Welcome to the Bet Angel Professional Community

WARNING - Betfair account hacked / fraud

News & Chat about Betfair.

Postby morante1 » Tue Nov 08, 2011 3:15 am

Not sure that taking money out of your account after each session as someone suggested is workable. In Australia it takes a few days for the funds to hit the account if you use Bpay. If you use a credit card it may be faster but BF charge you 1.5% of each transaction. One thought I had was to tie up the money overnight ie laying or backing something at ridiculous odds to the value of your account. The risk is that someone may accept the bet overnight, but if the odds are stupid then its probably not a problem as you should be able to lay off. Anyone see a problem with this strategy?

User avatar
morante1
 
Posts: 7
Joined: Tue Jan 26, 2010 7:59 am
  

Postby LeTiss 4pm » Tue Nov 08, 2011 8:29 am

Funny you should say that Morante, but that's exactly what I done last night.

I've become a bit paranoid about this, so last night I spread money across various selections at ridiculous odds. If some of it gets matched, then even better.

I'm not sure if these fraudsters though will be stopped in their tracks by this. There's a default message from BF about having unmatched bets when logging out, so once they are into your account they could easily cancel them I suppose

User avatar
LeTiss 4pm
Archangel Professional
Archangel Professional
 
Posts: 1875
Joined: Fri May 08, 2009 6:04 pm
Location: Ocean Village
  

Postby Zenyatta » Tue Nov 08, 2011 10:35 am

Do you have any idea how they were getting into your Betfair account? Was the problem at Betfair's end, or do you think malware installed on your own computer had capatured your passwords?

Just last week my security software caught someone ramaging around on my computer. I traced the problem, and it turns out the hacker got in via security holes (exploits) in the older versions of the Java runtime environment. You need to make sure that you always get the latest patches and updates for installed applications. In real-time, I saw that the hacker had access to my computer and was installing password capture bots, worms and other nasties. My security software was constantly removing the malware, but the hacker was somehow still getting back in. Sometimes malware is so well hidden it can't be removed. I had no choice but to reformat my entire hard disk from back-up. Since I installed the latest version of the Java runtime environment (ver 6.29 with security patches), the hacker hasn't been able to get back in.

User avatar
Zenyatta
Archangel Professional
Archangel Professional
 
Posts: 565
Joined: Thu Mar 11, 2010 5:17 pm
  

Postby Ferru123 » Tue Nov 08, 2011 5:00 pm

morante1 wrote:One thought I had was to tie up the money overnight ie laying or backing something at ridiculous odds to the value of your account.


It can't hurt, but if someone is clever enough to hack into your account, they'll probably be able to work out how to cancel your unmatched bets...

Jeff

User avatar
Ferru123
Archangel Professional
Archangel Professional
 
Posts: 5431
Joined: Fri Dec 11, 2009 11:51 pm
  

Postby Ferru123 » Tue Nov 08, 2011 7:50 pm

I asked Betfair if it was possible for customers to only allow connections from particular IP addresses (another simple, low cost security measure, you might think).

Their reply was about as useful as a chocolate fireguard:

Unfortunately we do not have an IP blocking facility I'm afraid, you can however check your last 10 login attempts through the 'My Account' section by selecting 'My Security'.

We ask that you have a strong password and strong security questions to prevent fraudulent access to your account, as well as investing in good Anti Virus software to protect your information.


Gee thanks guys - That would never have occured to me...

Jeff

User avatar
Ferru123
Archangel Professional
Archangel Professional
 
Posts: 5431
Joined: Fri Dec 11, 2009 11:51 pm
  

Postby LeTiss 4pm » Tue Nov 08, 2011 8:03 pm

In other words.......If we don't take your money, then somebody else will

I'm a broken record, I realise that, but BF are not going to change their stance unless the media start taking an interest

User avatar
LeTiss 4pm
Archangel Professional
Archangel Professional
 
Posts: 1875
Joined: Fri May 08, 2009 6:04 pm
Location: Ocean Village
  

Postby Zenyatta » Wed Nov 09, 2011 1:15 am

I suppose at the end of each session you could transfer your funds to your Australian wallet. No-one can withdraw it without first transferring it back to the main wallet, so storing it in the Australian wallet at least offers some (slight?) extra protection.

User avatar
Zenyatta
Archangel Professional
Archangel Professional
 
Posts: 565
Joined: Thu Mar 11, 2010 5:17 pm
  

Postby Zenyatta » Wed Nov 09, 2011 4:48 am

Euler wrote:All the cases I have seen so far seem odd in that the account holders seem to have taken all normal security precautions. So how can somebody log on with one attempt and clean out the accounts?!?!?!


Sounds like the problem is at Betfair's end and there is some kind of exploit (trick) hackers can use to get into people's accounts without the passwords I'm afraid.

As the exploit becomes more widely known, more and more people will start getting cleaned out until Betfair fix the problem.

Until Betfair do something about it, the only defense is to constantly recycle the bank by withdrawing and redepositing every day from now on ...what a pain!

It's amazing the ever increasing number of new ways for people to lose their money betting have come to light since I started reading the forums. Really makes you wonder whether it's all worth it.

User avatar
Zenyatta
Archangel Professional
Archangel Professional
 
Posts: 565
Joined: Thu Mar 11, 2010 5:17 pm
  

Postby pdupre1961 » Wed Nov 09, 2011 2:15 pm

LeTiss 4pm wrote:I contacted BF regarding my rogue IP addresses, and they were surprisingly helpful and quick with responding.


LeTiss what phone number did you call, as I have just found a rogue IP address login at 16:25 yesterday.

Paul

User avatar
pdupre1961
 
Posts: 374
Joined: Fri Feb 18, 2011 9:01 pm
Location: Morden, London
  

Postby LeTiss 4pm » Wed Nov 09, 2011 2:28 pm

Initially, I sent an email to the helpdesk and they put me through to security

I've got the direct dial number of BF's security team somewhere, I'll dig it out and post it

User avatar
LeTiss 4pm
Archangel Professional
Archangel Professional
 
Posts: 1875
Joined: Fri May 08, 2009 6:04 pm
Location: Ocean Village
  

PreviousNext

Return to Betfair

Who is online

Users browsing this forum: No registered users and 0 guests

Login Form