Posted: 12/31/2024 10:45:51 PM EDT
|
Anyone happen to know how legit Veridian's online banking is? I was doing my online banking there for years but someone got in and compromised my account twice in two years. The second time I got a call from Veridian the idiot said she didn't know how the person got into my account and basically accused me of giving my PIN that Veridian texted me to a random retard on the street. Both times I took my computer to Best Buy to get it scanned for anything and nothing was found. I admit that I don't change my passwords for my email/FB/etc. regularly but I would like to know what the issue is with Veridian. |
|
Originally Posted By Urimaginaryfrnd: With Veridian I blocked all on line banking. I just go there and do what I have to in person with an ID . Nothing on the internet is secure. Thanks for confirming! My mom does do online banking but has had no issues which is weird. Seems "off" to me also that they (the CC) constantly "advertise" that there are scammers taking advantage of people. |
|
Originally Posted By Compass: Come bank at Greater Iowa Credit Union. We are secure. Unfortunately I live in BH County. I have plenty of hate for Veridian but I'd have to find something closer. I particularly hate the moron at the fraud department who accused me of giving my PIN to some random idiot on the street and that's why they got into my account. Then weeks later getting a letter in the mail saying that they increased my interest rate on my loan due to me not doing online banking. I get that I signed the contract for the loan on one hand but on the other what if it is them that has lax security? |
|
Originally Posted By JesB: Anyone happen to know how legit Veridian's online banking is? I was doing my online banking there for years but someone got in and compromised my account twice in two years. The second time I got a call from Veridian the idiot said she didn't know how the person got into my account and basically accused me of giving my PIN that Veridian texted me to a random retard on the street. Both times I took my computer to Best Buy to get it scanned for anything and nothing was found. I admit that I don't change my passwords for my email/FB/etc. regularly but I would like to know what the issue is with Veridian. Veridian's security is as good as any other bank. problem is the customers that use it. the vast majority of users do not have a secure password policy, hence most just use the same password EVERYWHERE and never change it. then some chinese hacker breaks into an unrelated website like your doctor's office and gets your email and password you use for all your websites. I deal with customer compromised accounts weekly, most have the same problem. the same weak password used on all their websites or a virus/malware. Get a good password manager for your web browser and use unique passwords for each website you use. passwords need to be random, at least 16 digits, including letters, numbers, and characters. Turn on Two Factor Authentication (2FA) on all websites that support it. Goto to haveibeenpwned.com and enter in all email addresses you use. I would bet you are on multiple breeches. |
|
Originally Posted By IAShooters: Veridian's security is as good as any other bank. problem is the customers that use it. the vast majority of users do not have a secure password policy, hence most just use the same password EVERYWHERE and never change it. then some chinese hacker breaks into an unrelated website like your doctor's office and gets your email and password you use for all your websites. I deal with customer compromised accounts weekly, most have the same problem. the same weak password used on all their websites or a virus/malware. Get a good password manager for your web browser and use unique passwords for each website you use. passwords need to be random, at least 16 digits, including letters, numbers, and characters. Turn on Two Factor Authentication (2FA) on all websites that support it. Goto to haveibeenpwned.com and enter in all email addresses you use. I would bet you are on multiple breeches. First time I don't think I had 2FA. Second time I'm pretty sure I did and they still got in. I changed my password after the first time and still got in. After they got in both times I took my computer to Best Buy and nothing was found by their scanning for issues. My peabrain is still baffled. |
|
Originally Posted By JesB: First time I don't think I had 2FA. Second time I'm pretty sure I did and they still got in. I changed my password after the first time and still got in. After they got in both times I took my computer to Best Buy and nothing was found by their scanning for issues. My peabrain is still baffled. I'm curious what haveibeenpwned.com had to say about your email address. did you check that? |
|
Originally Posted By IAShooters: I'm curious what haveibeenpwned.com had to say about your email address. did you check that? I've since changed my password on my aol account and added 2FA since the second time someone got in. |
|
