The Breitling Watch Source Forums

Breitling Watch Information Forums, Navitimer, Chronomat
It is currently Sun Jun 16, 2024 9:10 am

All times are UTC - 8 hours




Post new topic Reply to topic  [ 15 posts ] 
Author Message
 Post subject: Ebay Fraud
PostPosted: Sat Feb 11, 2012 5:32 pm 
Offline
Breitling Enthusiast
Breitling Enthusiast
User avatar

Joined: Tue Jan 03, 2012 12:13 pm
Posts: 98
Likes: 0 post
Liked in: 0 post
Location: Luxembourg
Hi all,

I discovered an interesting Ebay fraud today. Check out auction number 220952042307 for a Rolex Deepsea. When the auction loads, the website loads again after about one second and displays a faked Ebay page. Firstly, the Ebay ID of the seller changes from 'ncw-s' to 'now-s', the script also adds a fake 'Buy it now' button (in German 'Sofort Kaufen') and it also removes some stuff from the page. Some of the links have been manipulated, too (try clicking on the seller's name or sales credits). When clicking on the 'Sofort Kaufen' button, it opens a new pop-up asking for contact details as the seller needs to approve bidders (how stupid is that suggestion?).

The script is started by an embedded code in the article description area, it refers to an external website (http://dayvan.org/de/rolex/grupfpzzoq4w ... 0631725043), the code is even documented. I only have limited programming knowledge, but thanks to the documentation I would probably be able to adjust the script to anothe auction.

I have never seen anything like this before, this opens a whole new world of possibilities for fraudsters - when you think you are on Ebay you might actually be somewhere else. Imagine the possibilities to defraud innocent shoppers: if I were the fraudster I wouldn't ask shoppers to register their email for a bid-approval but would try to get my hands on their paypal passwords.

I have notified Ebay through the online chat, but the customer rep wasn't too impressed and thought their specialists would look at the auction within the next 24 to 48 hours. Great. I have also contacted the account owner (who I think is not involved, probably victim of phishing) and he has stopped the auction. So what you see now is the stopped auction, but the script is still active.

Scary, isn't it?

Raffe


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Sat Feb 11, 2012 10:31 pm 
Offline
Breitling Enthusiast
Breitling Enthusiast

Joined: Mon Jan 30, 2012 12:51 pm
Posts: 21
Likes: 0 post
Liked in: 0 post
Wow very interesting. Scary indeed. Nice find. Can never be too cautios about sellers on the bay


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Sun Feb 12, 2012 5:17 am 
Offline
Breitling Connoisseur
Breitling Connoisseur

Joined: Mon Dec 19, 2011 2:11 pm
Posts: 615
Likes: 0 post
Liked in: 0 post
Location: U.S.A.
spicymango wrote:
Wow very interesting. Scary indeed. Nice find. Can never be too cautios about sellers on the bay

This is why I have only bought once from E-bay.
Too scary...Too many crooks on there :shock: IMO

_________________
"In the end there can be but one"


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Sun Feb 12, 2012 9:17 am 
Offline
Cult of Breitling Leader
Cult of Breitling Leader
User avatar

Joined: Wed Feb 10, 2010 7:38 am
Posts: 3169
Likes: 10 posts
Liked in: 4 posts
Location: La Tour-de-Peilz, Switzerland
Twotone540 wrote:
This is why I have only bought once from E-bay.
Too scary...Too many crooks on there :shock: IMO


Totally with you on this one.

Never use it for important amounts.

_________________
Image

- This is Ghost Rider requesting a fly-by. - Negative Ghost Rider. The pattern is full.


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 1:58 am 
Offline
All Roads lead to Breitling
All Roads lead to Breitling
User avatar

Joined: Thu Aug 09, 2007 8:23 am
Posts: 9766
Likes: 0 post
Liked in: 1 post
Location: Republik of Mancunia, UK
Listing has gone now.

It's frightening how casual the reaction of eBay was.

_________________
Image
For more information on identifying Breitling replicas, please visit my web site
http://f4buz.com/watches/breitling/fakes/fakes.html


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 2:29 am 
Offline
Breitling Enthusiast
Breitling Enthusiast
User avatar

Joined: Tue Jan 03, 2012 12:13 pm
Posts: 98
Likes: 0 post
Liked in: 0 post
Location: Luxembourg
I spoke to an Internet security expert over the weekend. They have alerted Ebay to a similar security loophole already in 2008 and as of today it is still unresolved. See the details here: http://www.falle-internet.de/de/html/pr_exme_engl.php


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 4:51 am 
Offline
Cult of Breitling Leader
Cult of Breitling Leader
User avatar

Joined: Wed Feb 10, 2010 7:38 am
Posts: 3169
Likes: 10 posts
Liked in: 4 posts
Location: La Tour-de-Peilz, Switzerland
Sharkmouth wrote:
Listing has gone now.

