Jeff Cutler's Keys to Security

May 22 2014   2:22PM GMT

eBay – Now Auctioning Off Your Data

Jeff Cutler Jeff Cutler Profile: Jeff Cutler

Tags:
Data breach
Data security standards
Ebay
Password and ID management

OK, that headline was a bit inflammatory…but it’s true. Any site worth its salt has been selling customer data for ages and making a pretty good living doing so. EBay is no different, except now the practice takes on a new twist with the recent data breach of their servers.

Screen Shot 2014-05-22 at 10.12.32 AM

A few days ago, information on the 145Million eBay users was compromised leaving account information vulnerable. What’s that mean for you? Someone might list something and use your account. Someone might use your account to buy something and then ship it elsewhere.

Or those same someones could actually take your sign-in data and use it to breach other accounts including banking and credit card services.

According to a Mashable article,

“The breach, which was confirmed by investigators this week, happened in late February and early March; eBay discovered it in early May. It seems hackers used an internal eBay corporate account to spy on usernames, email addresses, physical addresses, phone numbers and dates of birth.”

So, the fear that your account is doomed is probably a little overstated. In fact, the password data on accounts was encrypted, keeping it safe – especially if you use the same password on multiple services beyond eBay. But hackers could use the other info to try and compromise other accounts.

One huge thing that worries me is that this event happened in FEBRUARY and we’re just hearing about it now. Isn’t there something that should hold organizations accountable to reporting this information sooner?

For now, your best steps are to reset your password and tighten up your security questions and pins. That should keep you safe and ready to buy some overpriced merchandise from the other sellers on eBay.

Until next week, keep your data and your passwords a secret!

 Comment on this Post

 
There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when other members comment.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to: