Topic: Got Hacked...

So, I got hacked over the weekend.

To be more precise, I got hacked on Thursday, the 16th.

I think I know how it happened, but not who. I made a payment to my electricity company over an open wifi network. Yeah, I know whomever reads this is saying, "you dumb-$%#," but I got lazy, arrogant, and it was the last day before I incurred late fees, etc.

Within two hours, two additional purchases had been made on-line with my credit card information; both under $100.00, I assume so as not to set off any major alarm bells. My bank noted it anyway, because the vendors were unusual for me. The account was frozen, and new cards will be issued. I didn't lose anything, but that's to the credit of Bank of America's watch-dogs, not my efforts.

So, first, talk with your financial institution about how to protect yourself. Money is how these people make their living, and if you're broke, they lose their livelihood. They run Windows, and Excel, and if you bring up the command-line, they ask, "what? Like DOS?" But, they know what they know. Unless you have the same skill-set...

Second, set-up a limited account (debit-card, whatever) for the everyday, mundane on-line transactions, so that if you are compromised, the bad guys get the laundry-money, and not your retirement fund.

Third, like your older brother with a hang-over - telling you never to drink when you're twelve, I'm hoping that you'll learn from my bad example. I got over-confident because I use Linux. I'm pretty confident that if someone tried to hack into my laptop directly, they'd have a tough time of it. What happens over an open wifi network, once the data leaves my machine...

Right. I'm going to post this to #! and LinuxMint forums, and ignore the slings and arrows that will result. Anyone who wants to copy and re-post it somewhere else, please feel free to do so. If my mistake can help some else from getting burned, I'm okay with that.

-jim

Death and I have a working relationship.
Anyone touches my coffee I send him some business.  Sector11

My attempt at a blog; http://jims2011.blogspot.com/

Re: Got Hacked...

If what you are assuming is the case, you didn't get hacked, your signal got intercepted and decoded, which is a rather different thing.

I would like to point out though, based on the information given you can't really say beyond a shadow of a doubt what happened, as correlation does not equal causality. Unless you had access to all the variables in the situation, which is highly improbable then there is no way to be sure how someone got your credit card number, for all you know someone at the electric company might be hacking their excel sheets that keep track of payments to get your credit card (never underestimate disgruntled or just greedy employees). I am not denying the dangers of using open wi-fi merely stating that it is very hard to accurately know why the situation happened as it did.

In any case BOA likes to freeze accounts and flag things all the time, I am not sure if I like or dislike these policies, as they have only caused me to have to call the bank when I am on vacation as they always flag transactions that are far from home.

Last edited by Val_B (2010-09-23 19:49:56)

Re: Got Hacked...

You're right, there are a lot of variables that I can't account for in this scenario.

I'm feeling a bit burned, and I kind of think I brought it on myself because I see people come in with malware-ridden machines day in and day out, and I think it gave me a false sense of security that didn't extend beyond the inner working of my machine.

Of course, if BOA made me call in to unfreeze an account while I was on vacation, they wouldn't be on my friend's list either.

Death and I have a working relationship.
Anyone touches my coffee I send him some business.  Sector11

My attempt at a blog; http://jims2011.blogspot.com/