Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


bigalow

566 posts

Ultimate Geek


#150025 8-Jul-2014 20:59
Send private message

http://www.stuff.co.nz/business/industries/10246091/Vodafone-privacy-breach-serious




 

 

 


Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic
 1 | 2 | 3 | 4 | 5
freitasm
BDFL - Memuneh
79314 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #1084414 8-Jul-2014 21:00
Send private message

No comment, no note, nothing? 

Just a link drop?






Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 




Coil
6614 posts

Uber Geek
Inactive user


  #1084417 8-Jul-2014 21:04
Send private message

Interesting.

I am assuming this is mobile side. All fixed line passwords are randomly generated.

freitasm
BDFL - Memuneh
79314 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #1084419 8-Jul-2014 21:05
Send private message

The article is badly written. Not expecting to have a full description of the exploit but the information provided is lacking really - it doesn't make much sense. 





Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 




sdav
846 posts

Ultimate Geek


  #1084423 8-Jul-2014 21:20

I read it as if he got access to one other customers account, can't quite get the link that everyone's accounts are accessible...

AidanS
458 posts

Ultimate Geek


  #1084426 8-Jul-2014 21:23
Send private message

people with a master password are able to access private customer information, including credit card details.


But, uh, that's what a "master password" is made for...(?).

-A

Yabanize
2350 posts

Uber Geek


  #1084447 8-Jul-2014 21:57
Send private message

CustomerZone or the other system I wonder?

dejadeadnz
2394 posts

Uber Geek
Inactive user


  #1084457 8-Jul-2014 22:16
Send private message

If the allegations in the article are true, the complainant really should get the Privacy Commissioner's office involved. The public needs some assurance that this matter is being properly attended to and given VF's attitude towards customer service, I am not optimistic. However, at this stage we don't even know if this supposed breach is any such thing.



 
 
 

Trade NZ and US shares and funds with Sharesies (affiliate link).
loceff13
1065 posts

Uber Geek


  #1084458 8-Jul-2014 22:17
Send private message

Well it's on Stuff etc so we will see a press release tomorrow that's a bit more clear no doubt

charsleysa
597 posts

Ultimate Geek


  #1084523 9-Jul-2014 05:49
Send private message

The article smells of BS.

Master password? Who even has or has had those? Master accounts, sure, but master passwords? Don't think so.

Also, why and how does he have the master password?

A more plausible story would be that he was at an icafe and happened to be at a computer where the previous user was a Vodafone customer that hadn't logged out.




Regards
Stefan Andres Charsley

jnimmo
1097 posts

Uber Geek


  #1084530 9-Jul-2014 07:28
Send private message

Sounds like (from the article) that someone was setup with a default password, which they discovered would also let them into other users accounts who hadn't bothered to change their password

hyperman
418 posts

Ultimate Geek


  #1084534 9-Jul-2014 07:57
Send private message

Article now removed......


smells like carp to me




 The views expressed by me are not necessarily those of my employer


Coil
6614 posts

Uber Geek
Inactive user


  #1084536 9-Jul-2014 08:01
Send private message

jnimmo: Sounds like (from the article) that someone was setup with a default password, which they discovered would also let them into other users accounts who hadn't bothered to change their password


Its been deleted now.
Most likely people are setting their passwords to something guessable and he just came across one.

clinty
1183 posts

Uber Geek

Lifetime subscriber

  #1084540 9-Jul-2014 08:11
Send private message


Its been deleted now.


Still in the business section, just isn't on the front page

Clint

clinty
1183 posts

Uber Geek

Lifetime subscriber

  #1084541 9-Jul-2014 08:15
Send private message

TimA: Interesting.

I am assuming this is mobile side. All fixed line passwords are randomly generated.


Interestingly he says he can see the credit card details - when i log in to "My Vodafone" for my mobile account, i can only see the first few numbers, no expiry date and certainly not the CSC.

If he did have access to accounts i don't think he has as much info as he thinks he does

CLint



Jaxar
383 posts

Ultimate Geek


  #1084546 9-Jul-2014 08:47
Send private message

clinty:
TimA: Interesting.

I am assuming this is mobile side. All fixed line passwords are randomly generated.


Interestingly he says he can see the credit card details - when i log in to "My Vodafone" for my mobile account, i can only see the first few numbers, no expiry date and certainly not the CSC.

If he did have access to accounts i don't think he has as much info as he thinks he does

CLint




Yeah the credit card info bit sounds wrong to me. Even with access to VF CRM tools you can't actually see a full credit card number. At least not with the tools I use. I've always assumed that's pretty much standard practice for any company these days.




Please note: I have a professional bias towards Vodafone.

 1 | 2 | 3 | 4 | 5
Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic





News and reviews »

Gen Threat Report Reveals Rise in Crypto, Sextortion and Tech Support Scams
Posted 7-Aug-2025 13:09


Logitech G and McLaren Racing Sign New, Expanded Multi-Year Partnership
Posted 7-Aug-2025 13:00


A Third of New Zealanders Fall for Online Scams Says Trend Micro
Posted 7-Aug-2025 12:43


OPPO Releases Its Most Stylish and Compact Smartwatch Yet, the Watch X2 Mini.
Posted 7-Aug-2025 12:37


Epson Launches New High-End EH-LS9000B Home Theatre Laser Projector
Posted 7-Aug-2025 12:34


Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.