Blowout Cards Forums
AD Doejo

Go Back   Blowout Cards Forums > BLOWOUTS HOBBY TALK > BASEBALL

Notices

BASEBALL Post your Baseball Cards Hobby Talk

Reply
 
Thread Tools Display Modes
Old 12-28-2016, 05:05 PM   #1
SethMurphy
Member
 
SethMurphy's Avatar
 
Join Date: May 2010
Location: Centerville/Erie, PA
Posts: 19,483
Default Topps.com Security Breach - HACKED!!!!!!! (RE: Topps Now)

I just received this e-mail from Topps because I have purchased items on their site before, as most of us have.


__________________
Twitter - @seth_murphy8
PCs - Ryan Callahan, Reggie Lewis, Funko Pops (a little), a few other things that catch my eye
SethMurphy is offline   Reply With Quote
Old 12-28-2016, 05:10 PM   #2
enyouartist
Member
 
enyouartist's Avatar
 
Join Date: Jun 2011
Posts: 3,735
Default

Ridiculous. Smh. The shenanigans happened in October, and we are just getting this now?
enyouartist is offline   Reply With Quote
Old 12-28-2016, 05:15 PM   #3
Corky
Member
 
Corky's Avatar
 
Join Date: Dec 2016
Location: Arizona (Hometown: Seattle)
Posts: 1,487
Default

Taking two months to notify buyers? That seems a bit irresponsible of them. I have bought from their online store a number of times this year and have not received the email.
__________________
I am a player collector focusing mainly on Ken Griffey Jr. but I also collect Jay Buhner, Edgar Martinez, Ryan Bader. and University of Arizona

http://real-corky.deviantart.com/gallery/
Corky is offline   Reply With Quote
Old 12-28-2016, 05:24 PM   #4
smanzari
Member
 
Join Date: Aug 2015
Location: N/A
Posts: 10,631
Default

Quote:
Originally Posted by Corky View Post
Taking two months to notify buyers? That seems a bit irresponsible of them. I have bought from their online store a number of times this year and have not received the email.
It takes a while to realize the scope and damage of these things, seems to be a standard time-frame.

I already got hit and have received my new cards and everything- its just strange that mine were all Paypal Payments- I thought using them avoided this type of thing.
smanzari is online now   Reply With Quote
Old 12-28-2016, 05:30 PM   #5
TASS
Member
 
TASS's Avatar
 
Join Date: Oct 2007
Location: RI
Posts: 11,789
Default

Quote:
Originally Posted by smanzari View Post
It takes a while to realize the scope and damage of these things, seems to be a standard time-frame.

I already got hit and have received my new cards and everything- its just strange that mine were all Paypal Payments- I thought using them avoided this type of thing.

What are you saying here, you have had your accounts 'hit' with unauthorized charges?
__________________
So if I am going to be a hater who hates the Patriots then buddy I am going to be the best damn hater I can be. I AM ALL IN.
TASS is offline   Reply With Quote
Old 12-28-2016, 06:14 PM   #6
Brad
Member
 
Join Date: Jul 2007
Location: MKE
Posts: 3,947
Default

Quote:
Originally Posted by smanzari View Post
It takes a while to realize the scope and damage of these things, seems to be a standard time-frame.

I already got hit and have received my new cards and everything- its just strange that mine were all Paypal Payments- I thought using them avoided this type of thing.
If you only used PayPal at topps.com, then your problems weren't from this breach. PayPal doesn't pass CC details to the merchant for them to store.
Brad is offline   Reply With Quote
Old 12-29-2016, 01:38 AM   #7
smanzari
Member
 
Join Date: Aug 2015
Location: N/A
Posts: 10,631
Default

Quote:
Originally Posted by TASS View Post
What are you saying here, you have had your accounts 'hit' with unauthorized charges?
Yes, a few months ago.

Quote:
Originally Posted by Brad View Post
If you only used PayPal at topps.com, then your problems weren't from this breach. PayPal doesn't pass CC details to the merchant for them to store.
The card that was "hit" was essentially my "Paypal/Hobby Card" which is used only for that, it could have been typed in but I can't remember if I've used it on topps- so its either that or the other end (bank was hacked). Doesn't matter now, that headache is gone- I ended up replacing all of them.

There's probably close to 20 posts in the Topps Now Thread about this, pretty sure everyone effected used PP.... (see chatter at post 7068 in that thread (may be a few mentions before/after too, but its late and don't have time to continue the search))

Last edited by smanzari; 12-29-2016 at 01:57 AM.
smanzari is online now   Reply With Quote
Old 12-28-2016, 05:33 PM   #8
The Chad
Member
 
The Chad's Avatar
 
Join Date: Nov 2011
Location: Rochester, NY
Posts: 2,657
Default

Those that did not get the email are likely receiving a redemption
__________________
Looking for:
Rare Ernie Banks Allen & Ginter Cards
2014 Topps High Tek Ernie Banks Blue Dots Diffractor #/5
Follow me on Instagram: ispendtoomuchoncards
The Chad is offline   Reply With Quote
Old 12-28-2016, 05:37 PM   #9
hohlernr
Member
 
hohlernr's Avatar
 
Join Date: Apr 2012
Location: Midland, MI
Posts: 2,761
Default

Wow this is annoying. I'm surprised they didn't offer some sort of discount coupon to those affected


