Home
Home

Directory
Directory

Articles
Internet News
Security News
Ecommerce News
Domain News

Site Tools
Site Speed Test
Keyword Research
Resolve Hostname
DNS Tools
Register Domains
Affiliate Programs
Open Source

Shopping Carts
Cart Reviews
SSL Certificates

Enter your email address to subscribe to our updates:

Delivered by FeedBurner


Venue Charts
Channel Traffic Rankings
OAI Stock Quotes and Charts
eBay's Worst Feedback

Forum
Forum Home
TulipTools News
Advertising
Blogging
Computer Hardware
Domain Names
Ecommerce
Financing
Int'l Trading
Graphics and HTML
Internet Access
Legal Issues
Internet Business
Auction Sites
Classified Ad Sites
Fixed Price Venues
Operating Systems
Programming
Search Engines
Internet Security
Software
Web Hosting
Webmaster Issues
Reviews
Announcements
Off Topic Discussion

Web Hosting
TulipHosting

Domain Names
TulipDomains

Web Stats
TulipStats

Forum Rules
Forum Rules
Privacy Policy

Site Map
Forum Sitemap
Sitemap Topics




Directory| Forums| Internet News|Cart Reviews| DNS Tools| Keyword Research| Site Speed Test| Security| | Domain Marketplace| Domain Blog
TulipTools Internet Business Owners and Online Sellers Community
  • Home
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register
TulipTools Internet Business Owners and Online Sellers Community › Online Auction Industry, B2B Trading Sites, Classified Ad Sites, Fixed Price Venues, and Malls › Online Auction Industry Discussion › Auction Sites › eBay › Frauds, Scams, and Rip Offs v
« Previous 1 2 3 4 5 … 14 Next »

eBay's security problems: Vladuz and account hijackings via redirect page on eBay

  
Pages (3): 1 2 3 Next »
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
eBay's security problems: Vladuz and account hijackings via redirect page on eBay
02-18-2007, 09:49 AM, (This post was last modified: 02-18-2007, 09:53 AM by mandy.)
Post: #1
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
eBay's security problems: Vladuz and account hijackings via redirect page on eBay
Account hijackings at eBay that may be related to a security flaw on the eBay site.The hijackers are using a redirected page on the eBay site to phish account info.

At least 429 listings from multiple sellers altered/hacked.  The hijackers only change to the listings is adding an email address with a message to contact seller via email.

Quote:The sellers all had their accounts stolen with this question,

Q: Hello, My name is Ace Schmidt. I just saw this item of yours and I remember seeing the same item two days ago, take a look:

Code:
http://search.shipping.ebay.com/?fcid=1&fpos=90210&vlm=1&requesturl= http%3A%2F%2Fsearch-completed.ebay.mydyn.net/ws/eBayISAPI.dll.php?SignIn&UsingSSL=1&pUserId=&co_partnerId=2&siteid=0&save=Save

Please note the URL
The scammer is routing through ebay's servers and having ebay send the victims to his scam login page.
The scammer's url comes after the (requesturl) in the above URL

PLEASE DO NOT CLICK ON THE LINK IF YOU ARE NOT SURE WHAT YOU ARE DOING!
Quote:Massive, worldwide, multiple user hijacks Sad
just*abby  (0 ) View Listings | Report Feb-17-07 18:26 PST
Hi

Im after a bit of help and support for the UK boards.

Its hearly 2.30am here, and a massive global multi-hijack scam has been discovered.

Search for the words "Dont forget to include the item number in your message" in worldwide listings and you'll find the problem

http://forums.ebay.com/db2/thread.jspa?t...1000442423&start=0
http://forums.ebay.co.uk/thread.jspa?thr...1200089939&start=0

Like Post Reply
[+]
02-18-2007, 04:50 PM,
Post: #2
sneakymagenta Offline
Lawnmower Mouth
********
Posts: 2,672
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Jul 2005
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
Quote:The hijackers are using a redirected page on the eBay site to phish account info.

