Join Early Retirement Today
Reply
 
Thread Tools Display Modes
Amazon Account Hacked
Old 10-05-2019, 08:42 AM   #1
Thinks s/he gets paid by the post
SumDay's Avatar
 
Join Date: Aug 2012
Posts: 1,862
Amazon Account Hacked

Last week I tried to sign on to my Amazon account and it didn't recognize my email address. Long story short, I called customer service and someone had taken over my account.

The strange part is they changed the name and address to theirs, and used THEIR credit card, and were going to have all my auto-ship (Subscribe & Save) items shipped to them, and paid for by them. They placed no other orders. WTH?

When I was on the phone with Amazon Support as they walked me through returning everything to the way it was, I could see this person's email, physical address, phone # and credit card info! What's the point of hacking my account to only have MY stuff shipped to them, and billed to their acocunt?

I called the police department in her town (I found her on Facebook!) and lo & behold - they were "acquainted" with her. I sent them screenshots of all the info I found on her in my Amazon account.

My account is mine again, and I now have multi-factor authentication enabled, so I get a text whenever I sign in, with a code. I have all so installed Google Authenticator on my phone as an extra step.

I'm out nothing except a few days of frustration and some piece of mind. I'm changing passwords, and getting a new email address for more sensitive accounts. All my banking and investing seems to be safe, for now. I download everything from Quicken everyday, so I'm always keeping an eye on all of it - for just this reason!

Edited to add: Our credit has been frozen for years...
__________________
FIRE Class of 2018 @ 61

Old men and women sit in the shade of trees they planted long ago
SumDay is offline   Reply With Quote
Join the #1 Early Retirement and Financial Independence Forum Today - It's Totally Free!

Are you planning to be financially independent as early as possible so you can live life on your own terms? Discuss successful investing strategies, asset allocation models, tax strategies and other related topics in our online forum community. Our members range from young folks just starting their journey to financial independence, military retirees and even multimillionaires. No matter where you fit in you'll find that Early-Retirement.org is a great community to join. Best of all it's totally FREE!

You are currently viewing our boards as a guest so you have limited access to our community. Please take the time to register and you will gain a lot of great new features including; the ability to participate in discussions, network with our members, see fewer ads, upload photographs, create a retirement blog, send private messages and so much, much more!

Old 10-05-2019, 08:51 AM   #2
Thinks s/he gets paid by the post
MissMolly's Avatar
 
Join Date: Jun 2010
Posts: 2,140
Some people are just idiots You would think if the authorities are "familiar" with her that she would have planned this out better. I guess if you are going to be hacked, you got lucky that it was done by an idiot than someone who knew what they were doing. Sorry this happened. I wish there was a fool-proof method to prevent this, but sadly there is not.
__________________
And whatever your labors and aspirations in the noisy confusion of life, keep peace in your soul. With all its sham, drudgery, and broken dreams, it is still a beautiful world. Be cheerful. Strive to be happy.- Desiderata by Max Ehrmann
MissMolly is online now   Reply With Quote
Old 10-05-2019, 09:25 AM   #3
Thinks s/he gets paid by the post
zinger1457's Avatar
 
Join Date: Jul 2007
Posts: 3,229
Something doesn't sound right, Amazon should have sent you a notification to your old email address when an attempt was made to change it.
zinger1457 is offline   Reply With Quote
Old 10-05-2019, 09:44 AM   #4
Thinks s/he gets paid by the post
SumDay's Avatar
 
Join Date: Aug 2012
Posts: 1,862
Quote:
Originally Posted by zinger1457 View Post
Something doesn't sound right, Amazon should have sent you a notification to your old email address when an attempt was made to change it.
They did - left that part out. It was included in the "long story short"...
__________________
FIRE Class of 2018 @ 61

Old men and women sit in the shade of trees they planted long ago
SumDay is offline   Reply With Quote
Old 10-05-2019, 09:49 AM   #5
Thinks s/he gets paid by the post
 
Join Date: Jan 2017
Posts: 2,662
Somehow Amazon signed me up for Prime - even though I already had Prime through my wife's account.

They couldn't explain how it happened. I just buy stuff; no video, music or any other "premium" Prime offerings. One Amazon phone support person suggested it had something to do with signing on to Roku (I never did) while another suggested maybe I clicked on the wrong thing on the Amazon site (I never do anything buy products.)

I don't see how it could benefit a hacker to sign me up for something I already had, so I don't think it's that. It's interesting that I didn't get any kind of confirmation, although among the usual spam from them, there was one "Welcome to Prime" e-mail which I'd ignored, since I was already a long-time prime member.

The only real fact I have is that Amazon's own staff admits it's possible to sign up for something you don't want or need without knowing it, and without any confirmation.

That's good to know.

