Kitz ADSL Broadband Information
adsl spacer  
Support this site
Home Broadband ISPs Tech Routers Wiki Forum
 
     
   Compare ISP   Rate your ISP
   Glossary   Glossary
 
Please login or register.

Login with username, password and session length
Advanced search  

News:

Pages: 1 ... 4 5 [6] 7 8 ... 11

Author Topic: TalkTalk hit by cyber hack attack.  (Read 37181 times)

guest

  • Guest
Re: TalkTalk hit by cyber hack attack.
« Reply #75 on: October 25, 2015, 08:18:50 AM »

From what I'm being told the XSS flaw was found several weeks ago and was located at video.talktalk.co.uk. Edit - in fact you'll find the details here: https://www.xssposed.org/incidents/93183/ Talktalk appear to have totally ignored the warning....

I'm told much of the TalkTalk site is (and I quote, so apologies for the language) "A {censored} mess coded by children or illiterate outsourced labour" and has multiple vulnerabilities, of which this is just the latest of many.

It would appear that the people with most to fear are some 400,000 people who recently joined TalkTalk as their credit check data (in its entirety) has been taken. This includes:

Name
DOB
Address
Tenancy Type
Years At Address
Months At Address
Home Telephone
Mobile Telephone
Email
Employer
Employment Title
Employment Location
Employers Phone
Bank
Account Number
Sort Code

I'd say that's more than enough data to ruin a lot of lives.

Time for the UK to bring in some real laws to affect negligent/incompetent CEOs. Someone within TT should be going to jail for this and we're always told the buck stops with the CEO, hence their pay so time for Dido to do some porridge I reckon.

NB - this is what I'm being told so its possible parts of it aren't true. So far it all checks out though....
« Last Edit: October 25, 2015, 08:23:37 AM by rizla »
Logged

les-70

  • Kitizen
  • ****
  • Posts: 1254
Re: TalkTalk hit by cyber hack attack.
« Reply #76 on: October 25, 2015, 09:07:59 AM »

  Much as you might expect it seems impossible to get a Noddle account.  I assume the site is simply overloaded.  It get more depressing by the minute.
Logged

broadstairs

  • Kitizen
  • ****
  • Posts: 3702
Re: TalkTalk hit by cyber hack attack.
« Reply #77 on: October 25, 2015, 09:12:37 AM »

  Much as you might expect it seems impossible to get a Noddle account.  I assume the site is simply overloaded.  It get more depressing by the minute.

Or possibly it is being targeted by hackers as it could have 1000's of TT customers data which could fill the gaps in the stuff they got from TT.

Stuart
Logged
ISP:Vodafone Router:Vodafone Wi-Fi hub FTTP

jid

  • Content Team
  • Kitizen
  • *
  • Posts: 1945
Re: TalkTalk hit by cyber hack attack.
« Reply #78 on: October 25, 2015, 09:53:07 AM »

  Much as you might expect it seems impossible to get a Noddle account.  I assume the site is simply overloaded.  It get more depressing by the minute.

I can access Noddle without any problems?
Logged
Kind Regards
Jamie

BT FTTP - 75meg | Sky Q |  Bridgend Weather

les-70

  • Kitizen
  • ****
  • Posts: 1254
Re: TalkTalk hit by cyber hack attack.
« Reply #79 on: October 25, 2015, 11:36:25 AM »

  I can access the site but experience endless waits after the first page of the signup.
Logged

guest

  • Guest
Re: TalkTalk hit by cyber hack attack.
« Reply #80 on: October 25, 2015, 11:43:50 AM »

I'm not sure I'd sign up to a US credit-checking agency* given the constraints the Patriot Act puts on US companies (ie all your data belongs to the US govt on demand).

YMMV of course....

*noddle is 100% owned by Callcredit who in turn are based in Chicago.
Logged

vic0239

  • Reg Member
  • ***
  • Posts: 519
Re: TalkTalk hit by cyber hack attack.
« Reply #81 on: October 25, 2015, 11:58:15 AM »


As things are going I would withdraw enough cash for a week or so and contact the bank to re-issue new cards (new card numbers and pins) and change passwords on all internet banking etc.
You would be able to track any transactions easily as you will have gone to 'Cash Only' from a known date.
DD transactions should be safe but you will need to monitor your accounts for odd activity.

Q: Has anyone been through this and had to set up all new accounts etc ?
How good are the banks at doing all this without messing up all you DD's and other regular transfers ?


