Welcome Guest ( Log In | Register )

90 Pages < 1 2 3 4 > » Bottom

Outline · [ Standard ] · Linear+

Chat CIMB kena hack?

views
     
Supreme1394
post Dec 16 2018, 10:46 PM

Achieving Supremacy
*****
Senior Member
864 posts

Joined: Oct 2011
From: planet earth


QUOTE(feiraron @ Dec 16 2018, 10:45 PM)
OP dude the link you post got nothing to do with the capthcha thing, not even a mention there??

looks to me like their debit card is registered and linked with paypal and some sort of exploit there
*
Good point, TS pls explain.
MANUTD676767
post Dec 16 2018, 10:48 PM

Casual
***
Junior Member
347 posts

Joined: Jun 2017


So what is the problem with the captchcha thing?
Quantum Geist
post Dec 16 2018, 10:48 PM

Getting Started
**
Junior Member
109 posts

Joined: May 2013


QUOTE(feiraron @ Dec 16 2018, 10:45 PM)
OP dude the link you post got nothing to do with the capthcha thing, not even a mention there??

looks to me like their debit card is registered and linked with paypal and some sort of exploit there
*
Then got card numbers leak?
howszat
post Dec 16 2018, 10:48 PM

Look at all my stars!!
*******
Senior Member
2,932 posts

Joined: Sep 2007
reCaptcha is already quite a common thing, lah.
TSpeja5081
post Dec 16 2018, 10:49 PM

Getting Started
**
Junior Member
291 posts

Joined: Sep 2007
QUOTE(feiraron @ Dec 16 2018, 10:45 PM)
OP dude the link you post got nothing to do with the capthcha thing, not even a mention there??

looks to me like their debit card is registered and linked with paypal and some sort of exploit there
*
https://m.facebook.com/story.php?story_fbid...100000339018919
Original post..that one i post is feedback from other case.but similar
klaxoon.my
post Dec 16 2018, 10:49 PM

New Member
*
Newbie
31 posts

Joined: Aug 2017
user posted image
se7en
post Dec 16 2018, 10:50 PM

resistance is futile
Group Icon
Admin
1,806 posts

Joined: Jan 2003
From: Captain's Cabin, Black Pearl

ok, ran through their page, apart from the recaptcha, nothing else to worry about.

and for the record, using recaptcha on a bank login page is plain dumb.
GOPI56
post Dec 16 2018, 10:51 PM

Regular
******
Senior Member
1,494 posts

Joined: Dec 2012
QUOTE(peja5081 @ Dec 16 2018, 11:49 PM)
https://m.facebook.com/story.php?story_fbid...100000339018919
Original post..that one i post is feedback from other case.but similar
*
Recently a exploit involving Paypal payment gateway was shown in some videos.
Cookie101
post Dec 16 2018, 10:52 PM

Regular
******
Senior Member
1,616 posts

Joined: Jul 2016
QUOTE(Quantum Geist @ Dec 16 2018, 10:48 PM)
Then got card numbers leak?
*
Either their data is compromised by their own carelessness on website or data breach at seller side like the Starwood issue.

But many water fish just blame it on banks and make malicious fitnahs.

This shows the general public lack of common sense to determine the reliability of the information and knowledge of the basic issue.

#donedakwah
TSpeja5081
post Dec 16 2018, 10:52 PM

Getting Started
**
Junior Member
291 posts

Joined: Sep 2007
QUOTE(se7en @ Dec 16 2018, 10:50 PM)
ok, ran through their page, apart from the recaptcha, nothing else to worry about.

and for the record, using recaptcha on a bank login page is plain dumb.
*
Ok.maybe nothing to do we recaptcha.but many report unauthorized usage from paypal
ketaros
post Dec 16 2018, 10:52 PM

Getting Started
**
Junior Member
117 posts

Joined: Apr 2010
one more thing is for the app...if u put your password and any numbers or letters after it....you would still be able to login...i've tried myself
Quantum Geist
post Dec 16 2018, 10:53 PM

Getting Started
**
Junior Member
109 posts

Joined: May 2013


QUOTE(se7en @ Dec 16 2018, 10:50 PM)
ok, ran through their page, apart from the recaptcha, nothing else to worry about.

and for the record, using recaptcha on a bank login page is plain dumb.
*
plus the weird placement of recaptcha is kinda throwing people off
DarkAeon
post Dec 16 2018, 10:54 PM

Enthusiast
*****
Senior Member
774 posts

Joined: Nov 2010
QUOTE(ketaros @ Dec 16 2018, 10:52 PM)
one more thing is for the app...if u put your password and any numbers or letters after it....you would still be able to login...i've tried myself
*
really? someone is so fired
jimmyktp
post Dec 16 2018, 10:54 PM

Getting Started
**
Junior Member
244 posts

Joined: Jun 2006
From: the bolehland..