It's also interesting that they were able to remove my Prime membership, and my wife could re-add me as a "household" Prime member, without impacting my order history, saved items, etc. In fact, I would never have seen any change if I hadn't noticed the extra credit card charge for the membership.
CaptTom is offline   Reply With Quote
Old 10-05-2019, 09:53 AM   #6
Thinks s/he gets paid by the post
 
Join Date: Nov 2011
Posts: 3,906
Quote:
Originally Posted by SumDay View Post
They did - left that part out. It was included in the "long story short"...
Do you know how the hacker accomplished it? Was your password weak? If it was a strong password you might have a virus or similar on your device(s) that is leaking your info, including passwords.
GrayHare is offline   Reply With Quote
Old 10-05-2019, 09:58 AM   #7
Thinks s/he gets paid by the post
SumDay's Avatar
 
Join Date: Aug 2012
Posts: 1,862
Quote:
Originally Posted by GrayHare View Post
Do you know how the hacker accomplished it? Was your password weak? If it was a strong password you might have a virus or similar on your device(s) that is leaking your info, including passwords.
No clue. My virus protection says all is well. I have her phone number. Maybe I'll call & ask her. lol
__________________
FIRE Class of 2018 @ 61

Old men and women sit in the shade of trees they planted long ago
SumDay is offline   Reply With Quote
Old 10-05-2019, 10:22 AM   #8
Confused about dryer sheets
 
Join Date: Aug 2019
Posts: 7
This happened to me too. My Amazon account was hacked. The only way I was alerted is the hacker was returning legitimate purchases I had made. Amazon sent me an email each time my refund was processed. The refunds were put on a giftcard the hacker used to make Amazon purchases. My credit card was never affected. I believe the hacker got my email and password information from the Yahoo email data breach.
Beach Gal is offline   Reply With Quote
Old 10-05-2019, 11:08 AM   #9
Thinks s/he gets paid by the post
SumDay's Avatar
 
Join Date: Aug 2012
Posts: 1,862
Quote:
Originally Posted by Beach Gal View Post
This happened to me too. My Amazon account was hacked. The only way I was alerted is the hacker was returning legitimate purchases I had made. Amazon sent me an email each time my refund was processed. The refunds were put on a giftcard the hacker used to make Amazon purchases. My credit card was never affected. I believe the hacker got my email and password information from the Yahoo email data breach.
Which reminds me, in my research on this topic, I discovered this website: https://haveibeenpwned.com/

It tells you if your email address has been breached and if it was "pasted" anywhere (which would give hackers easy access to a list of all the emails.

Read more about this here: https://www.digitaltrends.com/comput...e-been-hacked/
__________________
FIRE Class of 2018 @ 61

Old men and women sit in the shade of trees they planted long ago
SumDay is offline   Reply With Quote
Old 10-05-2019, 11:12 AM   #10
Full time employment: Posting here.
cbo111's Avatar
 
Join Date: May 2014
Posts: 979
I have absolutely no hard data to back up this claim, but I believe more scams and thefts have occurred since the birth of the internet than in the entire previous history of mankind.
cbo111 is offline   Reply With Quote
Old 10-05-2019, 11:47 AM   #11
Thinks s/he gets paid by the post
 
Join Date: Jan 2017
Posts: 2,662
Quote:
Originally Posted by cbo111 View Post
I have absolutely no hard data to back up this claim, but I believe more scams and thefts have occurred since the birth of the internet than in the entire previous history of mankind.
Maybe. But I do know that 78.4% of all statistics you read on the internet are made up.
CaptTom is offline   Reply With Quote
Old 10-05-2019, 12:08 PM   #12
Confused about dryer sheets
 
Join Date: Aug 2019
Posts: 7
Thank you Sumday for the links. Great way to see if your email address and passwords have been compromised before your accounts get hacked.
Beach Gal is offline   Reply With Quote
Old 10-05-2019, 01:17 PM   #13
Give me a museum and I'll fill it. (Picasso)
Give me a forum ...
Chuckanut's Avatar
 
Join Date: Aug 2011
Location: West of the Mississippi
Posts: 17,266
The OP's story almost sounds like the data base that hold the customer's account information or the software that accesses it got messed up and somehow showed another person's info when displaying his account. Having worked in IT I know that these things can and will happen.
__________________
Comparison is the thief of joy

The worst decisions are usually made in times of anger and impatience.
Chuckanut is online now   Reply With Quote
Old 10-05-2019, 01:51 PM   #14
Thinks s/he gets paid by the post
Scrapr's Avatar
 
Join Date: May 2005
Location: Portland
Posts: 1,713
I had a hack on Amazon as well. A Kindle died. Would not charge or turn on. We can't put them in the garbage so I dropped off at the local e cycle. A few months later I would get a small charge for a movie or something. I would dispute it & go on. A bit later I get a credit card charge 2x's for I phones. $$$ I go to my Amazon account and don't see anything. Then I look in a different folder called archive and there they are. I disputed with Amazon and they start investigating. I typically don't open my CC statement until the due date. So only 30 days or so until the CC dispute rights run out. Amazon was slow in getting a refund so i disputed with the CC.

I should have done a lot more before the big charges. But amazon was not very helpful either.
Scrapr is offline   Reply With Quote
Old 10-05-2019, 01:58 PM   #15
Give me a museum and I'll fill it. (Picasso)
Give me a forum ...
easysurfer's Avatar
 
Join Date: Jun 2008
Posts: 13,150
Yes, go with 2FA for sure on Amazon.

