www.cyclesportsuk.co.uk

Posted on
  • Hi All,

    Has anyone used the above site? We've received a paypal phishing email directly addressing MOC and we're pretty sure it came using data that was taken from their site.

    For every order on the interwebs MOC makes, he sets up a mail account on his mail server referencing the particular supplier for example cyclesports@blah.com. This means that in the future if the company ever sell their details or their database gets pwned and he gets some dodgy email to that address, he knows where the data leak has occured. This usually means he contacts the company in question - asks them about the 'irregularity' they rather sheepishly say their db was hacked, apologise profusely and offer some sort of voucher - well, not always but they usually admit it.
    In this case cyclesports seem to think that 'setting a password on your mailbox' would have meant this wouldn't happen which either means they don't really know what they're talking about or they wont admit their database has been hacked.

    Whilst it may be hard for you to determine whether this has happened to you, it would be interesting to know it any other customers of cyclesportsuk received a paypal phishing email around the 3rd Jan 2013 which was addressed to the same details they used for their cyclesportsuk account. MOC ordered something (for me) from cyclesport over 2 years ago, but this phishing mail has only just emerged, so it suggests it's recently been hacked.

    Whilst I'm not pouring scorn on their service or trade, afaik they run a decent business, I would like to know if any other customers have noticed something a little wierd.

    Thanks

  • Wow - that's a pretty interesting internet security technique! Am I being silly for just using one email address & that's the sort of thing we should all be doing?

    I've never actually used that site so this may be a coincidence but I received a paypal phishing email on the 4th of Jan. And I've not noticed receiving one before (though gmail does delete them after a while). That probably doesn't help at all though; it could be a coincidence or it could possibly mean retailers are sharing details?

  • I forward the paypal phishing directly to paypal (as you should) and deleted it.

    Will check history if I've ordered from cyclesportsuk.

  • Good technique. I can receive emails to whatever@mydomain.co.uk so I might start doing that.

  • If you're on gmail, you can also use things like myemailusername+orderfromthatwebsite@gmail.com

    Using the + (if accepted by the form) will show you who the email was addressed to but still let the email through, so it's dead easy to filter stuff out.

  • Post a reply
    • Bold
    • Italics
    • Link
    • Image
    • List
    • Quote
    • code
    • Preview
About

www.cyclesportsuk.co.uk

Posted by Avatar for clefty @clefty

Actions