Sent from my iPhone using Tapatalk
__________________
Always looking for Tyler Naquin, Dorssys Paulino, Jason Kipnis and Danny Salazar cards!
hohlernr is offline   Reply With Quote
Old 12-28-2016, 05:52 PM   #10
Skipscards
Member
 
Skipscards's Avatar
 
Join Date: Oct 2012
Location: In Tribute To The Great Ryno
Posts: 30,077
Send a message via AIM to Skipscards Send a message via Yahoo to Skipscards
Default

Quote:
Originally Posted by hohlernr View Post
Wow this is annoying. I'm surprised they didn't offer some sort of discount coupon to those affected


Sent from my iPhone using Tapatalk
Technically they did. They offered to pay for one year of identity protection.
__________________
Go Royals!! #RoyalsIn2015 <---It Happened!!
#TEAMZinck
Sometimes it is astounding that we are able to persist in a world so full of morons.
Skipscards is online now   Reply With Quote
Old 12-28-2016, 05:53 PM   #11
hohlernr
Member
 
hohlernr's Avatar
 
Join Date: Apr 2012
Location: Midland, MI
Posts: 2,761
Default

Quote:
Originally Posted by Skipscards View Post
Technically they did. They offered to pay for one year of identity protection.


Which wouldn't be needed had they not messed up. Plus that forces me yo go through all the steps they recommend doing.


Sent from my iPhone using Tapatalk
__________________
Always looking for Tyler Naquin, Dorssys Paulino, Jason Kipnis and Danny Salazar cards!
hohlernr is offline   Reply With Quote
Old 12-28-2016, 06:19 PM   #12
Soxrule111
Member
 
Join Date: Jan 2009
Location: DeKalb
Posts: 14,667
Default

Quote:
Originally Posted by hohlernr View Post
Which wouldn't be needed had they not messed up. Plus that forces me yo go through all the steps they recommend doing.


Sent from my iPhone using Tapatalk
You act like this is 100% on Topps Fault, like hacks, attacks nothing like that happens. No site is 100% secure, hell blowout could be hit tomorrow would you then say its blowouts fault your log in to a forum was jeopardized? #@#@#@#@ happens, it really sucks, but I put very little fault into topps, its not like they want this to happen.
__________________
Texans Future Super Bowl Champions
Check my COMC Port, Selling my Collection in 2025. Making Progress, down to about 1,660 Cards
but 10% off right now and lowering cards all week through the sale
Soxrule111 is offline   Reply With Quote
Old 12-28-2016, 05:38 PM   #13
okumeister
Member
 
okumeister's Avatar
 
Join Date: May 2016
Location: Houston, TX
Posts: 11,447
Default

Many people who were buying Topps Now got hit with this fraudulent charges earlier this year, as Topps.com was the only way to buy those cards (except if you decide to buy from eBay or other places later).
I also had fraudulent charges made to my credit card, and had to reissue it.
When I emailed and called them about it, and told them how many other Topps Now buyers were experiencing the same problem (looking at the forum here), they advised that they are aware and investigating the situation.
Then, this email is the first official notification they sent.
okumeister is online now   Reply With Quote
Old 12-28-2016, 05:46 PM   #14
JohnRyno
Banned
 
Join Date: Nov 2012
Location: Fairway in Regulation
Posts: 12,248
Default

Vlad Putin's favorite app is Topps Bunt.
JohnRyno is offline   Reply With Quote
Old 12-28-2016, 06:41 PM   #15
preakness
Member
 
Join Date: Sep 2010
Location: In Johnny Ryno's soul
Posts: 21,077
Default

Quote:
Originally Posted by JohnRyno View Post
Vlad Putin's favorite app is Topps Bunt.
Think Putin bought some of those election presidential race cards
preakness is offline   Reply With Quote
Old 12-28-2016, 07:48 PM   #16
imbluestreak23
Member
 
imbluestreak23's Avatar
 
Join Date: Mar 2012
Location: Meandering the matrix code that the hobby/forum overlords spit out
Posts: 17,750
Default

Quote:
Originally Posted by JohnRyno View Post
Vlad Putin's favorite app is Topps Bunt.
Tiger blood win
imbluestreak23 is online now   Reply With Quote
Old 12-28-2016, 06:33 PM   #17
mrbasepauly
Member
 
Join Date: Aug 2015
Posts: 903
Default

Makes sense, I never made the connection about how my cc was compromised, now I know why. Didn't receive the email yet.
mrbasepauly is offline   Reply With Quote
Old 12-28-2016, 06:46 PM   #18
RollBamaRoll
Member
 
Join Date: Feb 2013
Posts: 951
Default

Glad I only use Paypal express checkout....
RollBamaRoll is offline   Reply With Quote
Old 12-28-2016, 06:47 PM   #19
Peties Army
Member
 
