| Author |
Message |
|
| FireMeg |
Posted: Fri Feb 16, 2007 3:17 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
|
Full Member
Joined: 05 Feb 2007
Posts: 251
|
Do anyone have any specifics on the list of 1200 eBay user ID's and passwords that was recently thought to be potentially compromised?
I've found enough evidence of this to warrant looking into the issue. I was a bit late in finding out about it on the eBay forums, and eBay had pulled any post with relevant information.
Any help would be appreciated. Thanks
--------------------------------------------------
Information and Articles regarding hackers and Vladuz
Recently added (16/03/07)
http://news.com.com/2061-10789_3-6167928.html
http://www.thesun.co.uk/article/0,,2-2007120485,00.html
http://www.channelregister.co.uk/2007/03/13/vlad_impales_ebay/
http://www.auctionbytes.com/cab/abn/y07/m03/i12/s01
--------------------------
Recently added (08/03/07)
http://www.theregister.co.uk/2007/03/08/who_is_vladuz/
http://www.eweek.com/slideshow/0,1206,a=202474,00.asp
http://www.foxnews.com/story/0,2933,257063,00.html
http://www.auctionbytes.com/cab/abn/y07/m03/i06/s03
---------------------------------
added (03/03/07):
http://www.theregister.co.uk/2007/03/02/ebay_sign-on_hole/
http://www.shortnews.com/start.cfm?id=60656&rubrik1=Current%20Events&rubrik2=Crimes&rubrik3=Robbery&sort=1&start=1
http://www.techspot.com/news/24522-ebay-patches-login-vulnerability.html
--------------------------
http://ebay.bloggingstocks.com/2007/02/23/ebay-hacker-vladuz-carrying-on/
http://www.theregister.co.uk/2007/02/23/vladuz_strikes_again/
http://blog.auctionbytes.com/cgi-bin/blog/blog.pl?/comments/2007/2/1172237333.html
http://www.auctionbytes.com/cab/abn/y07/m02/i23/s01
http://www.theregister.co.uk/2007/02/22/conspiracy_letters/
http://www.auctionbytes.com/cab/abn/y07/m02/i22/s03
http://www.theregister.co.uk/2007/02/20/ebay_conspiracy/
http://ebay.bloggingstocks.com/2007/02/19/headline-reports-ebay-hacked/
http://blog.auctionbytes.com/cgi-bin/blog/blog.pl?/comments/2007/2/1171726205.html
Other resources:
http://firemeg.blogspot.com
http://www.pheebay.com/blog/PheeBlog.html
http://www.ebaymotorssucks.com/rflello.htm
http://www.ebaymotorssucks.com/trevtan69.htm
http://www.auctionguild.com/generic146.html
www.us-cert.gov/cas/alerts/SA06-117A.html |
_________________ www.firemeg.com |
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Fri Feb 16, 2007 4:58 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| FireMeg |
Posted: Fri Feb 16, 2007 5:03 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
|
Full Member
Joined: 05 Feb 2007
Posts: 251
|
Well, from what I've it's like 10,000+ ID's from a third party service provider or developer. The list was 1200 pages long, I guess. From the sounds of it, Vladuz has nothing to do with this, but rather it was an interoffice blunder....?
Still trying to get some info, finding it hard. |
_________________ www.firemeg.com |
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Fri Feb 16, 2007 5:06 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| FireMeg |
Posted: Fri Feb 16, 2007 8:18 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
|
Full Member
Joined: 05 Feb 2007
Posts: 251
|
| Whatever the issue, eBay must think it is worth removing posts to the thread on the T&S board, because one of my posts was pulled and it simply asked if anyone had any specific information on the issue. |
Last edited by FireMeg on Sat Feb 17, 2007 1:57 am; edited 1 time in total
_________________ www.firemeg.com |
|
| Back to top |
|
| damaradeaella |
Posted: Fri Feb 16, 2007 8:46 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 24 Oct 2006
Posts: 1096
Location: USA
|
I'm still looking, FireMeg, but difficult...
I'm not at all surprised about the posts being gone... That's all eBay is good at... Not policing their site, not forcing scam artists into complaince, etc...
I sent a letter to the media back during the CORE boycott and wouldn't ya know, when I went to check on the links contained within the letter recently, all but Springerling's Store Closed thread on the eBay store's board were GONE
Not only did I never receive a pink slap for any of them (I was the OP on all), all three stayed on topic and were an incredible resource... Just gone now...
Dirty rotten... |
_________________ Michele
 |
|
| Back to top |
|
| FireMeg |
Posted: Fri Feb 16, 2007 9:01 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
|
Full Member
Joined: 05 Feb 2007
Posts: 251
|
I usually don't post on the T&S board, and I really don't know any of the members over there. There are two poster on the thread that sound like they know what is going on, but I don't know how much trust to put into their posts.
Both phone numbers I tried for Prosperpoint (also owns Imagehost.com) did not work. |
_________________ www.firemeg.com |
|
| Back to top |
|
| damaradeaella |
Posted: Fri Feb 16, 2007 9:15 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 24 Oct 2006
Posts: 1096
Location: USA
|
I'm afraid I'm in the same boat as you as far as the boards there and what can be believed and what cannot...
Honestly, I haven't been over there much at all in months, and the very few times I have gone there, it seems to be a different world for me... So many jaded posters...
The problem is, as with how it was months ago when the "rest of us" realized there is a HUGE problem with eBay, is the absolute lack of major media interest... eBay can hide their figures and publish outright lies (Meg is the best at that, along with Cobb Boy) and the mainstream just buys it...
I'm still blown away that there is PROOF eBay is relisting sellers closed and sold auctions, up to 60 days later, and no one has jumped on that story...
Why why why???
