Go Back   English Forum Switzerland > Living in Switzerland > Daily life
Reply
 
Thread Tools Display Modes
  #1  
Old 21.12.2015, 22:03
fatmanfilms's Avatar
Forum Legend
 
Join Date: Apr 2010
Location: Verbier
Posts: 13,777
Groaned at 209 Times in 181 Posts
Thanked 11,092 Times in 6,291 Posts
fatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond repute
Phishing mail warning

I have not used Ricardo for at least a year & recieved something to pay as a zip file.

I logged on & saw this warning mail, Ricardo must have been hacked as otherwise they would not have my address.


News
Liste der Mitteilungen
Betreff: Warnung vor Phishing-Mail vom 21.12.2015 : „Ihre Rechnung 92869384/ Ihre Zahlbar N52477136427 von 21.12.2015 21.12.2015 11:39
Liebes ricardo.ch-Mitglied

Seit kurzem versuchen Betrüger an Ihre Benutzerdaten zu gelangen. Falls Sie eine (oder mehrere) E-Mail-Nachricht(en) mit folgendem oder ähnlichem Inhalt erhalten haben, bitten wir Sie, diese Nachricht(en) sofort zu löschen. Öffnen Sie keinesfalls den Anhang, der eine Schadsoftware enthält:
************************************************** ************************************************** **************************************

xxx Ihre Rechnung 92869384 von 21.12.2015 xxx xxx Ihre Zahlbar N52477136427 von 21.12.2015 xxx ************************************************** ************************************************** **************************************

Phishing-Mails sind meist täuschend echt verfasst. Trotzdem können Sie relativ leicht erkennen, ob hinter dem E-Mail wirklich ricardo.ch oder ein Betrüger steckt.

Daran erkennen Sie, dass es sich um eine E-Mail von ricardo.ch handelt:

- ricardo.ch würde Sie NIE per E-Mail zur Bekanntgabe Ihrer Kreditkarteninformationen, Ihres Benutzernamens und/oder Passworts auffordern. Geben Sie Ihr Passwort nie jemandem bekannt!

- ricardo.ch spricht Sie in E-Mails immer mit Ihrem Vor- und Nachnamen an.

- Bei E-Mails von ricardo.ch finden Sie rechts oben immer auch Ihren Benutzernamen sowie Ihre Mitgliedsnummer!

Wir bedauern diese Umstände und danken Ihnen für Ihre Achtsamkeit und Ihr schnelles Handeln.

Freundliche Grüsse

Ihr ricardo.ch-Team
Reply With Quote
This user would like to thank fatmanfilms for this useful post:
  #2  
Old 21.12.2015, 22:43
Sbrinz's Avatar
Forum Legend
 
Join Date: Oct 2011
Location: Murten - Morat
Posts: 10,978
Groaned at 542 Times in 342 Posts
Thanked 10,579 Times in 5,411 Posts
Sbrinz has a reputation beyond reputeSbrinz has a reputation beyond reputeSbrinz has a reputation beyond reputeSbrinz has a reputation beyond reputeSbrinz has a reputation beyond reputeSbrinz has a reputation beyond repute
Re: Ricardo has been hacked

The message from Ricardo is about being careful, and there are phishing mails about, and of course they know all about your dealings.
Reply With Quote
  #3  
Old 21.12.2015, 22:54
Principia Discordia's Avatar
Forum Veteran
 
Join Date: Sep 2006
Location: Züri Unterland
Posts: 1,060
Groaned at 69 Times in 41 Posts
Thanked 2,104 Times in 647 Posts
Principia Discordia has a reputation beyond reputePrincipia Discordia has a reputation beyond reputePrincipia Discordia has a reputation beyond reputePrincipia Discordia has a reputation beyond reputePrincipia Discordia has a reputation beyond reputePrincipia Discordia has a reputation beyond repute
Re: Ricardo has been hacked

They didn't get hacked, they're just warning you that there's a phishing scam going around and whoever is trying to access user data is sending an attachment...
Reply With Quote
  #4  
Old 21.12.2015, 22:58
fatmanfilms's Avatar
Forum Legend
 
Join Date: Apr 2010
Location: Verbier
Posts: 13,777
Groaned at 209 Times in 181 Posts
Thanked 11,092 Times in 6,291 Posts
fatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond repute
Re: Ricardo has been hacked

Quote:
View Post
They didn't get hacked, they're just warning you that there's a phishing scam going around and whoever is trying to access user data is sending an attachment...
I received the fishing mail so clearly they did get hacked as they had the email address I use for Ricardo. Even through I had not logged into Ricardo since August 2014

Both the fishing Email & Ricardo's warning on the site are dated today.

