Discussion Forum: Administrative
Redisplay Messages: Compact | Brief | All | Full      Show Messages: All | Without Replies

 Author: dartiss View Messages Posted By dartiss
 Posted: Mar 6, 2024 02:25
 Subject: Re: Phishing email
 Viewed: 80 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
You really need to add OTP for all users, not just sellers, for better security.
You sent me the email to tell me about this, despite me not having a seller account,
and finding I'm unable to do it.

Also, to the person asking for SMS 2FA - this is insecure (as is email, tbh).
Bricklink should really implement 2FA via authentication app for proper security.
 Author: Saitobricks.ca View Messages Posted By Saitobricks.ca
 Posted: Mar 5, 2024 19:16
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 63 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, Nubs_Select writes:
  In Administrative, Saitobricks.ca writes:
  In Administrative, Nubs_Select writes:
  In Administrative, 1001bricks writes:
  In Administrative, Adjour writes:
  In Administrative, 1001bricks writes:
  In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?


yeah its a typical scam site. Nothing works but the "login"

My browser wants to translate it from French (despite everything visible being
English) so I guess theres french somewhere on the backend of this garbage. I
guess scammers out of Canada or France. *shrug*

Canada! We know who, it's Nubs!!!

He was practicing Javascript recently (in short: copy/paste from chatGPT)

can it really be called practicing if its just
copy and paste?


I think the correct term is “testing”

"testing" for several hours to increase the efficiency of
1 function by 1/1000 of a second

“it’s just barely better! But it is still better! Barely!”
 Author: Nubs_Select View Messages Posted By Nubs_Select
 Posted: Mar 5, 2024 19:12
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 51 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, Saitobricks.ca writes:
  In Administrative, Nubs_Select writes:
  In Administrative, 1001bricks writes:
  In Administrative, Adjour writes:
  In Administrative, 1001bricks writes:
  In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?


yeah its a typical scam site. Nothing works but the "login"

My browser wants to translate it from French (despite everything visible being
English) so I guess theres french somewhere on the backend of this garbage. I
guess scammers out of Canada or France. *shrug*

Canada! We know who, it's Nubs!!!

He was practicing Javascript recently (in short: copy/paste from chatGPT)

can it really be called practicing if its just
copy and paste?


I think the correct term is “testing”

"testing" for several hours to increase the efficiency of
1 function by 1/1000 of a second
 Author: Saitobricks.ca View Messages Posted By Saitobricks.ca
 Posted: Mar 5, 2024 19:04
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 48 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, Nubs_Select writes:
  In Administrative, 1001bricks writes:
  In Administrative, Adjour writes:
  In Administrative, 1001bricks writes:
  In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?


yeah its a typical scam site. Nothing works but the "login"

My browser wants to translate it from French (despite everything visible being
English) so I guess theres french somewhere on the backend of this garbage. I
guess scammers out of Canada or France. *shrug*

Canada! We know who, it's Nubs!!!

He was practicing Javascript recently (in short: copy/paste from chatGPT)

can it really be called practicing if its just
copy and paste?


I think the correct term is “testing”
 Author: Nubs_Select View Messages Posted By Nubs_Select
 Posted: Mar 5, 2024 19:02
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 45 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, 1001bricks writes:
  In Administrative, Adjour writes:
  In Administrative, 1001bricks writes:
  In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?


yeah its a typical scam site. Nothing works but the "login"

My browser wants to translate it from French (despite everything visible being
English) so I guess theres french somewhere on the backend of this garbage. I
guess scammers out of Canada or France. *shrug*

Canada! We know who, it's Nubs!!!

He was practicing Javascript recently (in short: copy/paste from chatGPT)

can it really be called practicing if its just
copy and paste?
 Author: 1001bricks View Messages Posted By 1001bricks
 Posted: Mar 5, 2024 16:16
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 69 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, Adjour writes:
  In Administrative, 1001bricks writes:
  In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?


yeah its a typical scam site. Nothing works but the "login"

My browser wants to translate it from French (despite everything visible being
English) so I guess theres french somewhere on the backend of this garbage. I
guess scammers out of Canada or France. *shrug*

Canada! We know who, it's Nubs!!!

He was practicing Javascript recently (in short: copy/paste from chatGPT)
 Author: Adjour View Messages Posted By Adjour
 Posted: Mar 5, 2024 16:04
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 75 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, 1001bricks writes:
  In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?


yeah its a typical scam site. Nothing works but the "login"


My browser wants to translate it from French (despite everything visible being
English) so I guess theres french somewhere on the backend of this garbage. I
guess scammers out of Canada or France. *shrug*
 Author: Adjour View Messages Posted By Adjour
 Posted: Mar 5, 2024 15:59
 Subject: Re: Phishing email
 Viewed: 48 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, 1001bricks writes:
  
  Why doesn't a multi-billion dollar company buy up all domains similar to
Bricklink and then just redirect them all to Bricklink.com?

Because they would've to buy hundreds of domains, like bricklinks.net, bricklinka.com,
brick-link.net, bricklinkk.net, bricklinks.org...

Plus some may already be taken and put for sale at $100,000 ea - so no, it's
not easy.


agreed.

Also I don't think it would really stop the phishing. I mean, I don't
think 100% of people glance at the url when they hit a link. I know I don't.
It could be www.yourvebeenhacked.com after you click the link and it would still
get a decent number of victims IMO because I doubt the average user checks these
things.

Crystal
 Author: 1001bricks View Messages Posted By 1001bricks
 Posted: Mar 5, 2024 13:08
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 109 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
In Administrative, Admin_Russell writes:
  Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site

It opens directly to a pseudo login page...
Now people will be crazy again about Security

Maybe a good idea not to loose focus on Help Desk and BrickLink communication
(Notifications with confirmation and history on site!) for instance?
 Author: Admin_Russell View Messages Posted By Admin_Russell
 Posted: Mar 5, 2024 12:05
 Subject: Re: Phishing email UPDATE March 5
 Viewed: 273 times
 Topic: Administrative
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
Hello again everyone,

Our security team was able to get the original bricklinks.net site taken
down, but we got reports this morning of a new bricklinks.org site and
evidence that phishing emails have been sent to our users, directing people to
this new site. The new site is much more realistic (see image below).

Please log in ONLY to bricklink.com and be aware that an effort is being
made to steal your BrickLink credentials. We will keep you updated if this problem
persists.

The BrickLink Team
 

Next Page: 5 More | 10 More | 25 More | 50 More | 100 More