminated?

 

But the real comedy comes when you read about the incident on the ebay forums.

Note: If this image vanishes you can always see it documemtned in the accompanying video

ebayscamauctions2011091.png

Uploaded with ImageShack.us

Then you realize that at least one seller had to end the fake auctions themselves, because sleazebay was asleep at the wheel. Again.

sguitaracoustic20110915.png

Uploaded with ImageShack.us

 

Just another stellar example of why you need to avoid ebay like the plague.



-- Edited by budnonymous on Sunday 22nd of April 2012 05:58:53 PM

__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Port Matilda woman's PayPal account hacked

8:56am on Aug 26, 2011; Modified: 8:58am on Aug 26, 2011

 

A Port Matilda woman reported to police that someone hacked an online account of hers and made several aunthorized purchases.

State police in Philipsburg said purchases totaling $1,033 were made and shipped to Doral, Fla. The hacker got into her PayPal account.

 

 

-----------

from the comments...

"no idea why this is news. happens everyday"

 

 



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

iTunes Hacked, Linked PayPal Accounts Drained In Ongoing Problem

I've been rather surprised to learn that fraudulent purchases on iTunes accounts have been an ongoing problem for over a year and that some linked PayPal accounts have been drained in the process. This is bad news for Apple, who don't seem to be responding effectively, and even worse news for iTunes users from music sellers to fans.

Scott Hanselman's recent ComputerZen post on iTunes account hacking was the first I'd heard of a problem that began showing up on Apple Support Communities in late 2010 and continues to this day. The Next Web has related accounts involving rogue apps that were revealed as far back as July 2010.

From a TechCrunch post on August 23, 2010:

 

read the rest...

 

 

Smart people will avoid paypal and iTunes like the plague...



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

It would appear that there's been another breach at paypal or else the data from former breaches has been sold to the telephone scammers, or similar.

callsfrompaypalaboutacc.png

Uploaded with ImageShack.us

There has been some things on the web news and on the TV news about this type of thing lately too.

Scam Alert in Georgia



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Hacker uses PayPal to access bank account

Story Created: Jul 29, 2011 at 8:14 PM

(full video report at link)

 

NAPLES, Fla. - A woman has her PayPal account hacked by a thief that takes hundreds from her bank account.

The woman said the suspect transferred $730 from her band account into a Bank of America account by using PayPal accounts and depositing the funds.

The Victim says the transfers happened this week when the suspet transferred $300, $300, and $130.

PayPal flagged the account when they discovered an attempt to transfer $10,000 from the victim's account.

Local tech experts say sites that save your bank account information make consumers a higher risk of similar crimes.

"unless you check your accounts daily and multiple times during the day to check the transactions - somebody can sneak in and try and steal your money," said Neil Wexell, a computer technician at The Byte Shop in Naples.

 

( ^ emphasis added)



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Looks like there's been a steady stream of hacked paypal accounts leaked, with surely more to follow...

 

162 PayPal accounts hacked by the group Anonymous


162paypalaccountshacked.png

Uploaded with ImageShack.us

More referenced from a few days ago.

fewhundredppaccs2011072.png

Uploaded with ImageShack.us

 

Bear in mind that if your account happenens to get hacked, Paypal's stated policy is to blame the user... They are also widely known for shoddy customer service and a tendency to lie, especially about their horrendous security.

The best defense is to close your account, and make sure that Paypal cannot access your bank and/or CC accounts. Paypal is in the crosshairs



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

I don't bother looking for hijacked accounts much these days unless someone sends me tips, but they are still ongoing same as they always were.

Perhaps not so much now that there are easier ways for the money scammers to achieve their goals.... such as purchasing fake ebay and paypal accounts, or taking advantage of Paypal's flawed password recovery procedure to take over accounts.. Oh! And now just keeping an eye on AntiSec leaks...

But I digress.... Notice the pink highlighted portion? At $39.95, that keyfob is NOT a bargain! Believe me. It's hacked and cracked. It has been. Chances are that whatever 'credit card' sized replacement they've made for it is vulnerable too. rotflololol

What kind of scam is this?

whatkindofscamisthis201.png

Uploaded with ImageShack.us

 

I made a video quite some time ago pointing out a few things regarding the keyfob.

 

 

At this time I'll let on to the rest of the story...

Happy reading.

 

"If seven maids with seven mops swept IT for a half a year,
 Do you suppose", the walrus said, "that they could get IT clear?"
"I doubt it", said the carpenter, and shed a bitter tear.

 

 

 



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

 

LulzSec Leaks 62,000 Email/Password Combo Internet Goodie Bag (Updated)

Fresh off their face-kicking of the CIA's website, LulzSec just decided to go with something a little less political: a 60k+ set of login info for... they won't say. But they're encouraging everyone to try 'em out across the web.

