happyjaypee
addict
Reged: 09/07/02
Posts: 663
Loc: Stacking off whit one pair
|
|
Phew, that was a close one...
This morning, I was in class from 8am to 11am. I played a short session during the diner break, ended it at noon. After that I had class up to 3pm, worked on some things until 4pm and then decided to take a break and play two turbo SnG.
I open FTP and click login... (I have "save my password" on)
I get an "invalid password" prompt...
I try typing it a couple time and realise what is going on. I immediatly e-mail FTPsecurity to let them know my password has been remotly changed and ask them to lock my account.
2min later : I get this e-mail :
Quote:
>>From: Full Tilt Poker - Security <security@fulltiltpoker.com> >>To: XXXXXXXXXXXXXXX <XXXXXXXXXXXXXXX> >>Subject: Re: URGENT ACCOUNT HACKED!!!! (XXXXXXXXXXXXXXXXXXX) >>Date: Fri, 30 Nov 2007 13:09:32 -0800 (PST) >> >>Hello XXXXXXXXXXX, >> >>This message is to confirm that your account, "XXXXXXXXXX", has been >>suspended as per your request. >> >>We are currently investigating this issue and will respond to you >>shortly. >> >>Regards, >> >>Heather >>Security and Fraud >>Full Tilt Poker
I followed with a more torought e-mail telling them when I last logged in (basically the stuff at the top of this post) and my account balance this morning.
40min later :
Quote:
From: "Full Tilt Poker - Security" <security@fulltiltpoker.com> To: "XXXXXXXXXXXX" <XXXXXXXXXXXXXXXXXX> Sent: Friday, November 30, 2007 4:56 PM Subject: Re: URGENT ACCOUNT HACKED!!!! (XXXXXXXXXXXXXXXXXXXXX)
> Hello XXXXXXXXXXXXXXX, > > Thanks for your reply and patience while we looked into this matter. > > We regret to inform you that your account does show evidence of a > 'foreign login', which occurred on a computer you have not utilized in > the past approximately two hours after you last logged in. However, I'm > happy to let you know that your account balance stands at $XXXXXX. > Aside from the password change, no tampering occurred (email address > changes, mailing address change, table or tournament play, etc). > > For security measures, we have suspended the basic functionality (play, > chat, transfer, deposit) of the account at this time.
(rest of e-mail is security tips)
Can't expres how relived I was to read this. I was very happy with the quick response to my mail action taken.
FTP rules!
-Happy
|
RollinHand
veteran
Reged: 08/10/05
Posts: 1216
Loc: America, Land of the..OH WAIT!
|
|
LOL! You run good dude!
|
happyjaypee
addict
Reged: 09/07/02
Posts: 663
Loc: Stacking off whit one pair
|
|
Quote:
LOL! You run good dude!
Ironicaly, I did'nt this month. Guess it even out heh!
|
LeapFrog
old hand
Reged: 10/16/06
Posts: 1173
Loc: Mystery time!
|
|
Any ideas as to how your security was compromised?
|
Jzo19
old hand
Reged: 02/24/07
Posts: 828
|
|
Quote:
Any ideas as to how your security was compromised?
|
happyjaypee
addict
Reged: 09/07/02
Posts: 663
Loc: Stacking off whit one pair
|
|
Quote:
Any ideas as to how your security was compromised?
Actually no...
I have an up-to-date version of windowsXP, an up-to-date anti-virus, I run on a regular basis 4 deifferent anti-spyware software (spy-bot, ad-aware, AVG, SUPERAntiSpyware) and I always have an anti-keylogger soft running...
I study in computer technologie so I'm an above average user. I can garantie you my comp is safe... Maybe this one was so new that the virus/spyware/keylogger deffinitions were not up to date...
|
Yoshi63
addict
Reged: 01/27/07
Posts: 668
|
|
Kinda makes FTP's software look bad, but still - props to FTP's security staff?
|
pattay
old hand
Reged: 12/23/06
Posts: 781
Loc: owned by all except too eazy
|
|
this is a level imo
|
LeapFrog
old hand
Reged: 10/16/06
Posts: 1173
Loc: Mystery time!
|
|
Quote:
Actually no...
I have an up-to-date version of windowsXP, an up-to-date anti-virus, I run on a regular basis 4 deifferent anti-spyware software (spy-bot, ad-aware, AVG, SUPERAntiSpyware) and I always have an anti-keylogger soft running...
I study in computer technologie so I'm an above average user. I can garantie you my comp is safe... Maybe this one was so new that the virus/spyware/keylogger deffinitions were not up to date...
If you haven't been using another computer to login to FTP, then barring some funky inside job (extremely unlikely, I assume pwds are 1 way encrypted, etc), or funky man in the middle attack (or something of that nature, also extremely unlikely), the breech is on your end. I would certainly recommend a reformat.
|
Alobar
Carpal \'T-shirt
Reged: 11/05/03
Posts: 17702
Loc: spite shoving minraises
|
|
heh, your account prolly stays locked for like a month now
|