Fishing email from Rechnung@ricardo.ch
Reply With Quote
  #5  
Old 21.12.2015, 23:06
Corbets's Avatar
Forum Legend
 
Join Date: Mar 2007
Location: Zug, CH
Posts: 2,840
Groaned at 155 Times in 111 Posts
Thanked 5,382 Times in 1,839 Posts
Corbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond repute
Re: Ricardo has been hacked

Quote:
View Post
I received the fishing mail so clearly they did get hacked as they had the email address I use for Ricardo. Even through I had not logged into Ricardo since August 2014

Both the fishing Email & Ricardo's warning on the site are dated today.

Fishing email from Rechnung@ricardo.ch
That does not, in fact, actually mean they got hacked, though that's one possible way to get your email address.
Reply With Quote
  #6  
Old 22.12.2015, 07:26
fatmanfilms's Avatar
Forum Legend
 
Join Date: Apr 2010
Location: Verbier
Posts: 13,777
Groaned at 209 Times in 181 Posts
Thanked 11,092 Times in 6,291 Posts
fatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond reputefatmanfilms has a reputation beyond repute
Re: Ricardo has been hacked

Quote:
View Post
That does not, in fact, actually mean they got hacked, though that's one possible way to get your email address.
Well the email in question has only ever been given to a handful of companies, so with 99% certainty I can tell you they have been hacked.

I have a friend who gives out a unique email address to each company, then you can see who sells addresses & who does not, if you own your own domain it's very easy to do.
Reply With Quote
  #7  
Old 22.12.2015, 07:38
Junior Member
 
Join Date: Nov 2015
Location: Bern
Posts: 98
Groaned at 6 Times in 4 Posts
Thanked 122 Times in 50 Posts
Krist has earned some respectKrist has earned some respect
Re: Ricardo has been hacked

Quote:
View Post
Well the email in question has only ever been given to a handful of companies, so with 99% certainty I can tell you they have been hacked.
Your email can have leaked in a number of ways. It doesn't have to be hacked. Those scammers will just send the same scam to all the email adresses they have. I often get mails purporting to come from companies I even never have dealt with. This proves with 100% certainty that in this case the email was not leaked/hacked from the company the scammers impersonate.
So it can be with Ricardo as well.

Quote:
I have a friend who gives out a unique email address to each company, then you can see who sells addresses & who does not, if you own your own domain it's very easy to do.
That is a good system, and I once did that myself. I stopped doing that and just rely on my spam filter and my capacity to not fall for scams.
Reply With Quote
  #8  
Old 22.12.2015, 08:54
Corbets's Avatar
Forum Legend
 
Join Date: Mar 2007
Location: Zug, CH
Posts: 2,840
Groaned at 155 Times in 111 Posts
Thanked 5,382 Times in 1,839 Posts
Corbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond reputeCorbets has a reputation beyond repute
Re: Ricardo has been hacked

Quote:
View Post
Well the email in question has only ever been given to a handful of companies, so with 99% certainty I can tell you they have been hacked.

I have a friend who gives out a unique email address to each company, then you can see who sells addresses & who does not, if you own your own domain it's very easy to do.
I do own my own domain and also have a unique address for every company. However, "hacking" Ricardo is far from the only way that your address could have come to the scammer's attention. A misconstructed email list, passive taps for outbound emails from specific companies in key network locations (eg at Swisscom or another telco), and the accidental use of your own email address in an ad you posted once are just a few of the other ways that it could happen.