So far, eager downloaders have been retweeting claimed prizes of pilfered WoW, PayPal, porn, and Gmail accounts. Lulz hasn't said where they got the data, or what it's good for- instead, they're just encouraging their retinue to "Be creative instead of being a potato. Try PayPal combinations, twitter, Facebook, eBay, Runescape. Pick a target from the list."

It's an exciting day for the group and their fans. Unless your PayPal account just got jacked, in which case you are probably feeling lulz-deficient at the moment. I think it may be safe to say that LulzSec has officially supplanted Anon as the preeminent internet force of thunderous chaos for the time being. [LulzSec]

Update: Hacker News quotes Mikko Hypponen of security firm F-Secure, who bets the leak's origin is the user database of writerspace.com, an obscure, 90s-looking "Website for Writers." Why? Many of the passwords reference books, reading, or "writerspace" itself.

 

 

more on this:

 

Lulzsec releases 62,000 email addresses and passwords

 

See If Youre One of 62,000 Hacked

 



-- Edited by budnonymous on Thursday 16th of June 2011 10:51:59 PM

__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

A couple thread topics at the shill infested ebay forums show that paypal/ebay seems to have had more leaks. Phishing emails which are addressed to the person's real name, along with ambiguous replies from PayPal's crack security or customer service crew.

E-mail from PayPal - Real?

emailfrompaypalreal2011.png

Uploaded with ImageShack.us

You may notice the commenter above states he also received them despite NOT having a PP account. That's because ebay and Paypal are connected together, regardless of what they may claim. That simple fact has been demonstrated more than once

Is the "Update Your Browser" Email from PayPal Legit?

istheupdateyourbrowsere.png

Uploaded with ImageShack.us
Again, does ebaY-Paypal seem like a safe and trustworthy platform, especially in light of all the other sites which don't have all these issues?


__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Ebay Redirect Flaw Lives On

Not surprisingly, the cross scripting,xss,  and/or flash manipulation scam is alive and well on ebay, this time documented by a casual observer.

 

Still hacked, cracked and zombified!

Read the rest, watch the short vid at link. ^



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Sega Game Linked to Theft From iTunes Accounts

 

Another wrinkle in the story...

^ itunes/paypal account hacking still out of control. Smart people will stay miles away from either service, as neither on will admit any accountability, or even address the issues, other than staunch denials.



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

In case anyone was wondering, YES ebay and paypal are both still hacked, cracked and zombied.

biggrin.gif

 

This is almost too funny for words! Another paypal cheerleader hacked!

 

Un Auth use, PP reverses in 38 minutes, Love you Paypal

unauthuseppreversesin38.png

Uploaded with ImageShack.us

 

 

Also this from the seller central forum:

 

ATTENTION SELLERS HACKED

 

attentionsellershacked2.png

Uploaded with ImageShack.us

 

Does it seem like ebay and paypal are really safe to use? confuse.gif



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

eBay briefly levies $420,968 in fees and more Signet Financial complaints

Published: Saturday, April 16, 2011, 7:30 AM

On Friday, Dale LaFollette watched the monthly bill for his eBay store drop from $420,968 to $1,000.

That's a good Friday.

The West Linn man's bill had skyrocketed earlier this month after his eBay account got hijacked.

Unfortunately, that's become quite common for many folks who've watched their e-mail inboxes fill up with offers from retailers and other, much less desirable sources. Or from concerned friends and family in the case of the scam in which fraudsters try to milk folks on email contact lists for cash with stories of Help me I'm sick and stranded in another country.

As The Desk has noted before, it's a good idea to change your user name and passwords often and keep them complicated -- patterns of letters, numbers and symbols, when possible, to keep hackers guessing.

In LaFollette's case, someone had acquired his user name and password, logged on to his eBay store and listed several Apple iPads, iPhones and some soccer tickets to Wembley Stadium in North London for sale. That's annoying enough, especially people started buying.

LaFollette, a high-rated seller who typically peddles vintage auto racing memorabilia, got nervous as the money started coming into his PayPal account. He tried to warn buyers, but shoppers weren't reading the full descriptions of items and were clicking "Buy it Now." He called eBay and company reps said they'd help and promised to call back within two hours.

By hour three, LaFollette decided to take action. He changed the price of one of the last remaining iPads from $500 to $50 million.

"But eBay kicked that back and told me the maximum that something could be listed was $21 million," he said, "so I thought, 'OK, $21 million it is.'"

Then, to his horror the item clicked over to "sold."

Looking back, LaFollette figures that the buyer -- some equally horrified soul in Kokomo, Ind. -- must have been looking at the screen before LaFollette changed the price. Without refreshing his computer screen, the shoppers must have then clicked "buy," only to see the total sale pop up as $21 million after the fact.

