RC India

General Topics => Chatter Zone => Topic started by: vibranthobbies on April 19, 2016, 11:25:38 AM



Title: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: vibranthobbies on April 19, 2016, 11:25:38 AM
Dear All,
Yesterday our hobbyking account password was stolen and reset by some one from Russia. The hacker logged in and placed order using the bonus points available in our account.
Possibly this could be a security breach and they might have stolen some more email ids and passwords.
 
Please login and check your bonus points. For safety reason please change your password.

Kumaran


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: satyagupta on April 19, 2016, 11:38:58 AM
Ahhh, i dont use/buy from HK so nothing bad for me.

Also good work Kumaran ji, in helping and spreading the news.


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: Himadri Roy on April 19, 2016, 11:42:41 AM
I have my points intact


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: vibranthobbies on April 19, 2016, 11:54:16 AM
Satyaji,
Since, we have a wholesale account we keep considerable amount in bonus points.
The hacker utilized that.
I was lucky to check my account today and the order is still under processing.
Hobbyking assured to cancel that order and credit it in our account again.

@himadri
May be their target is accounts with high bonus points.
Kumaran


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: Himadri Roy on April 19, 2016, 12:03:05 PM
@himadri
May be their target is accounts with high bonus points.
Kumaran
That could be the case. I have very little bonus points about 4$. Good to hear that HK is helping out!


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: vibranthobbies on April 19, 2016, 12:08:17 PM
We got the amount back.
HK is investigating further on this.


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: satyagupta on April 19, 2016, 12:12:21 PM
Good to hear that :)


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: RCNeil21 on April 19, 2016, 01:45:28 PM
How would one know how many bonus points an account has?
Hopefully its not a systems breach at your end kumaran sir please do take care :thumbsup:


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: Inv3nt0r on April 19, 2016, 04:00:05 PM
Breached just few accounts? If the hacker was successful to breach, he will get information of almost all accounts. Check out your computers and mobile phones for backdoors, key loggers or viruses.
Regards




Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: prabal276 on April 19, 2016, 04:23:13 PM
my 0.53 $ are intact
 >:D >:D ;D ;D


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: saikat on April 19, 2016, 10:37:58 PM
although unrelated .. perhaps members would be interested in checking
out the following

http://www.voltairenet.org/article185860.html


the incident took place a couple of years ago ... and is of doubtful veracity

it does concern russians and electronics


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: vibranthobbies on April 29, 2016, 08:56:01 AM
Dear All,
Please see this thread on RCGroups on similar incident. It happened on 25/04/2016;
http://www.rcgroups.com/forums/showthread.php?t=2651823
It is the same person who hacked our account. I am saying this based on the shipping address.


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: chintal on May 01, 2016, 01:17:08 PM
Its a hacker thats it


Title: Re: Attn: Hobbyking customers-Login and check your bonus points - Urgent
Post by: Inv3nt0r on May 01, 2016, 06:21:46 PM
If it's a website database breach then they should patch the vulnerability immediately to save other fraudulent orders done by hackers and do store password and other information encrypted hashes. And just my personal opinion, they should not take rid of sql database again, as now they seems to switch to oracle database :hatsoff:   Keep it up