Originally Posted By JesB: I've since changed my password on my aol account and added 2FA since the second time someone got in. JesB, The "have i been pwned" website will give you a list of all the data breaches your email/password has been compromised in. this is why you must use unique passwords on each website you register on. The hackers didn't hack your password, they hacked the website and stole ALL the email/passwords for everyone. or you may come up clean. EXAMPLE: Breaches you were pwned in A "breach" is an incident where data has been unintentionally exposed to the public. Nitro logo Nitro: In September 2020, the Nitro PDF service suffered a massive data breach which exposed over 70 million unique email addresses. The breach also exposed names, bcrypt password hashes and the titles of converted documents. The data was provided to HIBP by dehashed.com. Compromised data: Email addresses, Names, Passwords Advance Auto Parts logo Advance Auto Parts: In June 2024, Advance Auto Parts confirmed they had suffered a data breach which was posted for sale to a popular hacking forum. Linked to unauthorised access to Snowflake cloud services, the breach exposed a large number of records related to both customers and employees. In total, 79M unique email addresses were included in the breach, alongside names, phone numbers, addresses and further data attributes related to company employees. Compromised data: Email addresses, Names, Phone numbers, Physical addresses Operation Endgame logo Operation Endgame: In May 2024, a coalition of international law enforcement agencies took down a series of botnets in a campaign they coined "Operation Endgame". Data seized in the operation included impacted email addresses and passwords which were provided to HIBP to help victims learn of their exposure. Compromised data: Email addresses, Passwords Onliner Spambot logo Onliner Spambot (spam list): In August 2017, a spambot by the name of Onliner Spambot was identified by security researcher Benkow moʞuƎq. The malicious software contained a server-based component located on an IP address in the Netherlands which exposed a large number of files containing personal information. In total, there were 711 million unique email addresses, many of which were also accompanied by corresponding passwords. A full write-up on what data was found is in the blog post titled Inside the Massive 711 Million Record Onliner Spambot Dump. Compromised data: Email addresses, Passwords Zynga logo Zynga: In September 2019, game developer Zynga (the creator of Words with Friends) suffered a data breach. The incident exposed 173M unique email addresses alongside usernames and passwords stored as salted SHA-1 hashes. The data was provided to HIBP by dehashed.com. Compromised data: Email addresses, Passwords, Phone numbers, Usernames Utah Gun Exchange logo Utah Gun Exchange: In July 2020, the Utah Gun Exchange website suffered a data breach which included several other associated websites. In total, 235k unique email addresses were exposed before being traded online alongside names, usernames, genders, IP addresses and password hashes. The data was provided to HIBP by breachbase.pw. Compromised data: Email addresses, Genders, IP addresses, Passwords, Usernames Cit0day logo Cit0day (unverified): In November 2020, a collection of more than 23,000 allegedly breached websites known as Cit0day were made available for download on several hacking forums. The data consisted of 226M unique email address alongside password pairs, often represented as both password hashes and the cracked, plain text versions. Independent verification of the data established it contains many legitimate, previously undisclosed breaches. The data was provided to HIBP by dehashed.com. Compromised data: Email addresses, Passwords Luxottica logo Luxottica: In March 2021, the world's largest eyewear company Luxoticca suffered a data breach via one of their partners that exposed the personal information of more than 70M people. The data was subsequently sold via a popular hacking forum in late 2022 and included email and physical addresses, names, genders, dates of birth and phone numbers. In a statement from Luxottica, they advised they were aware of the incident and are currently "considering other notification obligations". Compromised data: Dates of birth, Email addresses, Genders, Names, Phone numbers, Physical addresses The Post Millennial logo The Post Millennial: In May 2024, the conservative news website The Post Millennial suffered a data breach. The breach resulted in the defacement of the website and links posted to 3 different corpuses of data including hundreds of writers and editors (IP, physical address and email exposed), tens of thousands of subscribers to the site (name, email, username, phone and plain text password exposed), and tens of millions of email addresses from thousands of mailing lists alleged to have been used by The Post Millennial (this has not been independently verified). The mailing lists appear to be sourced from various campaigns not necessarily run by The Post Millennial and contain a variety of different personal attributes including name, phone and physical address (depending on the campaign). The data was subsequently posted to a popular hacking forum and extensively torrented. Compromised data: Email addresses, Genders, IP addresses, Names, Passwords, Phone numbers, Physical addresses, Usernames HuntStand logo HuntStand: In March 2024, millions of records scraped from the hunting and land management service HuntStand were publicly posted to a popular hacking forum. The data included 2.8M unique email addresses with many records also containing name, date of birth and country. Compromised data: Dates of birth, Email addresses, Geographic locations, Names |
|