EBay eventually followed up and issued refunds to all the buyers, but as of Thursday, La Follette's account still listed the $420,968 in fees that eBay would normally assess to a seller with a $21 million transaction.

"The only victim here is me and I am afraid," he wrote in an e-mail to The Desk, "I am very afraid!"

Luckily, as LaFollette checked his account on Friday, eBay had readjusted the total and he was back to a more typical -- and more palatable -- amount.

 

...continues...



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Mr_E wrote:

Anyone who can do that can probly find out the ebay/paypal paid trolls and stalkers real names, addresses, personal details too I bet.

Now that would be funny.


 biggrin.gif

 

Makes you wonder, eh? Their names etc would have been plastered from here to Bleepistan and back don't you think?

It's insiders or at least a co-parasitic symbiosis. It has to be. My vids and blogs are peppered with comments from hacking victims whom all said ebay tried to strongarm them into paying bills they knew were fraudulent. Some even had collections agencies after them in less than 30 days, which is unlawful.

The hackers can scam as many folks as they want. ebay protects them and then cleans up the evidence by making the fake listings and any forum posts, criticisms, etc go poof, then with invoices the rubes, and blames them for it, by accusing them of giving away their passwords etc.

To keep everyone conditioned to clicking links within emails, they constantly send emails with links.

 



__________________

Exposing the sleazery of ebaY and PayPal

 



Noob

Status: Offline
Posts: 10
Date:

Anyone who can do that can probly find out the ebay/paypal paid trolls and stalkers real names, addresses, personal details too I bet.

Now that would be funny.



__________________


Top Poster

Status: Offline
Posts: 3757
Date:

Well, we sure can't let this go by unnoticed and/or unmentioned.

Seems as though someone has hacked a policeman's account, with purpose and forethought. You'll have to read the entire thread to see the full extent of the comedy. But at the end, there can be no doubt that either someone inside ebay, or a hacker with the ability to pick and choose his victims at will is still out there somewhere.

It really doesn't get much funnier, or damning for ebay security than this.

It's right up there, in comedy value, with that time that NASA's twitter account got hacked and fake ebay listings placed upon it.

I bet some hacker is going to have trouble making it through the day without bursting into spontaneous laughter. Again.

biggrin.gif

 

Here is a first for me

hereisafirstforme201104.png

Uploaded with ImageShack.us


__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Pay Pal Security and customer service in Question

 

paypalsecurityandcustom.png

Uploaded with ImageShack.us



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Couple more good indicators of ebaY-Paypal UN-safety and UN trustworthiness from their own forums:

 

verystrangeemailshl480.png

Uploaded with ImageShack.us

 

 

screditsfrommyoldhijack.png

Uploaded with ImageShack.us

 


 

psssstt... It's hacked! It has been for years! But then, when they opened up their api/dev stuff to the world... need I say  more?

roflolololololol!!!



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

I think they call it ownage. Severe ownage.

Gawker hack triggers password resets at major sites

Millions of web users are being asked to reset their passwords as concerns spread over a major hacking attack.

Yahoo, Twitter and LinkedIn have asked users to change their details, days after gossip site Gawker was hacked.

continues...


 

With all that's been happening, looks like someone will need to be updating their article;

New title: The 808 (million) faces of a hacker.

biggrin.gif



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Nothing says fun for the holidays like getting hacked, cleaned out and strung along and screwed again by incompetent lackwits! A sleazebay tradition!  biggrin.gif


HACKED!

Dec 6, 2010 1:03 PM
found out that my pay pal account was hacked for 1,000.000 of dollars, contacted paypal they assured me that my account was closed even I can not access it but sure enough 1 week later another charge they sent to my bank so far 2 over draft fees apply and im told they can continue to send as long as they like..bank said it will cost another 25.00 to block payal forever, i love ebay but with most everyone only accepting paypal how am i to do business with them now? oh they shopped at an ebay store so people you also could be losing money, dont know what it does to my buyer rating..

 

hacked6rpls480.png

Uploaded with ImageShack.us



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

My Bank account hacked and emptied via PayPal

 

mybankaccounthackedande.png

Uploaded with ImageShack.us

 



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Another monumental hack attack!   ...laughing.gif

pugster888 ebaY MegaSeller Gets Hijacked -  56K+ Fake Listings


Stay tuned for more stuff. ;p

__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

There are many more victims today...
hodgepodgegarage2 with 1275 items, of which 3 are legit

 

hodgepodgegarage21275it.th.png

Uploaded with ImageShack.us

 

 

genesimmonsaxebassguita.png

Uploaded with ImageShack.us

 

And can't let this one go by without a mention... peterstorm10000 Hilarious hacking victim username! roflololololololol

 

 

definitivetechnologybp7.png

Uploaded with ImageShack.us

There are still more... ebaY is powerless to stop these listings from getting in and showing up right away. All they can do is play clean-up after the fact.  Legit sellers could not possibly list those items with the same results, yet the hackers have zero trouble.

