QUOTE(mambangafro @ Dec 17 2018, 01:48 AM)
Boleh kut. Ni more like masalah login authorisation je for cimbclicks. Naik grab je bruh. Atau suruh si Wanni jadi mamat jeChat CIMB kena hack?
Chat CIMB kena hack?
|
|
Dec 17 2018, 01:50 AM
Return to original view | Post
#21
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
|
|
|
Dec 17 2018, 01:52 AM
Return to original view | Post
#22
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Dec 17 2018, 01:53 AM
Return to original view | Post
#23
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Dec 17 2018, 01:55 AM
Return to original view | Post
#24
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Dec 17 2018, 01:56 AM
Return to original view | Post
#25
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Dec 17 2018, 02:00 AM
Return to original view | Post
#26
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
Hmm. Just my guess. Maybe there are still a lot of ppl that didn’t change their password to cimb latest policy, a lot still on the 8 character password policy.
And recently a lot of brute force on user login. So they implement the captcha thing. Doing my best making up setoli. Lol |
|
|
|
|
|
Dec 17 2018, 02:07 AM
Return to original view | Post
#27
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
QUOTE(teehk_tee @ Dec 17 2018, 02:04 AM) Plus the sudden captcha implementation. I never see bank industry use captcha for ebanking before. LOL.It’s like, they know there are scripts trying to brute force. But captcha? Seriously? This post has been edited by briantwj: Dec 17 2018, 02:08 AM |
|
|
Dec 17 2018, 02:09 AM
Return to original view | Post
#28
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
Wasted 2 hours of sleep for this shit
|
|
|
Dec 17 2018, 02:17 AM
Return to original view | Post
#29
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Dec 17 2018, 02:19 AM
Return to original view | Post
#30
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
Headline tmr:
We have updated password policy and send notice. However users are still on old policy. Hence we implemented captcha as additional security measure. To those who are still using the old password policy. Please update to our new password policy. Thanks. Lol |
|
|
Dec 17 2018, 07:13 AM
Return to original view | Post
#31
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
Wadapak. I already reset my password B4 I sleep. Now.j login. It ask me to reset again????
Anyone facing same issue? |
|
|
Dec 17 2018, 08:33 AM
Return to original view | Post
#32
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
Feck.. mine acting weird. I reset my password y'day B4 I sleep. Now I login. It ask me to update password again. Hmm. Fishy.
|
|
|
Dec 17 2018, 09:19 AM
Return to original view | Post
#33
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
QUOTE(linkinstreet @ Dec 17 2018, 09:16 AM) Last night new password can be more than 8 chars + you need a special char too. A bit too late if you ask me tho They already announce new password policy earlier this year if I rmb correctly. Just they did not force all users to update. They just put an announcement in their website. So yg x update policy all kena this exploit. Those that have updated password prior to this, should not be affected. And guys. About those that keep asking if ur affected. If u have a cimbclicks account and is still on the old 8 character password policy, then yes, you are affected. |
|
|
|
|
|
Dec 17 2018, 10:39 AM
Return to original view | Post
#34
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
QUOTE(wilsonjay @ Dec 17 2018, 10:31 AM) but i saw the complaints, most of them complain that the transactions are done using debit card via paypal, so its their debit cards that's compromised not their accounts -__- coz ppl are adding things up. cause i kena that paypal thing before first is the recaptcha thing. Then it's the password 8 characters thing. Then the paypal direct debit things. Basically ppl are just stringing stuff together. lul. But still, using captcha on e-banking is just.... plain stupid. Shows how weak is their security. And the password thing, I do recall they have announcement with new password policy, but they just let users know, they didn do a hard reset, asking all users to reset. So it's partly their fault / users' fault. With the captcha thing deployed over the weekend, ppl just adding stuffs together. |
|
|
Dec 17 2018, 11:35 AM
Return to original view | Post
#35
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
QUOTE(se7en @ Dec 17 2018, 11:32 AM) 6. The time it takes to crack a 8 digit password is under 5 minutes. Throw in characters and it takes closer to an hour. The problem here is that CIMB doesn't block login failures. And instead of blocking login failures, they implement a reCaptcha. Stupid smart. Does this mean even at 3 failed login attempt, it will use the captcha and not block the account? |
|
|
Dec 17 2018, 11:43 AM
Return to original view | Post
#36
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Dec 17 2018, 01:31 PM
Return to original view | Post
#37
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
No wonder starting last month I start seeing ppl say, if ppl ask for u tac, don't give. Must be that time already got ppl exploiting. But they need the TAC to buy stuff or transfer. So they msg ppl to get TAC.
|
|
|
Dec 17 2018, 05:13 PM
Return to original view | Post
#38
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
transferred my funds to UK bank dah. lul
|
|
|
Dec 17 2018, 05:25 PM
Return to original view | Post
#39
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
|
|
|
Jan 2 2019, 04:13 PM
Return to original view | Post
#40
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
something wrong with their bizchannel today. just fyi.
anyone that runs business and using cimb as payroll got issue iinm. |
| Change to: | 0.0614sec
0.89
7 queries
GZIP Disabled
Time is now: 13th December 2025 - 09:22 AM |