Originally Posted By IAShooters: JesB, The "have i been pwned" website will give you a list of all the data breaches your email/password has been compromised in. this is why you must use unique passwords on each website you register on. The hackers didn't hack your password, they hacked the website and stole ALL the email/passwords for everyone. or you may come up clean. EXAMPLE: Breaches you were pwned in A "breach" is an incident where data has been unintentionally exposed to the public. Nitro logo Nitro: In September 2020, the Nitro PDF service suffered a massive data breach which exposed over 70 million unique email addresses. The breach also exposed names, bcrypt password hashes and the titles of converted documents. The data was provided to HIBP by dehashed.com. Compromised data: Email addresses, Names, Passwords Advance Auto Parts logo Advance Auto Parts: In June 2024, Advance Auto Parts confirmed they had suffered a data breach which was posted for sale to a popular hacking forum. Linked to unauthorised access to Snowflake cloud services, the breach exposed a large number of records related to both customers and employees. In total, 79M unique email addresses were included in the breach, alongside names, phone numbers, addresses and further data attributes related to company employees. Compromised data: Email addresses, Names, Phone numbers, Physical addresses Operation Endgame logo Operation Endgame: In May 2024, a coalition of international law enforcement agencies took down a series of botnets in a campaign they coined "Operation Endgame". Data seized in the operation included impacted email addresses and passwords which were provided to HIBP to help victims learn of their exposure. Compromised data: Email addresses, Passwords Onliner Spambot logo Onliner Spambot (spam list): In August 2017, a spambot by the name of Onliner Spambot was identified by security researcher Benkow moʞuƎq. The malicious software contained a server-based component located on an IP address in the Netherlands which exposed a large number of files containing personal information. In total, there were 711 million unique email addresses, many of which were also accompanied by corresponding passwords. A full write-up on what data was found is in the blog post titled Inside the Massive 711 Million Record Onliner Spambot Dump. Compromised data: Email addresses, Passwords Zynga logo Zynga: In September 2019, game developer Zynga (the creator of Words with Friends) suffered a data breach. The incident exposed 173M unique email addresses alongside usernames and passwords stored as salted SHA-1 hashes. The data was provided to HIBP by dehashed.com. Compromised data: Email addresses, Passwords, Phone numbers, Usernames Utah Gun Exchange logo Utah Gun Exchange: In July 2020, the Utah Gun Exchange website suffered a data breach which included several other associated websites. In total, 235k unique email addresses were exposed before being traded online alongside names, usernames, genders, IP addresses and password hashes. The data was provided to HIBP by breachbase.pw. Compromised data: Email addresses, Genders, IP addresses, Passwords, Usernames Cit0day logo Cit0day (unverified): In November 2020, a collection of more than 23,000 allegedly breached websites known as Cit0day were made available for download on several hacking forums. The data consisted of 226M unique email address alongside password pairs, often represented as both password hashes and the cracked, plain text versions. Independent verification of the data established it contains many legitimate, previously undisclosed breaches. The data was provided to HIBP by dehashed.com. Compromised data: Email addresses, Passwords Luxottica logo Luxottica: In March 2021, the world's largest eyewear company Luxoticca suffered a data breach via one of their partners that exposed the personal information of more than 70M people. The data was subsequently sold via a popular hacking forum in late 2022 and included email and physical addresses, names, genders, dates of birth and phone numbers. In a statement from Luxottica, they advised they were aware of the incident and are currently "considering other notification obligations". Compromised data: Dates of birth, Email addresses, Genders, Names, Phone numbers, Physical addresses The Post Millennial logo The Post Millennial: In May 2024, the conservative news website The Post Millennial suffered a data breach. The breach resulted in the defacement of the website and links posted to 3 different corpuses of data including hundreds of writers and editors (IP, physical address and email exposed), tens of thousands of subscribers to the site (name, email, username, phone and plain text password exposed), and tens of millions of email addresses from thousands of mailing lists alleged to have been used by The Post Millennial (this has not been independently verified). The mailing lists appear to be sourced from various campaigns not necessarily run by The Post Millennial and contain a variety of different personal attributes including name, phone and physical address (depending on the campaign). The data was subsequently posted to a popular hacking forum and extensively torrented. Compromised data: Email addresses, Genders, IP addresses, Names, Passwords, Phone numbers, Physical addresses, Usernames HuntStand logo HuntStand: In March 2024, millions of records scraped from the hunting and land management service HuntStand were publicly posted to a popular hacking forum. The data included 2.8M unique email addresses with many records also containing name, date of birth and country. Compromised data: Dates of birth, Email addresses, Geographic locations, Names I did check that www and I have since got off and erased my account from LinkedIn. The other websites they got my info off of I've never heard of. I've since changed my passwords on my email and all two forums I'm on and gotten off online banking. At the time I was using an old (20+ year old computer) and Norton/MalWare Bytes. Still the same email. New computer with Win 11. I'm assuming I am "safer" now? |
|
Originally Posted By JesB: I did check that www and I have since got off and erased my account from LinkedIn. The other websites they got my info off of I've never heard of. I've since changed my passwords on my email and all two forums I'm on and gotten off online banking. At the time I was using an old (20+ year old computer) and Norton/MalWare Bytes. Still the same email. New computer with Win 11. I'm assuming I am "safer" now? you have to be ever vigilant. Now with AI the scammers/criminals are getting even more vigilant. |