PDA

View Full Version : Netflix Hackers



mattiooo
09-22-2018, 14:48
My Netflix account was stolen this morning. Here is the chain of events:

1. Last night I checked my email at 2am. I was tired but having trouble falling asleep so i was up doing things half awake. There was a Netflix email about a problem with my account. Now I NEVER do anything without verifying the sender is legitimate. And I never click the links in the email, I just go to the real site. But last night I was tired, and I had a big unexpected bill come through that put my checking account negative that day, so I knew there were going to a few things declined. I had resolved the balance in my account, so I was just being lazy clicking the link to go have them retry the payment. I was too tired to be thinking clearly As soon as I had clicked on the link, something was downloaded to my computer. My anti-virus identified it as a virus and blocked it. Apparently not enough though.

2. 9am this morning someone logged into my account from Argentina (Netflix sent an email about that login). And then there were two more emails - your password was successfully change, and your email was successfully changed. I couldn't even log into my account anymore.

3. I have disabled the automatic payments from PayPal and i will contact them to try and recover my account.

But the lesson is - just one click is all it takes.

Irving
09-22-2018, 14:52
Bummer. Your suggested watch list will be fubar for a while now.

Gman
09-22-2018, 14:58
But the lesson is - just one click is all it takes.
True statement. Social engineering works...and it just needs to work some of the time.

Good luck getting that squared away!

Skip
09-22-2018, 15:24
The "Apple" ones are getting really hard to spot. Worse on an iThingy that doesn't show anything but the alias.

They will sometimes send an invoice for a ridiculous amount and the first thing you think is "I didn't spend that!!!" and want details. Then it's too late.

Had a friend almost get taken and my mom had the sense to ask me about it first.

Wulf202
09-22-2018, 15:32
Netflix is also not the best. I canceled my account. They charged me again the next month. I called them, the apologize and refund it. I changed my card number due to fraud and Netflix charges my new card (I didn't give them the new digits) I call up and change my card again because of Netflix being fraud. The next month I get another charge on the new card number from netflix. This went on for 3 months till I yelled at netflix to get me a supervisor and they told me that they had no idea how this kept happening

mattiooo
09-22-2018, 15:42
Well...20 minutes of chat support and all they want me to do is enter my credit card number or they can't help me.

What an awful method of trying to do account verification. During the chat, I had already confirmed the original email, last date and amount of charge, and last watched show. They still won't reset the account without me enter my full credit card number into a "secure form". WHo does that now?

I'm going to have to call them. I told them there was ZERO CHANCE I was entering a credit card number.

They said they would close the account and give a code for a new trial, but then we lose all our history, watch list, etc on 5 profiles.

brutal
09-22-2018, 17:22
I know it can be a hassle for normal use if not implemented well, but any service that offers MFA/2FA should be taken up on it.

So many now can easily send a push to your mobile of record that you can verify quickly.

Great-Kazoo
09-22-2018, 20:13
Well...20 minutes of chat support and all they want me to do is enter my credit card number or they can't help me.

What an awful method of trying to do account verification. During the chat, I had already confirmed the original email, last date and amount of charge, and last watched show. They still won't reset the account without me enter my full credit card number into a "secure form". WHo does that now?

I'm going to have to call them. I told them there was ZERO CHANCE I was entering a credit card number.

They said they would close the account and give a code for a new trial, but then we lose all our history, watch list, etc on 5 profiles.

Should have kept a list written down. It's really not that hard to figure out what season & episode you're one after 5 minutes in to a show it should click you've already seen it. Not having a history of what you've watched as well as watch list is a small price for avoiding another account hack

OctopusHighball
09-23-2018, 08:14
Recently had a similar experience, last week or so. Got several emails saying sign in from random countries. Went to their website and did chat, they confirmed there was not a sign in from anywhere but me home city, and suggested an email to forward the suspect emails to for Phishing attempts. Tell you what, the emails were good, perfect even. I changed password and got an email from them informing me of the sign in attempt from my Roku, and I compared the two. Boy, they looked identical. I even inspected the links, they looked ok also.

Delfuego
09-23-2018, 08:15
Your not using the compromised machine to resolve this problem I hope? You need that machine seriously cleaned and or wiped. You don't know what is on it at this point. Phone support is you best bet. Shut that affected/infected machine off now. Use a different if you can.

BladesNBarrels
09-23-2018, 11:00
... It's really not that hard to figure out what season & episode you're one after 5 minutes in to a show it should click you've already seen it...

As I get older, I might disagree. I watch episodes from 2 months ago and it is totally new!

[blaster]

mattiooo
09-23-2018, 12:31
As I get older, I might disagree. I watch episodes from 2 months ago and it is totally new!

[blaster]

This.

Great-Kazoo
09-23-2018, 13:32
As I get older, I might disagree. I watch episodes from 2 months ago and it is totally new!

[blaster]

Was that way after moving and no tv for a month. Went to netflix , started watching what we thought was an episode we left off on. About 20 min in the spouse and i said. I think we watched this one already, yes

So we went back to our watch list we wrote down, another item that got packed away in the non-critical moving boxes. To verify what and where we were on a few different shows.

Aloha_Shooter
09-23-2018, 19:43
Well...20 minutes of chat support and all they want me to do is enter my credit card number or they can't help me.

What an awful method of trying to do account verification. During the chat, I had already confirmed the original email, last date and amount of charge, and last watched show. They still won't reset the account without me enter my full credit card number into a "secure form". WHo does that now?

I'm going to have to call them. I told them there was ZERO CHANCE I was entering a credit card number.

They said they would close the account and give a code for a new trial, but then we lose all our history, watch list, etc on 5 profiles.

If you can, I'd call back and ask for a supervisor. Explain, calmly and politely, that they're not getting a credit card number and that if you have to go through all the pain of establishing a new viewing history, watch list, etc. across 5 profiles that you may as well try Amazon Prime or Hulu. That you'd really rather stay with Netflix than go through all that but their shot at keeping you as a customer is contingent on reactivating your existing account with its existing profiles and history without having to enter a credit card number.

mattiooo
09-23-2018, 19:49
If you can, I'd call back and ask for a supervisor. Explain, calmly and politely, that they're not getting a credit card number and that if you have to go through all the pain of establishing a new viewing history, watch list, etc. across 5 profiles that you may as well try Amazon Prime or Hulu. That you'd really rather stay with Netflix than go through all that but their shot at keeping you as a customer is contingent on reactivating your existing account with its existing profiles and history without having to enter a credit card number.

Yeah. I'm going to call them tomorrow. There is no way right after I got hacked, I was going to give them that. Even though I initiated the chat from the Netflix page, I have no idea if the hack re-routed any calls to that website, etc.

We've already started a new account (from a different computer) so I'm just going to have them close the old account. If half of everything we watched wasn't on Netflix, I would have already told them to kiss off.

TEAMRICO
09-23-2018, 20:50
I cancelled NF this month. Went with HULU.