Join Date: Jul 2011
Location: St. Louis
Posts: 19,460
Default

Geez guys. This isn't a topps issue it is an national security issue. People sit at their computers all day and do this. Can't try to make this a topps problem it's a society problem.
__________________
Comment of the day
“How many bees are killed by mowing?”- Boo
Peties Army is offline   Reply With Quote
Old 12-28-2016, 07:29 PM   #20
fulltritty
Member
 
fulltritty's Avatar
 
Join Date: Jun 2013
Location: King George, VA
Posts: 77,919
Default

I got the email too. I have used a mix of paypal and credit card at Topps site for the two or three purchases a year I make. I never saw any fraudulent charges on the credit card yet.
fulltritty is offline   Reply With Quote
Old 12-28-2016, 11:18 PM   #21
bobthewondercat
Member
 
bobthewondercat's Avatar
 
Join Date: May 2012
Location: Reno / Tahoe
Posts: 2,398
Default

Quote:
Originally Posted by Peties Army View Post
Geez guys. This isn't a topps issue it is an national security issue. People sit at their computers all day and do this. Can't try to make this a topps problem it's a society problem.

Hackers will target less secure sites first. Less secure sites are generally a result of poorer IT infrastructure and staffing, cost-cutting measures. So yes it could happen to any company but a) better security can prevent most cases and b) the company is responsible for your data even if the attack is not their "fault". So, Topps is not blameless here.
__________________
No Big Whoop
bobthewondercat is offline   Reply With Quote
Old 12-29-2016, 10:50 AM   #22
Peties Army
Member
 
Join Date: Jul 2011
Location: St. Louis
Posts: 19,460
Default

Quote:
Originally Posted by bobthewondercat View Post
Hackers will target less secure sites first. Less secure sites are generally a result of poorer IT infrastructure and staffing, cost-cutting measures. So yes it could happen to any company but a) better security can prevent most cases and b) the company is responsible for your data even if the attack is not their "fault". So, Topps is not blameless here.
I think you are 100% wrong here. Apple and Microsoft are under attack all the time, as well as the US government(thanks Russia for Trump) so I don't think it shows anything.

Im not saying they are blameless but to make it out like Topps failed us all and is the worst company in the world(which is often done on these boards) isn't fair. It happens all the time.
__________________
Comment of the day
“How many bees are killed by mowing?”- Boo
Peties Army is offline   Reply With Quote
Old 12-29-2016, 10:57 AM   #23
kyle121592
Member
 
Join Date: May 2010
Location: United States
Posts: 3,407
Default

Quote:
Originally Posted by Peties Army View Post
I think you are 100% wrong here. Apple and Microsoft are under attack all the time, as well as the US government(thanks Russia for Trump) so I don't think it shows anything.

Im not saying they are blameless but to make it out like Topps failed us all and is the worst company in the world(which is often done on these boards) isn't fair. It happens all the time.
Just because it happens all the time doesn't make it ok when it happens. It just means that a vast majority of these companies are piss poor when it comes to securing their customers.
kyle121592 is offline   Reply With Quote
Old 12-29-2016, 11:00 AM   #24
Peties Army
Member
 
Join Date: Jul 2011
Location: St. Louis
Posts: 19,460
Default

Quote:
Originally Posted by kyle121592 View Post
Just because it happens all the time doesn't make it ok when it happens. It just means that a vast majority of these companies are piss poor when it comes to securing their customers.
I just said they aren't blamless,

Im not trying to say Topps is great, I just think it is unfair to make them out to be the devil when in reality they aren't any different then anyone else out there.

Lets just call it what it is, probably a 95% your information is known by someone from somewhere you think would be more secure.
__________________
Comment of the day
“How many bees are killed by mowing?”- Boo
Peties Army is offline   Reply With Quote
Old 12-29-2016, 10:17 PM   #25
bobthewondercat
Member
 
bobthewondercat's Avatar
 
Join Date: May 2012
Location: Reno / Tahoe
Posts: 2,398
Default

Quote:
Originally Posted by Peties Army View Post
I think you are 100% wrong here. Apple and Microsoft are under attack all the time, as well as the US government(thanks Russia for Trump) so I don't think it shows anything.



Im not saying they are blameless but to make it out like Topps failed us all and is the worst company in the world(which is often done on these boards) isn't fair. It happens all the time.


I'm not wrong here. Breaches at larger tech companies are long-term, high value hacks that ppl spend years on, either for extremely valuable information or for prestige / trophy type resume stuff. Breaches at small online retailers like Topps, where the prize is small (100-1000 CC numbers) have to be quick and easy to be worth the risk... so they generally target companies that have out of date or vulnerable infrastructure. There are definite concrete steps Topps could have taken to protect your data more effectively, and through budget concerns or lack of IT knowledge, they didn't do so. That's why the class action lawsuit judges them to be responsible.
__________________
No Big Whoop
bobthewondercat is offline   Reply With Quote
Reply

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 12:17 PM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, vBulletin Solutions Inc.
Copyright © 2019, Blowout Cards Inc.