It's frightening how casual the reaction of eBay was.


What did you expect Sharkie? Resolving a serious issue like this takes time. And, of course, money. :evil:


Sent from my Galaxy SII using Tapatalk

_________________
Image

- This is Ghost Rider requesting a fly-by. - Negative Ghost Rider. The pattern is full.


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 11:16 am 
Offline
Breitling Connoisseur
Breitling Connoisseur
User avatar

Joined: Sat Dec 17, 2011 11:10 am
Posts: 646
Likes: 0 post
Liked in: 0 post
Location: Chicago area - KUGN
I can't try it, since it's gone now, but I'm curious if it would have worked with Firefox and NoScript, which I use, to prevent just this sort of thing.


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 11:25 am 
Offline
Breitling Enthusiast
Breitling Enthusiast
User avatar

Joined: Tue Jan 03, 2012 12:13 pm
Posts: 98
Likes: 0 post
Liked in: 0 post
Location: Luxembourg
I tried with several browsers, and they all fell for it. NoScript did work to block it, just as ScriptNot for Chrome, but then you are lacking a lot of functionality on Ebay (e.g. the photo viewer, which runs on Java).


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 11:37 am 
Offline
Breitling Connoisseur
Breitling Connoisseur
User avatar

Joined: Sat Dec 17, 2011 11:10 am
Posts: 646
Likes: 0 post
Liked in: 0 post
Location: Chicago area - KUGN
But with NoScript you can selectively enable by domain. Wouldn't that take care of it?


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 11:42 am 
Offline
Breitling Enthusiast
Breitling Enthusiast
User avatar

Joined: Tue Jan 03, 2012 12:13 pm
Posts: 98
Likes: 0 post
Liked in: 0 post
Location: Luxembourg
Sure. I have been using it now for two days with Ebay set to "no scripts". However, I cannot browse through photos anymore unless the seller has them in the item description (via photobucket or similar). The small Ebay gallery doesn't work anymore. I am also not able to bookmark items for my watchlist as that button is Java, too. Haven't tried to bid on an item, but wouldn't be surprised if that required Java as well.

So I don't think its a great alternative to just disable scripts. We just need to be VERY careful...


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 11:48 am 
Offline
Cult of Breitling Leader
Cult of Breitling Leader
User avatar

Joined: Wed Feb 10, 2010 7:38 am
Posts: 3169
Likes: 10 posts
Liked in: 4 posts
Location: La Tour-de-Peilz, Switzerland
Raffe wrote:
So I don't think its a great alternative to just disable scripts. We just need to be VERY careful...


:yeahthat

+1

_________________
Image

- This is Ghost Rider requesting a fly-by. - Negative Ghost Rider. The pattern is full.


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 12:00 pm 
Offline
Breitling Connoisseur
Breitling Connoisseur
User avatar

Joined: Sat Dec 17, 2011 11:10 am
Posts: 646
Likes: 0 post
Liked in: 0 post
Location: Chicago area - KUGN
Raffe wrote:
Sure. I have been using it now for two days with Ebay set to "no scripts". However, I cannot browse through photos anymore unless the seller has them in the item description (via photobucket or similar). The small Ebay gallery doesn't work anymore. I am also not able to bookmark items for my watchlist as that button is Java, too. Haven't tried to bid on an item, but wouldn't be surprised if that required Java as well.

So I don't think its a great alternative to just disable scripts. We just need to be VERY careful...

I believe the domains I enabled were ebay.com, ebaystatic.com and ebayrtm.com, and I use the photos normally, both with and without the window for enlarged pictures, and add items to my watch list often. Other domains should be blocked.


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 12:04 pm 
Offline
Breitling Enthusiast
Breitling Enthusiast
User avatar

Joined: Tue Jan 03, 2012 12:13 pm
Posts: 98
Likes: 0 post
Liked in: 0 post
Location: Luxembourg
Sure. But the script was on Ebay's server, so it would execute neatly with your configuration...


Top
 Profile  
Reply with quote  
 Post subject: Re: Ebay Fraud
PostPosted: Mon Feb 13, 2012 12:20 pm 
Offline
Breitling Connoisseur
Breitling Connoisseur
User avatar

Joined: Sat Dec 17, 2011 11:10 am
Posts: 646
Likes: 0 post
Liked in: 0 post
Location: Chicago area - KUGN
Thanks. That's what I wanted to know.


Top
 Profile  
Reply with quote  

Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 15 posts ] 

All times are UTC - 8 hours


Who is online

Users browsing this forum: No registered users and 18 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
 




Powered by phpBB® Forum Software © phpBB Group