All you know is that information you believe you have not given out publicly is now available to scammers; that does not equate to a successful "hack" of Ricardo's systems.
__________________
I'm likely typing from an iPad. Please disregard odd word usage.
Reply With Quote
The following 3 users would like to thank Corbets for this useful post:
  #9  
Old 22.12.2015, 11:01
adrianlondon's Avatar
Forum Legend
 
Join Date: Nov 2009
Location: Basel
Posts: 8,826
Groaned at 189 Times in 172 Posts
Thanked 24,356 Times in 6,546 Posts
adrianlondon has a reputation beyond reputeadrianlondon has a reputation beyond reputeadrianlondon has a reputation beyond reputeadrianlondon has a reputation beyond reputeadrianlondon has a reputation beyond reputeadrianlondon has a reputation beyond repute
Re: Ricardo has been hacked

Quote:
View Post
I do own my own domain and also have a unique address for every company. However, "hacking" Ricardo is far from the only way that your address could have come to the scammer's attention. A misconstructed email list, passive taps for outbound emails from specific companies in key network locations (eg at Swisscom or another telco), and the accidental use of your own email address in an ad you posted once are just a few of the other ways that it could happen.

All you know is that information you believe you have not given out publicly is now available to scammers; that does not equate to a successful "hack" of Ricardo's systems.
Or if like me you tend to use <company-name>@my-domain.com then they can just guess and email "ricardo@domain.com" to every domain they can think of and hope to get lucky.

I get regular junk emails to sales@, invoice@, support@ and contact@ despite never using any of those.
Reply With Quote
The following 2 users would like to thank adrianlondon for this useful post:
  #10  
Old 22.12.2015, 15:41
the_flag_is_a_big_plus's Avatar
Member
 
Join Date: Jan 2014
Location: Zug
Posts: 112
Groaned at 2 Times in 2 Posts
Thanked 111 Times in 51 Posts
the_flag_is_a_big_plus has earned some respectthe_flag_is_a_big_plus has earned some respect
Re: Ricardo has been hacked

Quote:
View Post
Well the email in question has only ever been given to a handful of companies, so with 99% certainty I can tell you they have been hacked.
LOL. You got some spam mail. Get over it. ricardo has not been "hacked"
Reply With Quote
The following 2 users would like to thank the_flag_is_a_big_plus for this useful post:
  #11  
Old 22.12.2015, 16:06
Forum Legend
 
Join Date: Oct 2014
Location: Ostschweiz
Posts: 3,056
Groaned at 99 Times in 79 Posts
Thanked 3,795 Times in 1,960 Posts
Urs Max has a reputation beyond reputeUrs Max has a reputation beyond reputeUrs Max has a reputation beyond reputeUrs Max has a reputation beyond reputeUrs Max has a reputation beyond reputeUrs Max has a reputation beyond repute
Re: Ricardo has been hacked

Why are you certain it's Ricardo but not one of the other handful you've provided the address to?

Btw like your physical post address, your email address is nothing private. In fact in order to be useful it even must be publicly readable. Thus if you send or receive an email anybody with access to any of the servers that handled it sees your address.
Reply With Quote
  #12  
Old 24.12.2015, 09:07
omtatsat's Avatar
Forum Legend
 
Join Date: Oct 2007
Location: Zürich
Posts: 3,593
Groaned at 384 Times in 201 Posts
Thanked 1,122 Times in 721 Posts
omtatsat omtatsat omtatsat omtatsat omtatsat
Re: Ricardo has been hacked

Well if you are often on internet then for sure your email address is easy to find
Quote:
View Post
I received the fishing mail so clearly they did get hacked as they had the email address I use for Ricardo. Even through I had not logged into Ricardo since August 2014

Both the fishing Email & Ricardo's warning on the site are dated today.

Fishing email from Rechnung@ricardo.ch
Reply With Quote
This user groans at omtatsat for this post:
Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
phishing attack warning from Google and API fraj1 Business & entrepreneur 11 28.06.2015 09:43
Apple i-tunes phishing scam warning Medea Fleecestealer TV/internet/telephone 2 23.10.2014 19:44
"Swisscom" phishing mail k_and_e TV/internet/telephone 7 18.01.2014 13:43
Phishing warning: UBS E-banking MrVertigo Finance/banking/taxation 2 12.03.2011 11:36
Swiss Visa Phishing Warning. AbFab Finance/banking/taxation 30 21.06.2007 14:45


All times are GMT +2. The time now is 19:29.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2016, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.1.0