Forum Moderators: open

Message Too Old, No Replies

EBay Listings Compromised By Malicious Javascript

         

engine

3:44 pm on Sep 17, 2014 (gmt 0)

WebmasterWorld Administrator 10+ Year Member Top Contributors Of The Month



I find it quite surprising that a site and company with the resources of ebay didn't have some kind of checking process into this type of attack.

EBay has been compromised so that people who clicked on some of its links were automatically diverted to a site designed to steal their credentials.

The spoof site had been set up to look like the online marketplace's welcome page.

The US firm was alerted to the hack on Wednesday night but removed the listings only after a follow-up call from the BBC more than 12 hours later.EBay Listings Compromised By Malicious Javascript [bbc.co.uk]

martinibuster

5:58 pm on Sep 17, 2014 (gmt 0)

WebmasterWorld Administrator 10+ Year Member Top Contributors Of The Month



eBay has a long history of poor coding practices. One of my professors consulted for them to clean up their atrocious coding. Poor coding is not a habit with eBay, it's a tradition with them. Something like this happening doesn't come as a surprise.

engine

3:15 pm on Sep 19, 2014 (gmt 0)

WebmasterWorld Administrator 10+ Year Member Top Contributors Of The Month



According to an update on this, it seems the same problem has existed for many months. That doesn't inspire me with confidence in ebay.