Should have asked if he hacker made any Amazon reviews on your behalf .

I'm glad that you got things straightened out.
__________________
Have you ever seen a headstone with these words
"If only I had spent more time at work" ... from "Busy Man" sung by Billy Ray Cyrus
easysurfer is online now   Reply With Quote
Old 10-05-2019, 02:15 PM   #16
Thinks s/he gets paid by the post
 
Join Date: Aug 2014
Location: Red Rock Country
Posts: 1,932
I have not been able to figure out 2 factor authorization for Amazon. No problem with putting my mobile phone number in but then it requires a second authenticator device to which only a text message can be sent! I don't actually have a second device capable of texting although I could use hubby's cell phone when he gets back from caring for his dad. The help says I should be able to opt for a phone call instead of text but when I try only a text OTP is offered. They also offer an authenticator app option whatever the heck that is.
Ian S is online now   Reply With Quote
Old 10-05-2019, 02:20 PM   #17
Thinks s/he gets paid by the post
 
Join Date: Nov 2011
Posts: 3,906
Quote:
Originally Posted by SumDay View Post
I download everything from Quicken everyday, so I'm always keeping an eye on all of it - for just this reason!
Keep in mind your info can't be stolen online if it is not online to begin with. Consequently the more often you log in or download personal information the more often that info has the potential to be spied upon.
GrayHare is offline   Reply With Quote
Old 10-05-2019, 02:28 PM   #18
Give me a museum and I'll fill it. (Picasso)
Give me a forum ...
SecondCor521's Avatar
 
Join Date: Jun 2006
Location: Boise
Posts: 7,882
Quote:
Originally Posted by SumDay View Post
No clue. My virus protection says all is well. I have her phone number. Maybe I'll call & ask her. lol
Call her up and pretend to be Amazon. "Hi, Miss Hacker? This is Natalie from Amazon customer service. We've noticed some anomalies on your account. All you have to do to fix it is mail some gift cards to the following address: (SumDay's address). Thank you so much and have a nice day!"

That would be funny to me, but you probably don't want this person knowing your physical address.
__________________
"At times the world can seem an unfriendly and sinister place, but believe us when we say there is much more good in it than bad. All you have to do is look hard enough, and what might seem to be a series of unfortunate events, may in fact be the first steps of a journey." Violet Baudelaire.
SecondCor521 is offline   Reply With Quote
Old 10-05-2019, 03:09 PM   #19
Moderator
braumeister's Avatar
 
Join Date: Feb 2010
Location: Flyover country
Posts: 25,362
Quote:
Originally Posted by Ian S View Post
I have not been able to figure out 2 factor authorization for Amazon. No problem with putting my mobile phone number in but then it requires a second authenticator device to which only a text message can be sent! I don't actually have a second device capable of texting although I could use hubby's cell phone when he gets back from caring for his dad. The help says I should be able to opt for a phone call instead of text but when I try only a text OTP is offered. They also offer an authenticator app option whatever the heck that is.
Only the primary phone needs to get SMS messages. The backup phone number can be one that just receives voice calls.
__________________
I thought growing old would take longer.
braumeister is offline   Reply With Quote
Old 10-05-2019, 03:41 PM   #20
Give me a museum and I'll fill it. (Picasso)
Give me a forum ...
easysurfer's Avatar
 
Join Date: Jun 2008
Posts: 13,150
Quote:
Originally Posted by Ian S View Post
I have not been able to figure out 2 factor authorization for Amazon. No problem with putting my mobile phone number in but then it requires a second authenticator device to which only a text message can be sent! I don't actually have a second device capable of texting although I could use hubby's cell phone when he gets back from caring for his dad. The help says I should be able to opt for a phone call instead of text but when I try only a text OTP is offered. They also offer an authenticator app option whatever the heck that is.
I use an authenticator app for Amazon. The authentication code gets requested only for an unrecognized device. I avoided using this method of 2FA earlier on. Now I'm a collector with authentication for 10 places and counting .

A youtube discussion on what is an authentication app.

__________________
Have you ever seen a headstone with these words
"If only I had spent more time at work" ... from "Busy Man" sung by Billy Ray Cyrus
easysurfer is online now   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Which Facebook Account was Hacked? TromboneAl Technology, Media & e-Gadgets 14 07-29-2019 02:14 PM
Ronstar's account hacked? braumeister Forum Admin 7 07-08-2017 03:41 PM
PSA: Save $8.62 Today On Amazon (sold by Amazon only) RetiredGypsy Other topics 50 02-23-2017 06:01 AM
Amazon Prime- Shared account bizlady FIRE and Money 23 12-11-2016 06:02 AM
ARGH! Hacked twice in a month. BigMoneyJim Other topics 23 03-05-2006 10:34 AM

» Quick Links

 
All times are GMT -6. The time now is 08:16 PM.
 
Powered by vBulletin® Version 3.8.8 Beta 1
Copyright ©2000 - 2024, vBulletin Solutions, Inc.