eBay instructs users to change passwords following security breach

A cyber attack on eBay has prompted the online auction house to issue a statement asking all users to change their passwords.

eBay is instructing users to change their passwords after a cyber attack compromised a database containing “encrypted passwords and other non-financial data”.

It stressed that after conducting “extensive” network tests, the company had found no evidence of unauthorised activity of user accounts following the attack.

How did this happen?

eBay has released a statement explaining that a small number of employee log-in credentials were compromised, allowing the perpetrators access to the eBay corporate network.

The auction site said: “Working with law enforcement and leading security experts, the company is aggressively investigating the matter and applying the best forensics tools and practices to protect customers.”

The database, which was compromised between late February and early March is said to have contained eBay customers’ names, encrypted passwords, email addresses, physical addresses, phone numbers and dates of birth.

Users will be notified later today via email, site communications and other marketing channels. eBay called on members who usethe same password for eBay on other sites to change those passwords too, with the advice that the same password should never be used across multiple sites or accounts.

For advice on picking a strong password, read How to protect your PINs and passwords.

Good tips include using at least eight characters, including special characters (eg %, $, ^) in your password and a mix of upper- and lower-case letters. This password generator can produce strong passwords for you to learn and use.

This story has been updated since its original publication

More from lovemoney.com

How to protect PINs and passwords

eBay changes private seller listing fees

Online banking: how to stay safe

The first online pound shop

Comments


Be the first to comment

Do you want to comment on this article? You need to be signed in for this feature

Copyright © lovemoney.com All rights reserved.

 

loveMONEY.com Financial Services Limited is authorised and regulated by the Financial Conduct Authority (FCA) with Firm Reference Number (FRN): 479153.

loveMONEY.com is a company registered in England & Wales (Company Number: 7406028) with its registered address at First Floor Ridgeland House, 15 Carfax, Horsham, West Sussex, RH12 1DY, United Kingdom. loveMONEY.com Limited operates under the trading name of loveMONEY.com Financial Services Limited. We operate as a credit broker for consumer credit and do not lend directly. Our company maintains relationships with various affiliates and lenders, which we may promote within our editorial content in emails and on featured partner pages through affiliate links. Please note, that we may receive commission payments from some of the product and service providers featured on our website. In line with Consumer Duty regulations, we assess our partners to ensure they offer fair value, are transparent, and cater to the needs of all customers, including vulnerable groups. We continuously review our practices to ensure compliance with these standards. While we make every effort to ensure the accuracy and currency of our editorial content, users should independently verify information with their chosen product or service provider. This can be done by reviewing the product landing page information and the terms and conditions associated with the product. If you are uncertain whether a product is suitable, we strongly recommend seeking advice from a regulated independent financial advisor before applying for the products.