QUOTE(se7en @ Dec 16 2018, 10:50 PM)
ok, ran through their page, apart from the recaptcha, nothing else to worry about.

and for the record, using recaptcha on a bank login page is plain dumb.
*
Yup. Also, CIMB limiting their password to only 8 characters, it's plain dumb.

Other countries already using 2FA for banking transaction, but Malaysian banks still use Mobile Number authentication. Just a ticking timebomb considering how easy it is to hijack a number..
Shanks
post Dec 16 2018, 10:56 PM

Getting Started
**
Junior Member
182 posts

Joined: Jan 2003
From: KL
Called the call centre. They say the recaptcha is a recent enhancement and that it's indeed the original CIMBClicks page. Also checked about the phone number +603 6204 7788 which they say is legit.
stupiak07
post Dec 16 2018, 10:57 PM

Casual
***
Junior Member
397 posts

Joined: Oct 2007
From: broken heart land, single forever~
QUOTE(Shanks @ Dec 16 2018, 10:56 PM)
Called the call centre. They say the recaptcha is a recent enhancement and that it's indeed the original CIMBClicks page. Also checked about the phone number +603 6204 7788 which they say is legit.
*
Number is legit but alot number spoofer using this number
ihavenoidea
post Dec 16 2018, 10:58 PM

Regular
******
Senior Member
1,300 posts

Joined: Sep 2012
the person must have had link his bank info to paypal and had his paypal info hacked or something. you dont need tac if you are paying using paypal
party
post Dec 16 2018, 10:58 PM

Enthusiast
*****
Senior Member
813 posts

Joined: May 2013


QUOTE(Cookie101 @ Dec 16 2018, 10:52 PM)
Either their data is compromised by their own carelessness on website or data breach at seller side like the Starwood issue.

But many water fish just blame it on banks and make malicious fitnahs.

This shows the general public lack of common sense to determine the reliability of the information and knowledge of the basic issue.

#donedakwah
*
But seems only C*** is always being affected? I dun see other banks kena that much.
feiraron
post Dec 16 2018, 10:59 PM

Getting Started
**
Junior Member
236 posts

Joined: Nov 2009


most likely leak card info

but how do they get around the registration of card into paypal is another story, as far as i know, paypal charge you with a code number in the description, and you can only get that code via your statement. after input the code only can link.

QUOTE(ketaros @ Dec 16 2018, 10:52 PM)
one more thing is for the app...if u put your password and any numbers or letters after it....you would still be able to login...i've tried myself
*
its not that you can input any text after your pass, most people didnt realize this but before this cimb only can input 8 character as password, really dumb but i think since this month only they allow for more characters as password. made me scratched my head a bit when it happen, last2 i just input first 8 character then walla. all this while i thought it was capturing my full password even during regeistration doh.gif

This post has been edited by feiraron: Dec 16 2018, 11:01 PM
jimmyktp
post Dec 16 2018, 10:59 PM

Getting Started
**
Junior Member
244 posts

Joined: Jun 2006
From: the bolehland..


QUOTE(Shanks @ Dec 16 2018, 10:56 PM)
Called the call centre. They say the recaptcha is a recent enhancement and that it's indeed the original CIMBClicks page. Also checked about the phone number +603 6204 7788 which they say is legit.
*
Instead of recaptcha, they should follow what UK banks doing. 2FA. But problem is that could be too complicated for users to set up the first time. Recaptcha is to identify bots. What about real humans? I don't think recaptcha is relevant for a banking website.

I'm using HSBC UK's 2FA. Really powerful. But is a pain to set up for the first time.

This post has been edited by jimmyktp: Dec 16 2018, 11:00 PM

90 Pages < 1 2 3 4 > » Top
 

Change to:
| Lo-Fi Version
0.0151sec    0.43    6 queries    GZIP Disabled
Time is now: 10th December 2025 - 09:32 AM