Change your eBay passwords


Recommended Posts

I haven't seen it mentioned here, but I know a lot of people here shop on eBay. There was a security breach that was just announced, which involved passwords (and some personal info) being stolen. 

 

 

The passwords are encrypted (and seemingly well-encrypted, since they haven't shown up for sale anywhere), but there is always a chance that they could be cracked, particularly if you have a crappy password. Log into eBay, change your password, and then change your password on any other site that shared the password. Note that eBay is getting hammered right now, and it may take a couple tries. 

 

What's a good password? A random mix of numbers, letters, and symbols that is not used elsewhere. The longer the better. Consider using a password manager like OnePassword/LastPass/KeePass that can generate good passwords for you.

 

Link to comment
Share on other sites

For people who are good typists, it can be easier to use a long pass phrase than a short gobbledegook password.  For example,

"I was born at Mt Sinai Hospital in the early morning" can be easier to enter and just as secure as "u<S(#e0Hhg".

 

Good advice about the password manager, and if you have a smartphone or tablet, two-factor is really the solution.  That way stealing your password is useless unless they also physically steal your phone.

Link to comment
Share on other sites

Please explain two-factor.

 

Essentially, it means that you require a piece of information OTHER than a password to log in. Normally it's a piece of information that's seemingly random and time-sensitive, meaning it's only valid for a short period of time. It is not, say, requiring you to put in your birthday, or a phone number, or other piece of info that doesn't change.

 

For example, when I log into Gmail, after putting in my user name and password, I also have to go to my phone, open up a special app, and get a short code that is generated. I can't actually log into Google without that code. So, even if someone were to get my Gmail password, they'd also have to have stolen my phone and be able to unlock it. The code generated is unique to that phone and that particular copy of the app, so it's very hard to actually gain access.

  • Like 1
Link to comment
Share on other sites

Perhaps. The intrusion was months ago, but the question is when did they find out? Think about this this way: someone finds a spare key to your house, opens the door, and steals a fork or two. They don't trash anything - they just take a couple forks and walk away. You come home from work and are none the wiser until you have your inlaws over for dinner a month later realize you don't have enough forks for everyone and wonder, "what happened to my forks?"

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Who's Online   1 Member, 0 Anonymous, 50 Guests (See full list)

  • Forum Statistics

    31.2k
    Total Topics
    422.1k
    Total Posts
  • Member Statistics

    23,782
    Total Members
    3,644
    Most Online
    Skillfusian
    Newest Member
    Skillfusian
    Joined