I  Love4 Ebay.  Puke
OAI Moron Hall of Fame
<i>sell-thru is an irrelevant and illogical consideration.</i>
-KaRay, owner of WP giving selling advice, 2006

<i>the site was 'NOT' hacked but the little script that had recipes on had the link altered</i>
-Plunderhere Owner Mark Taylor after his site was hacked by a Chinese hacker gang, 2008

Some people have it like that, others don’t. I do.
-Probidscripts owner Spencer Osama Binweb Laden Ray bragging about his ability to scam the OAI without feeling any guilt, 2008.

How does an auction site get buyers?
-question asked at PSU by owner of auction site BidBeaver.ca, 2008

How do I get sales?
-question asked at PSU by online store owner, 2009.

I was told by my Tech. Support that my site dont really need SSL.. his servers
are well protected and that info your providing to join aint really top secret information

-owner of auction site TheTraderOutlet.com discussig his site's lack of basic security, 2009
Like Post Reply
[+]
02-18-2007, 11:11 PM,
Post: #3
amy Offline
Super Moderator
******
Posts: 3,473
Likes Given: 0
Likes Received: 1 in 1 posts
Joined: Mar 2005
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
Quote:Please note the URL
The scammer is routing through ebay's servers and having ebay send the victims to his scam login page.

Phishers did the same thing using a redirected page on eBay Motors last October.  :Smile
Blog
Like Post Reply
[+]
02-19-2007, 03:05 AM, (This post was last modified: 02-19-2007, 03:08 AM by dimucci.)
Post: #4
dimucci Offline
Full Member
****
Posts: 138
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Jul 2005
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
The Auction Guild, February 1, 2007

http://www.auctionguild.com/generic148.html

Cons In Control of ebaY

Those of us who have watched ebaY from a users perspective, for many years, have seen an every increasing ability for scammers to manipulate the site. In the last year, this access has gone from being outside manipulation of flaws and stolen personal information, to complete inside control.

These are the facts:

Every day thousands of listings from China selling brand name counterfeit goods are listed using hijacked accounts. These are usually 1 day listings, the accounts used fit a standard profile and are often accessed in alphabetical order. These listings are for brand name clothing, DVDs, sunglasses, and expand into other categories regularly. The scammer does not need a password to access these accounts.

ebaY Motors has ever increasing fraudulent listings. There are redirects from ebaY search results, manipulation of information in valid running listings, and ever more sophisticated cons, in addition to the all American fraud, found in some used car salesmen, that has been a caricature in our society since the advent of the automobile.

There is a brilliant hacker/codewriter who uses the moniker Vladuz, who makes ebaY his specialty. He has been writing ebaY hacks since 2003, as far as we can trace. This individual recently sent us a link to his latest hack, a tool that he posted on Firefox's plug ins. There have been several screen shots of ebaY's control utilities database posted on the net, on ebaY and off, all with a visible Vladuz watermark on the pages. Vladuz made the posts on ebaY, as far as TAG can tell.

ebaY knows about this problem, and has been removing any threads that appear on their site about it. They just removed a long running thread on ebaY DE, one on which Vladuz has posted on under various guises, including hacked ebaY pink accounts. At the end of December, TAG contacted ebaY through their Trust and Safety live support, and specifically told them what was going on. ebaY cannot say they did not know.

Here is what we have theorized based on all we have seen, and the facts we have:

Vladuz appears to have written a program that gives the scammers complete access to what we are calling ebaY's back end. This back end is the control utilities database used by ebaY, to track everything on their site, that contains all information about ebaY employees and its users. The following images are samples of what Vladuz has made available to the scammer marketplace.

The scammers who have purchased, or otherwise acquired the Vladuz access programs, appear to be able to manipulate the account information of every registered user ID on ebaY. They can monitor in real time what is happening in an account, read email sent through ebaY's system and respond to it through ebaY's system, change any parameter in the user ID account, so, for example, they can receive the PayPal payments the legitimate account holder would have otherwise received. They can add or remove information on a currently running listing without the legitimate account holder knowing it, and conduct business as they please; using all the hijacked accounts they please. No password access is needed. In the article ebay Insider Hijack Scam? we theorized that this was being done by an ebaY insider, as that was the only thing that could explain what we were observing. What we did not realize, and what even TAG found hard to believe, was that the scammers now had insider access, not by working for ebaY, but by using the program built by Vladuz.