I once had my credit card compromised and it was swiftly stopped by my Bank and all fraudulent transactions refunded. The new account was set up immediately, but it took about a week to receive the new cards. Because my credit card could be used to initiate a password reset on my online banking and thus put my current account at risk, my debit cards were cancelled and reissued and my online banking credentials were removed as well. I could set these up again immediately, but the cards took about a week to come.

During the above my current account remained open, but I recently used the new switching service to move my current account and the process was seamless. Everything was transferred automatically, direct debits, standing orders, pension credits and all of my online banking payees.  I was quite impressed.  :wry:
Logged
Lothian Broadband 300/300 + AAISP VDSL, Vigor2865Vac, MikroTik rb260gsp, ZyXel NWA50AX WiFi AP.

AArdvark

  • Kitizen
  • ****
  • Posts: 1008
Re: TalkTalk hit by cyber hack attack.
« Reply #82 on: October 25, 2015, 05:44:50 PM »

@vic0239
Thanks, sounds like the banks are getting better.  ;D
Useful to know.
Logged

guest

  • Guest
Re: TalkTalk hit by cyber hack attack.
« Reply #83 on: October 25, 2015, 05:50:30 PM »

Sounds like Dido has "done a Ratner" ;)

Harding said that her company was under no "legal obligation" to encrypt sensitive customer data, such as bank account details.

"It wasn't encrypted, nor are you legally required to encrypt it," she told the newspaper (Times). "We have complied with all of our legal obligations in terms of storing of financial information."


Technically she's correct - although the ICO has stated that no encryption will result in an automatic investigation and the PCI-DSS standards aren't enforced by Plod, they're enforced by Mastercard/Visa.

Anyone still want to buy TT shares? :D
Logged

sorc

  • Member
  • **
  • Posts: 28
Re: TalkTalk hit by cyber hack attack.
« Reply #84 on: October 25, 2015, 06:04:34 PM »

Anyone still want to buy TT shares? :D

At the rate things are going I wonder if she'll still be in her post in a week's time.
Logged

guest

  • Guest
Re: TalkTalk hit by cyber hack attack.
« Reply #85 on: October 25, 2015, 06:13:12 PM »

At the rate things are going I wonder if she'll still be in her post in a week's time.

I'm sure that whatever happens to TT/her she has a big payoff lined up, they all do :(
Logged

phi2008

  • Reg Member
  • ***
  • Posts: 420
Re: TalkTalk hit by cyber hack attack.
« Reply #86 on: October 25, 2015, 09:56:01 PM »

It would appear that the people with most to fear are some 400,000 people who recently joined TalkTalk as their credit check data (in its entirety) has been taken. This includes:

....

Time for the UK to bring in some real laws to affect negligent/incompetent CEOs. Someone within TT should be going to jail for this and we're always told the buck stops with the CEO, hence their pay so time for Dido to do some porridge I reckon.

NB - this is what I'm being told so its possible parts of it aren't true. So far it all checks out though....

What time period does that cover? I joined TT at the beginning of December last year, am I one of the 400,000?

I agree that until prison sentences start being handed out for negligent security practices within companies, companies won't get serious about their IT.  >:(
Logged

loonylion

  • Reg Member
  • ***
  • Posts: 723
Re: TalkTalk hit by cyber hack attack.
« Reply #87 on: October 25, 2015, 10:17:08 PM »

I agree that until prison sentences start being handed out for negligent security practices within companies, companies won't get serious about their IT.  >:(

Potential problem with that is who goes to jail? The IT people who weren't able to do the job properly, the beancounters who refused to pay for doing the job properly, or the people at the top who want max profits no matter what?
Logged

phi2008

  • Reg Member
  • ***
  • Posts: 420
Re: TalkTalk hit by cyber hack attack.
« Reply #88 on: October 25, 2015, 11:08:12 PM »

What time period does that cover? I joined TT at the beginning of December last year, am I one of the 400,000?

I guess I probably am then - http://www.offta.org.uk/charts.htm ?

Potential problem with that is who goes to jail? The IT people who weren't able to do the job properly, the beancounters who refused to pay for doing the job properly, or the people at the top who want max profits no matter what?

I'm not a lawyer but it won't be the first time there will have been legal obligations for a person/body to maintain standards protecting the public/customers - no doubt something can be done.
Logged

Weaver

  • Senior Kitizen
  • ******
  • Posts: 11459
  • Retd s/w dev; A&A; 4x7km ADSL2 lines; Firebrick
Re: TalkTalk hit by cyber hack attack.
« Reply #89 on: October 26, 2015, 01:03:05 AM »

@loonylion answer: all of the above. That way you will get all the guilty parties.
Logged
Pages: 1 ... 4 5 [6] 7 8 ... 11