Welcome to the Second Life Forums Archive

These forums are CLOSED. Please visit the new forums HERE

New blog

Tristin Mikazuki
Sarah Palin ROCKS!
Join date: 9 Oct 2006
Posts: 1,012
07-03-2007 15:54
Safeguarding Your Account…or You’ve Been Phished

Has everyone seen this new blog? I wonder if SL HAS been hacked like last time
Not like they will say just denie it ..like last time and with CC#'s now being manditory o the joy.
Is there and way to get LL to erase your CC info? cause I dont think just changeing your password is enough.
Any ideas? besides checking you CC history a few times a day
Ava Glasgow
Hippie surfer chick
Join date: 27 Jan 2007
Posts: 2,172
07-03-2007 16:03
I would suspect this has more to do with people getting phished, so the phishers gain access to their account.

The part of the post that's a little weird:
From: someone
On June 14, we posted about creating Strong Passwords. If you haven’t yet reconsidered your password, do it now. Otherwise, you risk being phished—someone steals your password and hijacks your account.


Phishing involves tricking someone into giving you their password. Making the password stronger won't do anything to prevent that. Oh Lindens, don't you guys read these things before you post them? :rolleyes:
_____________________
Ciaran Laval
Mostly Harmless
Join date: 11 Mar 2007
Posts: 7,951
07-03-2007 16:03
Well considering having a safe password won't protect you from phishing I'd say it's more of a general password warning.
Ciaran Laval
Mostly Harmless
Join date: 11 Mar 2007
Posts: 7,951
07-03-2007 16:05
From: Ava Glasgow
Oh Lindens, don't you guys read these things before you post them? :rolleyes:


Reading the latest blog about advertising I'd have to say, no they don't.
Brenda Connolly
Un United Avatar
Join date: 10 Jan 2007
Posts: 25,000
07-03-2007 16:17
From: Ava Glasgow
I would suspect this has more to do with people getting phished, so the phishers gain access to their account.

The part of the post that's a little weird:


Phishing involves tricking someone into giving you their password. Making the password stronger won't do anything to prevent that. Oh Lindens, don't you guys read these things before you post them? :rolleyes:

The fact they don't was establishesd a while ago.......
_____________________
Don't you ever try to look behind my eyes. You don't want to know what they have seen.

http://brenda-connolly.blogspot.com
Keiichi Sukra
Registered User
Join date: 8 Dec 2006
Posts: 43
07-03-2007 16:31
This all seems very "phisy" to me.

On June 27th I got an email from Linden Labs.

"Linden Lab <Linden_Lab@mail.vresp.com>
to me

show details
Jun 27 (7 days ago)
An upgrade of our billing system recently revealed minor discrepancies
in your billing information. To get everyone back on track we are
asking that you update your payment method via the website as soon as
possible. If you have a balance due it will be billed to your account
within 24 hours of your update. If you do not update your information
and you have a balance due when we bill, your account will go
delinquent. As always with delinquencies, you will then have 7 days to
pay your balance. After 7 days the account will go on hold and you
will not be able to login without clearing your balance. After 30 days
your account will go defunct and you will lose any inventory, land and
L$ associated with the account.
To upgrade your payment information:

1) Go to secondlife dot com
2) Login to your account
3) Click upgrade payment method
4) Upgrade with either credit card or Paypal, your choice
5) Follow instructions
6) You’re done!

If you have any questions regarding your account status, or have
difficulty making changes to your account, please contact billing
through the support portal:



Thank you!
Linden Lab"

Now I downgraded my account a few months back, so I have no payment due to Linden. In fact I have a surplus of actual credit in my account. Funny they would be demanding money I do not owe them. Now for the kicker, the very next day my bank put my card on hold due to it's info being stolen. Apparently it was then attempted to be used from someone in Italy on the 28th. Seems they had all the information I put here on this site. It was reported I put the info into some phishing site, yet I haven't purchased anything online in months, let alone give that info to another site. The bank told me this happened the day before the linden labs email on the 26th. Good thing my bank is on top of things and blocked the transaction. Now this all seems rather coincidental don't you think.
Gillian Waldman
Buttercup
Join date: 1 Oct 2006
Posts: 697
07-03-2007 16:33
I replied in the blog but I will post this here too: 2 people in SL that I know have had their CC#s stolen. One being my RL boyfriend who only used that card for SL. He is no longer in SL (closed his account) but let me know a couple days ago that his card had $12,000USD of charges he didn't make. I saw a similar post from someone else on the blog.

Based only on my own experiences with these two people, I strongly suspect there has indeed been some sort of hack again. I hope LL can clarify if this has happened - or if it hasn't happened - or do they know?

I don't mean to be an alarmist but yeah, this alarms me.
_____________________
http://www.deuxlooks.com/
Ann Launay
Neko-licious™
Join date: 8 Aug 2006
Posts: 7,893
07-03-2007 16:33
Keiichi, that's been confirmed as a genuine Linden Labs email.
_____________________
~Now Trout Re-Re-Re-Certified!~
From: someone
I am bumping you to an 8.5 on the Official Trout Measuring Instrument of Sluttiness. You are an enigma - on the one hand a sweet, gentle, intelligent woman who we would like to wrap up in our arms and protect, and on the other, a temptress to whom we would like to do all sorts of unmentionable things.

Congratulations and shame on you! You are a bit of a slut.
Keiichi Sukra
Registered User
Join date: 8 Dec 2006
Posts: 43
07-03-2007 16:36
From: Ann Launay
Keiichi, that's been confirmed as a genuine Linden Labs email.


