eBay userbase information hacked, change your password immediately!

  • Thread starter Thread starter Qtis
  • Start date Start date
  • Views Views 6,245
  • Replies Replies 49

Qtis

Grey Knight Inquisitor
Member
Joined
Feb 28, 2010
Messages
3,817
Solutions
1
Reaction score
1,325
Trophies
2
Location
The Forge
XP
1,748
Country
Antarctica
HomepageCarousel_712x376_052114.jpg

As we've heard in the past months, not many services are considered immune anymore. The latest website to join the group of hacked sites is eBay. Change your password immediately.

eBay Inc. (Nasdaq: EBAY) said beginning later today it will be asking eBay users to change their passwords because of a cyberattack that compromised a database containing encrypted passwords and other non-financial data. After conducting extensive tests on its networks, the company said it has no evidence of the compromise resulting in unauthorized activity for eBay users, and no evidence of any unauthorized access to financial or credit card information, which is stored separately in encrypted formats. However, changing passwords is a best practice and will help enhance security for eBay users.

Regardless of what they say, I'd recommend changing all passwords linked to eBay as well as passwords in all sites with the same password/username as eBay.

:arrow:Source
 
The passwords are going once, going twice, gone!

And here I thought the snipers were the worst part about eBay.
 
Was Paypal accounts also affected by the attack? (paypal's press page was changed by the hackers too, it seems)
 
Was Paypal accounts also affected by the attack? (paypal's press page was changed by the hackers too, it seems)
As a precaution, I'd change all passwords used in any service operated by eBay inc. Luckily the cc data should be encrypted, but that doesn't mean much if the hacker somehow gained access to the keys or managed to crack it due to stupid hashes from passwords such as qwerty or 123456..
 
Crap ..change paypal password is more of a pain (I need to confirm my creditcards or something for it..) ...thank you hackers for brightening my night..
 
Also by now it should be obvious, but I'd recommend everyone to get a password manager such as 1Password. Using unique random generated passwords on each website means changing only one password if a website is breached. You only need to remember the master password for your credential vault. Not that much to be spent for the added security.
 
  • Like
Reactions: Xabring and kenjixx
So now hackers know a password even I am not certain of.
...yeah without auto-login I can't get on my account.

I'll look in to it. So basically, use random passwords for everything but keep them under 1PW? But what if 1Password gets breached?

Any recommended PW generators?

KeePass

Free, easy to use, and I should REALLY stop being too lazy to use it.
Anyway, it'll keep, store and generate passwords. Can put in your own, or let it generate one for you. Lots of features for a free program.
 
  • Like
Reactions: Mythrix

Site & Scene News

Popular threads in this forum