Clearly there are bigger problems than just 'phishing'. The site is Hacked, or they have insider's help!




__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

ebaY has teamed up with Kia, and the hackers have teamed up with ebaY and dch.honda.of.lemon.grove to bring you some great Holiday deals!
dchhondaoflemongrove480.png

Uploaded with ImageShack.us

 

hhh



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Hilarious!
The hacker-scammers are opening up on eb with both barrels right about now!

No sooner did I upload ebaY Hacked mrs_bailey and Bogus IDs for Sale Scams and go look again, viola! Another hijacking victim: greendigits123

 

 

greendigits123208fakeit.png

Uploaded with ImageShack.us


__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Kodak Gallery service being side-hacked by eBay fraudsters

17 November 2010

Fraudsters on eBay are reportedly side-hacking the Kodak Gallery service using a fake redirect technique.

According to a Netscammers researcher posting on the Networkedblogs portal, the fraudster is routing eBay users looking at potential intended purchases to pages at www.kodak-slideshows.com.

Unfortunately for the would-be purchasers of the bargain item, this site is an Australian spoof of the real Kodak Gallery site located at www.kodakgallery.com/gallery/welcome.jsp.

So far, the hack seems to be confined to the eBay sales of a Ford truck but the wily hacker appears to be planning ahead for when his fake site is closed down by emailing eBayers with a file called pictures.zip that contains an infected file executable called pictures.exe.

Infosecurity notes that, whilst the F150 truck - item number 170515682914 priced at $9,000 - was still live on the system yesterday early evening UK time, it seems to have been removed, presumably by eBay's security division.


 

continues...



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Too funny!

Another Hackers Laptop, Cell Phones Searched at Border



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

I see that accounts are still being taken over at ebaY. Same basic MO, except now it appears they are waiting until the last possible minute to insert the bogus itmes into legit listings by revising.

Seen quite a bit of this going on in the last couple months as well, just too busy to document it. I did note that one very vocal person, a TRS who got iphone scams injected into their listings, started complaining, and suddenly went *POOF*

lmao!!! ebay still can't handle the truth or answer any questions.

Took all of 2 minutes to find these:



5 results found forthmrew@gmail.com

Nikon D300 SLR Digital Camera Bundle 2Lens Flash 4GB

NEW Macbook Pro 13" 4GB RAM 1TB Drive MC374LL/A

Canon EOS 1D Mark III Body only 10.0 Megapixel

LOT OF 3 Macbook Pro 13" 4GB RAM 1TB Drive MC374LL/A

LOT OF 3 Apple iphone 4 Black (32GB) (Unlocked)



Today's hijacked victim/seller:

Items for sale from bettyusa (333)

The obligatory screencaps:

 

3macbookitem32061490524.png

Uploaded with ImageShack.us

 

thmrewgmailcomitemsebay.png

Uploaded with ImageShack.us

 

bettyusaitemsebaycom480.png

Uploaded with ImageShack.us

 



__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

Hmmm.. neither one are compromised, eh?  biggrin.gif

PayPal, Apple Servers Not Compromised in iTunes Hacks

There have been a number of reports in recent days about iTunes customers who have uncovered unauthorized purchases on their accounts. A Wednesday blog post from PayPal, however, said that the problems are not the result of compromised PayPal or Apple severs.

(continues with links etc.)


__________________

Exposing the sleazery of ebaY and PayPal

 



Top Poster

Status: Offline
Posts: 3757
Date:

haha! This could get interesting... biggrin.gif

psssst...   it's a not so secret 'feature' of paypal. rotflmaooooo!!!
Don't wait for them to tell you.

Spokesman: Apple Not Responsible for Hacked iTunes Accounts

August 24th, 2010, 07:30 GMT| By Filip Truta

iTunes customers continue to accuse fraudulent attacks, with some reporting thousands of dollars worth of purchases made in their name.

One affected customer reportedly told Tech Crunch, "My account was charged over $4700. I called security at PayPal and was told a large number of iTunes store accounts were compromised."

According to the report, his email was filled with almost 50 receipts from PayPal, each representing a $99.99 purchase.

Searching the web by public status updates on Facebook, the site was able to uncover more people with the same problem.

One person says, "Darn... what a day! Someone hacked into my itunes account and bought a crap load of downloads and emptied out my paypal account"

read the rest...

__________________

Exposing the sleazery of ebaY and PayPal

 

«First  <  1 2 3 411  >  Last»  | Page of 11  sorted by
Quick Reply

Please log in to post quick replies.

Tweet this page Post to Digg Post to Del.icio.us


Create your own FREE Forum
Report Abuse
Powered by ActiveBoard