I'm not doubting it being valid. That's the bad part really. Since they have no clue that I dont owe them money, yet they had issues with a card they don't even need access too. That's the issue I see. For my card to be stolen the day before and tried to be used the day after the email, thats the problem for me.
Ciaran Laval
Mostly Harmless
Join date: 11 Mar 2007
Posts: 7,951
07-03-2007 16:39
From: Keiichi Sukra
I'm not doubting it being valid. That's the bad part really. Since they have no clue that I dont owe them money, yet they had issues with a card they don't even need access too. That's the issue I see. For my card to be stolen the day before and tried to be used the day after the email, thats the problem for me.


That is indeed very phishy ...sorry couldn't resist.

This is rather worrying in all reality, surely though they have a duty of care to inform their customers if they've been hacked ..don't they?
Gillian Waldman
Buttercup
Join date: 1 Oct 2006
Posts: 697
07-03-2007 16:41
You would think....

I have just canceled the card I had on file.
_____________________
http://www.deuxlooks.com/
Keiichi Sukra
Registered User
Join date: 8 Dec 2006
Posts: 43
07-03-2007 17:01
From: Ciaran Laval
That is indeed very phishy ...sorry couldn't resist.

This is rather worrying in all reality, surely though they have a duty of care to inform their customers if they've been hacked ..don't they?


Well the worry part is already over for me since it happened. I'm not exactly blaming Linden Labs. But I know for a fact I don't put credit card info and all my billing information on just random sites from a link in my email. I've been using the net since Prodigy way back in 1992. So it's not like I'm some noob on these series of tubes. But all these dates are one after another in a 3 day span. It's just way to coincidental for me I think. Linden Labs on the other hand already had one major issue with being hacked and from what I read in the forums and blog is that they have had issues with Paypal recently. Now the password "reminder" seems like a sly way to say we screwed up and we are trying to put the blame on the users. I stopped using SL due to so many issues since about March and downgraded around the end of April. I only login about 1 or 2 times every few weeks. I do read the forums and blog for the soap opera feel of it all though. :)
Raudf Fox
(ra-ow-th)
Join date: 25 Feb 2005
Posts: 5,119
07-03-2007 20:44
From: Ciaran Laval
That is indeed very phishy ...sorry couldn't resist.

This is rather worrying in all reality, surely though they have a duty of care to inform their customers if they've been hacked ..don't they?


Yeah, one would think so, but last year when they were hacked, it took them six months to finally email those whose information 'might' have been compromised. Between the time it happened and the time the email was sent, most of the people had already changed their passwords and canceled their credit cards and/or swapped to Paypal or only use the 'gift cards' such as Visa and Mastercard offer. This is one of the biggest reasons why Linden Labs is now labeled as a fraud site by many banks. And it's fairly earned too.

Sure they blogged, but they assured us for quite some time that no personal information was compromised. Fortunately, we're more paranoid than LL.. and now, we're pretty much paranoid OF LL.

*sigh*
_____________________
DiamonX Studios, the place of the Victorian Times series of gowns and dresses - Located at http://slurl.com/secondlife/Fushida/224/176

Want more attachment points for your avatar's wearing pleasure? Then please vote for

https://jira.secondlife.com/browse/VWR-1065?
Tristin Mikazuki
Sarah Palin ROCKS!
Join date: 9 Oct 2006
Posts: 1,012
07-04-2007 00:09
From: Ciaran Laval
That is indeed very phishy ...sorry couldn't resist.

This is rather worrying in all reality, surely though they have a duty of care to inform their customers if they've been hacked ..don't they?


They didnt last time I see no reason they would this time so watch your charges VERY carefuly and let you banks know something might just be amiss LL is not a very forcomeing company so cover your backsides cause LL wont
Matthew Dowd
Registered User
Join date: 30 Jan 2007
Posts: 1,046
07-04-2007 00:42
From: Ann Launay
Keiichi, that's been confirmed as a genuine Linden Labs email.


Has it? A number of people on the forums suggested it was genuine since LL had used vresp for a previous mailing months ago. However, I don't recall seeing anything official from LL confirming it.

On the other hand, reports of this suspicious e-mail were quickly followed by an LL blog about phishing!

Matthew
Jesseaitui Petion
king of polynesia :P
Join date: 2 Jan 2006
Posts: 2,175
07-04-2007 01:12
From: Brenda Connolly
The fact they don't was establishesd a while ago.......

lololol
Gillian Waldman
Buttercup
Join date: 1 Oct 2006
Posts: 697
07-04-2007 06:44
might be helpful to change the title of this thread to something more descriptive.
_____________________
http://www.deuxlooks.com/
Raudf Fox
(ra-ow-th)
Join date: 25 Feb 2005
Posts: 5,119
07-04-2007 06:48
From: Matthew Dowd
Has it? A number of people on the forums suggested it was genuine since LL had used vresp for a previous mailing months ago. However, I don't recall seeing anything official from LL confirming it.

On the other hand, reports of this suspicious e-mail were quickly followed by an LL blog about phishing!

Matthew


*grins* The MOTD did warn that LL was sending out an email ;)
_____________________
DiamonX Studios, the place of the Victorian Times series of gowns and dresses - Located at http://slurl.com/secondlife/Fushida/224/176

Want more attachment points for your avatar's wearing pleasure? Then please vote for

https://jira.secondlife.com/browse/VWR-1065?