The Auction Guild, December 16, 2006-January 4, 2007
In trying to analyze what was going on, it appeared that the hijacker or hijackers had to have access to accounts independent of passwords, and have the ability to set account parameters so the legit account holder would not know what was going on. If this is so, it either points to someone working inside ebaY, or to a security hole so big, you can drive a tractor trailer through it. Neither situation is tolerable.
whole article: ebaY Insider Hijack Scam? http://www.auctionguild.com/generic146.html
Like Post Reply
[+]
02-19-2007, 01:43 PM,
Post: #5
BellisimaJ. Offline
Rabble-Rouser
*********
Posts: 6,609
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Apr 2006
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
dimucci, ty for the article! Thumbsup

This is totally.........I can't find words.

All owners of hijacked accounts should be aware that ebay is aware of this situation and can therefore be held liable.
Like Post Reply
[+]
02-19-2007, 05:00 PM,
Post: #6
sneakymagenta Offline
Lawnmower Mouth
********
Posts: 2,672
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Jul 2005
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
Quote:All owners of hijacked accounts should be aware that ebay is aware of this situation

Mass panic would ensue after Ebay made the announcement.
OAI Moron Hall of Fame
<i>sell-thru is an irrelevant and illogical consideration.</i>
-KaRay, owner of WP giving selling advice, 2006

<i>the site was 'NOT' hacked but the little script that had recipes on had the link altered</i>
-Plunderhere Owner Mark Taylor after his site was hacked by a Chinese hacker gang, 2008

Some people have it like that, others don’t. I do.
-Probidscripts owner Spencer Osama Binweb Laden Ray bragging about his ability to scam the OAI without feeling any guilt, 2008.

How does an auction site get buyers?
-question asked at PSU by owner of auction site BidBeaver.ca, 2008

How do I get sales?
-question asked at PSU by online store owner, 2009.

I was told by my Tech. Support that my site dont really need SSL.. his servers
are well protected and that info your providing to join aint really top secret information

-owner of auction site TheTraderOutlet.com discussig his site's lack of basic security, 2009
Like Post Reply
[+]
02-22-2007, 09:42 AM, (This post was last modified: 02-22-2007, 09:48 AM by mandy.)
Post: #7
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
Quote:Eagle-eyed conspiracy buffs have pounced on a recent rash of compromised eBay user accounts as proof of a mile-wide hole in the auctioneer's front lines, giving new life to a theory that could one day rival the intrigue surrounding Roswell UFO crashing and Kennedy assassinations...

Even more suspicious, according to AuctionBytes, is the recent removal of a link from an eBay forum that exposed account holders' names, addresses, and user names and passwords. Indeed, eBay officials appeared to have purged an entire forum thread where conspiracy theorists were discussing the vast cover up. (A capture of a more recent thread can be found here.

Not quite as compelling a plot as The X-files or Oliver Stone's JFK. But with all the round and round, we get the feeling this one may have more staying power...

full article: http://www.theregister.co.uk/2007/02/20/...onspiracy/

Letters to the editor:
http://www.theregister.co.uk/2007/02/22/...y_letters/
Like Post Reply
[+]
02-22-2007, 01:43 PM,
Post: #8
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
Auctionbytes:

Quote:eBay spokesperson Hani Durzy told AuctionBytes on Wednesday that at no time did the fraudster have access to any member's personal or financial information. Durzy said a Romanian had obtained access to a handful of email accounts from some customer service representatives. The only information he had access to was information contained in emails, which did include some screenshots of some backend tools, Durzy said. Email servers are kept separate from servers hosting member data, he said...