I'll keep my eyes out and post here if I find anything, but you know as well as I do, it's like looking for a needle in a haystack... A very monopolistic, nasty haystack...
BTW, welcome to Pheebay, my friend  |
_________________ Michele
 |
|
| Back to top |
|
| kissmyconfusion |
Posted: Fri Feb 16, 2007 11:26 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Full Member
Joined: 11 Nov 2006
Posts: 1047
Location: USA
|
|
| Back to top |
|
| damaradeaella |
Posted: Fri Feb 16, 2007 11:30 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 24 Oct 2006
Posts: 1096
Location: USA
|
heehee, hmm... If only I could get it to work! (the whip is supposed to move!)
As for the discussion, there apparently has been a leak of info at eBay, but it appears they are always covering it up quite quickly...
You know what blows my mind, why don't people just fess up when they blow it... We are all human anyway... Covering it up and lying just makes you look stupid... |
_________________ Michele
 |
|
| Back to top |
|
| kissmyconfusion |
Posted: Sat Feb 17, 2007 12:07 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Full Member
Joined: 11 Nov 2006
Posts: 1047
Location: USA
|
|
| Back to top |
|
| FireMeg |
Posted: Sat Feb 17, 2007 12:32 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
|
Full Member
Joined: 05 Feb 2007
Posts: 251
|
Thanks. I was waiting two weeks to get the email that my account here was activated and never got one, so I just signed in and it worked.
Anyway, I'm going to post an article to my blog to help try to explain the situation, although with all of the speculation, it may not clarify anything. Obviously something happened. I'll post the link when I'm done. |
_________________ www.firemeg.com |
|
| Back to top |
|
| damaradeaella |
Posted: Sat Feb 17, 2007 1:00 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 24 Oct 2006
Posts: 1096
Location: USA
|
Ok, that's it... I did a search for my username on eBay, 12 pages, 90% of them Tiny Mob... Nearly EVERYTHING I wrote since July 19th is GONE
Wonder what eBay is afraid of???
I loathe censorship... Especially when it's the truth... |
_________________ Michele
 |
|
| Back to top |
|
| FireMeg |
Posted: Sat Feb 17, 2007 1:28 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
|
Full Member
Joined: 05 Feb 2007
Posts: 251
|
I actually just spoke to the CEO of the company involved. It was actually not the site mentioned earlier, and it wasn't a list of compromised eBay information.
Apparently, an old list of the company's user IDs was accidentally put in a place on their server where it apparently was cached by search engines. He told me that the issue had been resolved and no current account information was compromised. After learning which company he was with, it is apparent that even if the information had been made public, it would have been little use to scammers, if any.
Ok, now I have to change my blog post.... |
_________________ www.firemeg.com |
|
| Back to top |
|
| kissmyconfusion |
Posted: Sat Feb 17, 2007 2:49 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Full Member
Joined: 11 Nov 2006
Posts: 1047
Location: USA
|
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Sat Feb 17, 2007 1:54 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| Junkyardjims |
Posted: Sat Feb 17, 2007 5:01 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 01 Nov 2006
Posts: 1123
|
Auctionbytes have posted a blog about the issue:
Vendor Security Lapse Has eBay Sellers Fuming
A list of eBay sellers containing names, addresses, and user names and passwords was discovered online this week. On Tuesday, eBay users began buzzing about the list in a thread entitled, "Is eBay like the Titanic" on the eBay Trust & Safety board, with someone including a link to the list.
eBay removed the link, according to eBay spokesperson Hani Durzy. "The link was taken down for obvious reasons. The boards are not to be used to promote illegal activities," he said. But the remaining posts made it clear users remained concerned and angry.
http://blog.auctionbytes.com/cgi-bin/blog/blog.pl?/comments/2007/2/1171726205.html |
|
|
| Back to top |
|
| Junkyardjims |
Posted: Sun Feb 18, 2007 10:46 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 01 Nov 2006
Posts: 1123
|
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Sun Feb 18, 2007 10:53 am |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Sun Feb 18, 2007 12:01 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Sun Feb 18, 2007 12:51 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Sun Feb 18, 2007 2:45 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
… and the story goes on …
Not a great deal of point in searching for newly listed items, since the scammers are hitting auctions that are already running, in some cases for several days. I’ve been looking at the dates the additions are made, and they range from 15th Feb - 18th Feb. This had been going on for a couple of days before we stumbled on it. I only did the search for the sake of curiosity, to see how many auctions had been targeted by the same scammers - I never expected it to be on such a large scale.
… quoted from the Q&A thread given above - entry 458
This is really really bad for eBay and all eBay sellers  |
_________________ Click here to check out my Squidoo Lenses.
Octavia's News . Follow me on Twitter
0ctavias0riginals on eBid.net . 0ctavias0fferings on eBid.net . OrientalOfferings
Map of the Tarot
Be kind, for everyone you meet is fighting a hard battle. - Plato
Hugs and smiles are free - and one size fits all. - Moonwitch |
|
| Back to top |
|
| Junkyardjims |
Posted: Sun Feb 18, 2007 10:19 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 01 Nov 2006
Posts: 1123
|
Ebay have now censored that thread. That's a bit daft imho considering people might be looking on there to find out what's going on. |
|
|
| Back to top |
|
| 0ctavias0fferings |
Posted: Sun Feb 18, 2007 10:23 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 29 Oct 2006
Posts: 7597
Location: Highlands of Scotland
|
|
| Back to top |
|
| Junkyardjims |
Posted: Sun Feb 18, 2007 10:30 pm |
|
Vladuz, Ebay, and the 1200 Compromised IDs
|
Admin

Joined: 01 Nov 2006
Posts: 1123
|
|
| Back to top |
|
|
|