Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.



292 posts

Ultimate Geek
+1 received by user: 52

Subscriber

Topic # 114649 26-Feb-2013 15:50 Send private message

Hi all,

Had a client pop in today as they are getting messages bouncing back from people they hadn't sent emails
to.

To cut a long story short ...

Some of the hacked xtra accounts possibly had spam vacation responses set up in them. The person breaking in will set the xtra users vacation resposnse to run until sometime a few years from now and get it to send a spam message to everyone who emails the xtra user.

Worth checking if you are dealing with TCom / Xtra email users. In fact its worth checking if you deal with any web based email service who has been compromised.

For Xtra -
  1. Log into the users account
  2. Goto options
  3. email options
  4. Vacation Response.

Follow your nose. Its also worth checking to see if a malicious alias, temporary disposable internet address or similar has been created .

HTH

Shane




nunz

Create new topic
1745 posts

Uber Geek
+1 received by user: 338

Trusted
Spark NZ

  Reply # 770571 26-Feb-2013 15:53 Send private message

If you go to the main Telecom home page you see the first link which informs customers to change their passwords takes you here:

http://telecom.custhelp.com/app/answers/detail/a_id/26203?pid=int452

And yes it does detail the steps to check to make sure you don't have a vacation setting turned on.




I work for Spark, but as always my views are my own.



292 posts

Ultimate Geek
+1 received by user: 52

Subscriber

  Reply # 770672 26-Feb-2013 18:40 Send private message

plambrechtsen: If you go to the main Telecom home page you see the first link which informs customers to change their passwords takes you here:

http://telecom.custhelp.com/app/answers/detail/a_id/26203?pid=int452

And yes it does detail the steps to check to make sure you don't have a vacation setting turned on.



Four things:

 1 - Many clients dont use web mail so dont look at the web mail section, instead they follow the directions given and never go to the section that says confirm your web mail settings are complete.

2 - The banner on the main TCom page doesnt work unless you manage to see it as your first hit the page. It auto changes to advertising - making it difficult for people to find. We also hae taught our clients not to click on advertising - it leads to all sorts of trouble so they probably wouldnt click on a web adertising banner. it is a backwards security step for tcom to do it this way.

3 - Going through the steps given for a lot of our users ended them up with all sorts of crap about setting up profiles and putting photos up etc. Clicking on the go away link just stopped everything from working.

4 - In your advertising and advice it says change your password - most of our clients having done so never went any further as they had done what TCom told them to do. The advertising should have been more specific about what was needed to fix all the issues.

So no offence intended, why dump on someone who is helping you do what we should never have had to do in the first place?






nunz

Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





Trending now »

Hot discussions in our forums right now:

Speed limit when overtaking? Teach me please.
Created by nakedmolerat, last reply by joker97 on 25-Oct-2014 09:00 (75 replies)
Pages... 3 4 5


House Auctions
Created by t0ny, last reply by mattwnz on 25-Oct-2014 00:18 (36 replies)
Pages... 2 3


VDSL, which router/modem sub $200?
Created by TeaLeaf, last reply by TeaLeaf on 24-Oct-2014 23:26 (16 replies)
Pages... 2


30 too old to get into IT?
Created by Interslice, last reply by shk292 on 24-Oct-2014 20:39 (16 replies)
Pages... 2


American legal jurisdiction in New Zealand
Created by ajobbins, last reply by gzt on 21-Oct-2014 14:58 (30 replies)
Pages... 2


iPad Air 2 and iPad Mini 3. Gonna get one?
Created by Dingbatt, last reply by tdgeek on 25-Oct-2014 01:10 (109 replies)
Pages... 6 7 8


5Ghz AP recommendations?
Created by ubergeeknz, last reply by sbiddle on 24-Oct-2014 12:42 (12 replies)

Snap have failed our company!
Created by dafman, last reply by kornflake on 23-Oct-2014 17:41 (37 replies)
Pages... 2 3



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.