Friday, January 19, 2018 2:50:11 PM
Credit card payments remain suspended during ongoing investigation
[comment by poster - imagine how happy you would all be if you were one affected. again your life is interrupted. we need to be doing something. the processes we all have to use now are pathetic. there is no confidence in the levels of security being used now, so let's continue to hope for the best from SMME.]
OnePlus says up to 40,000 customers were affected by credit card security breach
OnePlus credit card details breached - all 40000 of them
OnePlus has announced that up to 40,000 customers were affected by the security breach that caused the company shut down credit card payments for its online store earlier this week. The information is the result of an ongoing investigation with a third-party security agency into the breach that caused customers’ credit card information to be stolen while they were purchasing OnePlus products.
Though reports of stolen credit card information and fraudulent purchases were only made in the past week, OnePlus says that the script that stole the data had been running on one of its payment processing servers since mid-November. The script was able to capture full credit card information, including card numbers, expiry dates, and security codes directly from a customer’s browser window. The company says it has determined where the exploit happened and has found the point of entry for the attacker, but the investigation remains ongoing. It’s not yet clear if the attack was done remotely, or if someone had physical access to the server to install the script.
In a forum post detailing the findings, OnePlus says the script operated “intermittently” and the infected server has been quarantined from the rest of the system. It also says that customers that paid via a saved credit card, a credit card processed via PayPal, or through a PayPal account should not have been affected by the breach.
A OnePlus spokesperson says that the 40,000 customers exposed to the attack “represent a small subset” of its total customer base.
[comment from the poster - what a cavalier attitude by this mob!!]
The company is reaching out to affected customers and offering a year of credit monitoring service for free. It is also working with local authorities during the investigation.
Credit card payments will remain suspended on the OnePlus.net store until the investigation is complete, with customers able to purchase items through PayPal in the meantime. OnePlus says it is working to implement a more secure credit card payment method before it re-enables them.
Last week, OnePlus CEO Pete Lau told CNET that it is exploring partnerships with US carriers, but a spokesperson confirmed that this security breach will not change anything in terms of OnePlus’ online sales strategy. The company currently does not have plans to move its store to Amazon or another e-commerce platform.
Recent SMME News
- Form 10-Q - Quarterly report [Sections 13 or 15(d)] • Edgar (US Regulatory) • 06/10/2024 09:22:17 PM
- Form NT 10-Q - Notification of inability to timely file Form 10-Q or 10-QSB • Edgar (US Regulatory) • 05/15/2024 01:54:15 PM
- Form 10-Q - Quarterly report [Sections 13 or 15(d)] • Edgar (US Regulatory) • 02/21/2024 06:41:03 PM
- Credit Card to Prevent Fraudelent Activities • AllPennyStocks.com • 12/21/2023 08:00:00 PM
- Credit Card to Prevent Fraudulent Activities • AllPennyStocks.com • 12/21/2023 08:00:00 PM
- Form 10-Q - Quarterly report [Sections 13 or 15(d)] • Edgar (US Regulatory) • 11/20/2023 08:30:16 PM
- Form 8-K - Current report • Edgar (US Regulatory) • 11/07/2023 11:00:48 AM
- Form 253G1 - • Edgar (US Regulatory) • 11/06/2023 04:10:16 PM
- Form QUALIF - Notice of Qualification [Regulation A] • Edgar (US Regulatory) • 11/06/2023 05:15:06 AM
- Form 1-A POS - • Edgar (US Regulatory) • 10/20/2023 07:26:28 PM
- Form 10-K/A - Annual report [Section 13 and 15(d), not S-K Item 405]: [Amend] • Edgar (US Regulatory) • 10/19/2023 08:20:09 PM
- Form 10-K/A - Annual report [Section 13 and 15(d), not S-K Item 405]: [Amend] • Edgar (US Regulatory) • 10/18/2023 09:26:13 PM
- Form DEF 14C - Other definitive information statements • Edgar (US Regulatory) • 10/16/2023 10:00:11 AM
- Form 10-K - Annual report [Section 13 and 15(d), not S-K Item 405] • Edgar (US Regulatory) • 10/13/2023 08:58:03 PM
- Form NT 10-K - Notification of inability to timely file Form 10-K 405, 10-K, 10-KSB 405, 10-KSB, 10-KT, or 10-KT405 • Edgar (US Regulatory) • 09/27/2023 07:27:47 PM
- Form PRE 14C - Other preliminary information statements • Edgar (US Regulatory) • 09/26/2023 11:39:30 AM
VHAI - Vocodia Partners with Leading Political Super PACs to Revolutionize Fundraising Efforts • VHAI • Sep 19, 2024 11:48 AM
Dear Cashmere Group Holding Co. AKA Swifty Global Signs Binding Letter of Intent to be Acquired by Signing Day Sports • DRCR • Sep 19, 2024 10:26 AM
HealthLynked Launches Virtual Urgent Care Through Partnership with Lyric Health. • HLYK • Sep 19, 2024 8:00 AM
Element79 Gold Corp. Appoints Kevin Arias as Advisor to the Board of Directors, Strengthening Strategic Leadership • ELMGF • Sep 18, 2024 10:29 AM
Mawson Finland Limited Further Expands the Known Mineralized Zones at Rajapalot: Palokas step-out drills 7 metres @ 9.1 g/t gold & 706 ppm cobalt • MFL • Sep 17, 2024 9:02 AM
PickleJar Announces Integration With OptCulture to Deliver Holistic Fan Experiences at Venue Point of Sale • PKLE • Sep 17, 2024 8:00 AM