Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.



258 posts

Ultimate Geek
+1 received by user: 29

Subscriber

Topic # 114649 26-Feb-2013 15:50 Send private message

Hi all,

Had a client pop in today as they are getting messages bouncing back from people they hadn't sent emails
to.

To cut a long story short ...

Some of the hacked xtra accounts possibly had spam vacation responses set up in them. The person breaking in will set the xtra users vacation resposnse to run until sometime a few years from now and get it to send a spam message to everyone who emails the xtra user.

Worth checking if you are dealing with TCom / Xtra email users. In fact its worth checking if you deal with any web based email service who has been compromised.

For Xtra -
  1. Log into the users account
  2. Goto options
  3. email options
  4. Vacation Response.

Follow your nose. Its also worth checking to see if a malicious alias, temporary disposable internet address or similar has been created .

HTH

Shane




nunz

Create new topic
1725 posts

Uber Geek
+1 received by user: 324

Trusted
Spark NZ

  Reply # 770571 26-Feb-2013 15:53 Send private message

If you go to the main Telecom home page you see the first link which informs customers to change their passwords takes you here:

http://telecom.custhelp.com/app/answers/detail/a_id/26203?pid=int452

And yes it does detail the steps to check to make sure you don't have a vacation setting turned on.




I work for Telecom, but as always my views are my own.



258 posts

Ultimate Geek
+1 received by user: 29

Subscriber

  Reply # 770672 26-Feb-2013 18:40 Send private message

plambrechtsen: If you go to the main Telecom home page you see the first link which informs customers to change their passwords takes you here:

http://telecom.custhelp.com/app/answers/detail/a_id/26203?pid=int452

And yes it does detail the steps to check to make sure you don't have a vacation setting turned on.



Four things:

 1 - Many clients dont use web mail so dont look at the web mail section, instead they follow the directions given and never go to the section that says confirm your web mail settings are complete.

2 - The banner on the main TCom page doesnt work unless you manage to see it as your first hit the page. It auto changes to advertising - making it difficult for people to find. We also hae taught our clients not to click on advertising - it leads to all sorts of trouble so they probably wouldnt click on a web adertising banner. it is a backwards security step for tcom to do it this way.

3 - Going through the steps given for a lot of our users ended them up with all sorts of crap about setting up profiles and putting photos up etc. Clicking on the go away link just stopped everything from working.

4 - In your advertising and advice it says change your password - most of our clients having done so never went any further as they had done what TCom told them to do. The advertising should have been more specific about what was needed to fix all the issues.

So no offence intended, why dump on someone who is helping you do what we should never have had to do in the first place?






nunz

Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:




News »

Trending now »
Hot discussions in our forums right now:

Warning: Rage Ahead - Campbell Live and childhood poverty
Created by kawaii, last reply by charsleysa on 3-Sep-2014 13:19 (155 replies)
Pages... 9 10 11


Does NZ need better gun laws?
Created by mattwnz, last reply by gzt on 3-Sep-2014 14:03 (136 replies)
Pages... 8 9 10


What tyre brand/model to look at ?
Created by Mark, last reply by Oblivian on 2-Sep-2014 21:36 (35 replies)
Pages... 2 3


Judith Collins: I am resigning
Created by Presso, last reply by gzt on 2-Sep-2014 11:42 (109 replies)
Pages... 6 7 8


VideoEZY OnDemand
Created by Andib, last reply by sen8or on 3-Sep-2014 07:45 (64 replies)
Pages... 3 4 5


Cirque du Soleil Cellphone Hijack
Created by myopinion, last reply by PhantomNVD on 1-Sep-2014 18:01 (21 replies)
Pages... 2


Orcon Global Mode launched
Created by freitasm, last reply by shk292 on 1-Sep-2014 11:32 (132 replies)
Pages... 7 8 9


Lightbox press event release
Created by freitasm, last reply by BigHammer on 3-Sep-2014 13:46 (568 replies)
Pages... 36 37 38



Geekzone Live »
Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.