Durzy claims the perpetrator was a "known Romanian fraudster" going by the handle Vladuz. "Our number one priority is to see him caught and locked up," Durzy said...

full article: http://www.auctionbytes.com/cab/abn/y07/m02/i22/s03
Like Post Reply
[+]
02-23-2007, 09:54 AM, (This post was last modified: 02-23-2007, 11:10 AM by mandy.)
Post: #9
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
more from TheRegister:

Quote:A hacker has once again managed to pilfer eBay credentials that allow him to masquerade as an official company representative even as he taunts eBay officials on the company's message boards. It's at least the second time the person going by the name Vladuz has pulled off the prank, which is causing many users to question the adequacy of eBay security...

A [eBay]spokesman said he was unsure if the hacker has access to the company's intranet, but said even if he does, he wouldn't be able to acquire much more than employee phone numbers and employee news. Just two days ago, eBay officials said they had quashed Vladuz's access to employee parts of the network, a claim the spokesman says now appears to be incorrect.

full article: http://www.theregister.co.uk/2007/02/23/...kes_again/

EDIT: Some morons are actually cheering the hacker's crimes.  The criminals at the CAPP forum (a cyberstalker infested pit) have taken time out from their daily routine of stalking eBayers and committing auction interference to cheer the hacker in his cyberterror campaign of identity theft and fraud.
Like Post Reply
[+]
02-23-2007, 08:47 PM,
Post: #10
bargainbloodhound Offline
Lawnmower Mouth
********
Posts: 4,372
Likes Given: 0
Likes Received: 4 in 4 posts
Joined: Jul 2005
Reputation: 0
RE: eBay's security problems: Vladuz and account hijackings via redirect page on eBay
You left out the words 'low IQ' and 'braindead'.  Smile
"Well, Jay was so giddy that someone named Jay was involved with this site we posted our first non-eBay listing in 3 years here at Lunarbid (we tried two items at Yahoo once upon a time, they bombed)" -Marie posting in a LunarBid thread at OTWA in 2005 wins the award for 'most moronic reason ever given for choosing a venue"

"thanks twat u must have nothing better 2 do. do u talk to all your members like that. will not be recomending your site.
best way to put it is TULIPTOOLS.COM IS REALLY SHIT. DONT JOIN." -pubescent owner of rinky dink off2auction.com in 2011
Like Post Reply
[+]
« Next Oldest | Next Newest »
Pages (3): 1 2 3 Next »




Possibly Related Threads…
Thread Author Replies Views Last Post
  eBay Knew For 1 Yr.That Security Holes On Its Site Could Lead to Account Hijacks Kristijntje 23 10,637 03-13-2008, 12:15 PM
Last Post: mandy
  How was eBay able to get into our bank account? mandy 0 1,540 05-08-2007, 08:40 AM
Last Post: mandy
  Trojan Bayrob targets eBay Motors users in new redirect phishing scam mandy 2 2,308 03-11-2007, 11:47 PM
Last Post: amy
  eBay Motors Redirect Security Hole Allows Scammers to Hijack Buyers regic 4 2,467 11-14-2006, 11:02 PM
Last Post: sneakymagenta
  On eBay, let the seller also beware: an account hijacking story mandy 0 1,606 07-03-2006, 10:42 AM
Last Post: mandy
  WHINING eBay Australia Security Chief COMPLAINS Security Community is Unfair mandy 1 1,751 05-23-2006, 06:09 PM
Last Post: dnc_ont
  Russian Web Site Selling eBay Users Account Info for $5 per Account Shut Down mandy 3 2,204 03-26-2006, 05:18 AM
Last Post: bargainbloodhound
  eBay faces up to online fraud: Admits Extreme Growth in Account Hijackings mandy 9 3,949 12-21-2005, 08:56 PM
Last Post: iron_chick

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:


Users browsing this thread: 1 Guest(s)
  • Contact Us
  • TulipTools Internet Business Owners and Online Sellers Community
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
  • Help
Current time: 07-03-2022, 06:54 PM Powered By MyBB, © 2002-2022 MyBB Group. Theme created by Justin S.
powered by Apache

powered by Linuxpowered by CentOS

Copyright 2000-2013 TulipTools.com. All rights reserved.