LEGO Historian Posted June 7, 2012 Posted June 7, 2012 (edited) A good practice is different password for everything and nothing obvious like '12345' or your name. All of my password (BL, email account, paypal, ebay, etc) are different so if hacker got one of them, they only get one thing and not all of my stuff. If you need help making a random sonding password: you could start with this site http://www.pctools.com/guides/password I do keep all of my password on paper (index card) in a well concealed index box. Hackers can't reach through the computer to steal my password card box, and even if someone knew my home address, I live on a 40 acres farm and that's a lot of places to hide password files. Hey Wily.... (if that's you) the first Email I got today was about you... I thought uh-oh... what did my good buddy Wily do to deserve this? Then I saw all the merges into JohnP's account and I knew something was amiss... JohnP, Ash_274 and TracyD just don't mix socially.... Hope it all gets sorted out.... Edited June 7, 2012 by LEGO Historian Quote
1980-Something-Space-Guy Posted June 7, 2012 Posted June 7, 2012 (edited) I've been wanting to order some series 7 figs for a while, but I feel unsafe with all this breach. Has anybody got any advice as to how much I should wait? Edited June 7, 2012 by johnnyvgoode Quote
Lego Otaku Posted June 7, 2012 Author Posted June 7, 2012 Hey Wily.... the first Email I got today was about you... I thought uh-oh... what did my good buddy Wily do to deserve this? Then I saw all the merges into JohnP's account and I knew something was amiss... JohnP, Ash_274 and TracyD just don't mix socially.... Hope it all gets sorted out.... Rolling back to noon sorted out the mess as it was hard to un-merge accounts. And BL is back up but the password function has been changed a bit, the remember feature has been disabled and you'll be auto-logged off after a period of inactivity. I've been wanting to order some series 7 figs for a while, but I feel unsafe with all this breach. Has anybody got any advice as to how much I should wait? You'll be fine. The hacker affects the seller more by making it hard for them to do any business while the site's down. Quote
LEGO Historian Posted June 7, 2012 Posted June 7, 2012 I've been wanting to order some series 7 figs for a while, but I feel unsafe with all this breach. Has anybody got any advice as to how much I should wait? You're not giving Bricklink any more information about yourself than they already have about you. Paypal is secure, and your payment sent from there doesn't go to Bricklink... but directly to the sellers Paypal account, and an EMAIL gets sent to the sellers Email ID. So once BL is back up and running, I wouldn't worry about it. Quote
1980-Something-Space-Guy Posted June 7, 2012 Posted June 7, 2012 You'll be fine. The hacker affects the seller more by making it hard for them to do any business while the site's down. OK, thanks. Quote
Larrynautik Posted June 8, 2012 Posted June 8, 2012 You're not giving Bricklink any more information about yourself than they already have about you. Paypal is secure, and your payment sent from there doesn't go to Bricklink... but directly to the sellers Paypal account, and an EMAIL gets sent to the sellers Email ID. So once BL is back up and running, I wouldn't worry about it. You're right, we must precise that the Bricklink system and the Paypal payment system are totally separated. When you receive a Bricklink Invoice in your mail box, you use Paypal to deliver the money to the seller, and the seller receive this money on its Paypal account. Paypal is not concerned by this attack. The only problem would happen if you get the same password on Bricklink and Paypal accounts. The hackers could have taken the Bricklink password and try it with your e-mail address on Paypal. Change Bricklink and Paypal passwords and everything will be okay. You should also change your e-mail box password if it is the same as the Paypal or the Bricklink one. The three passwords must be different and, most of all, complicated. But, of course, if a hacker found the way to modify the content of the Invoice and puts its Paypal address... he will get your money, instead of the seller. Quote
just2good Posted March 10, 2013 Posted March 10, 2013 Supposedly Bricklink was hacked again today. Does anyone have any information about it? Quote
Spider-Man Posted March 10, 2013 Posted March 10, 2013 Where did you hear this from? I sure hope it doesn't effect the orders I just placed! Quote
just2good Posted March 10, 2013 Posted March 10, 2013 Where did you hear this from? I sure hope it doesn't effect the orders I just placed! I heard it from the Brickset forum. I would definitely change my password if I were you... Quote
Spider-Man Posted March 10, 2013 Posted March 10, 2013 Just changed it! Hopefully it isn't anything serious. Bricklink is definitely in need of a face lift and could certainly use some enhanced security... Quote
Good Cragger Fan Posted March 11, 2013 Posted March 11, 2013 (edited) This is one of the reasons why I do not like to order anything from Bricklink, if I do not absolutely have to do so in order to get certain LEGO parts and/or sets that I want and/or need in my collection at a affordable price. Edited March 13, 2013 by Good Cragger Fan Quote
SteampunkDoc Posted March 11, 2013 Posted March 11, 2013 (edited) Hmm, I was straying to the cautious side and tried to change my password, but got this message: A bunch of now irrelevant code. So.....Help? Seems I am one of the victims, sadly enough, but thankfully other than the password issue there doesn't seem to be any damage. I asked this on the BL forums, but was also wondering if any of ya'll could help. EDIT: Turns out that was done by the admin to prevent the hacker from changing everybody's passwords. And they're working on getting everything back up, so no more worries. And if you haven't already, I HIGHLY recommend following just2good's advice about changing your password. Due to the above, you can't change your passwords anymore, but everything should be fixed soon. (Thanks by the way, had you not said that, I never would have found out about this.) Edited March 11, 2013 by SteampunkDoc Quote
Mr_Malfoy Posted March 11, 2013 Posted March 11, 2013 Is Bricklink still hacked? I was planning to order a Nick Fury minifig on there for my Avengers, but if it's hacked, I definitely don't want to... Quote
just2good Posted March 11, 2013 Posted March 11, 2013 Is Bricklink still hacked? I was planning to order a Nick Fury minifig on there for my Avengers, but if it's hacked, I definitely don't want to... As 'SteampunkDoc' said, the people at Bricklink are sorting everything out, so I would wait a day or two. Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.