Page 1
Page 1
Started By
Message
locked post

Bamastuff.com website hacked - Credit card info vulnerable

Posted on 1/25/12 at 2:25 pm
Posted by Lombardi44
Member since Feb 2010
370 posts
Posted on 1/25/12 at 2:25 pm
If you do business with Alabama Book Store online (Bamastuff.com) you may need to start cancelling your credit/debit cards. They got hacked and apparently a ton of personal information has been compromised.
I know it's long, but here is the email received about it.

THE BAD NEWS:

We are writing to inform you that there may have been illegal and unauthorized access to some of your information at Bamastuff.com including your name, e-mail address, billing and shipping address, phone number, credit card information and/or your cryptographically scrambled password (but not your actual password).

We are still investigating the server's log files to pinpoint exactly what was taken and how, but we suggest if you have not already taken action (due to prior bank notification) to cancel and/or change your credit or debit card associated with your order, to do so immediately. We have included the expiration date of that card below so you will know which one it is. While the majority of the cards are well past expiration, we wanted to be safe and alert everyone regardless of how old the data was. If you receive multiple emails, it is because you had multiple cards in the system for different orders. We are almost certain that orders placed after January 16th are not affected based on the access logs on the server. It appears to be a one time attack and we have taken numerous steps to fend off any future ones. We suggest those who placed their first order with us after 16th to monitor their bank statements for any fraudulent activities.

SECURITY MEASURES:

We are archiving old orders and deleting customer data from the system that have not placed an order with us since the start of the 2009 season. We will be deleting all associated records from those prior orders (customers, addresses and credit card information) as well.

We also recommend that you change your password on any other web site where you use the same or a similar password. As always, please remember that Bamastuff.com will never ask you for personal or account information in an e-mail, ever. Please exercise caution if you receive any emails or phone calls that ask for personal information or direct you to a web site where you are asked to provide personal information. We have upgraded and installed various security software to monitor future intrusions and locked the box down extremely tight. We are also working with our PCI compliance company and our server host to figure out where the attack originated and how to mitigate future attempts.

PLEASE CHANGE YOUR PASSWORD:

Please goto Bamastuff.com Account page sign in then click Password. We have taken the site down temporarily (the night Jan 24th) for upgrades, so if you can't reach it, try again later. Once there, if you can't login, DON'T FRET! We removed all orders older than August 1st, 2009 and then all customer and address information that no longer had an "active" order in the system. So if it says you don't exist, you haven't ordered since August 2009 and are no longer in our database. Even if you don't change the password on our site, if you use the same password on sites that have sensitive data, you might think about changing those.

We can't tell you how sorry we are this has happened and apologize for any inconvenience this has caused. We are still investigating to see how it happened and to figure out exactly what was taken but to err on the cautious side we wanted to inform you of this incident. Please let us know if you have any questions or concerns. We setup a special email address for questions at ccinfo@bamastuff.com.
Posted by hg
Member since Jun 2009
123563 posts
Posted on 1/25/12 at 2:26 pm to
lol
Posted by Sev09
Nantucket
Member since Feb 2011
15552 posts
Posted on 1/25/12 at 2:27 pm to
Not using THAT site anymore!

Posted by geauxtigahs87
Louisiana
Member since Dec 2008
26258 posts
Posted on 1/25/12 at 2:27 pm to
Good thing I don't shop on bamastuff
Posted by Swoopin
Member since Jun 2011
22030 posts
Posted on 1/25/12 at 2:28 pm to
Dear Lord, TLDR
Posted by dkreller
Laffy
Member since Jan 2009
30248 posts
Posted on 1/25/12 at 2:28 pm to
nb4madlsufan
Posted by TreyAnastasio
Bitch I'm From Cleveland
Member since Dec 2010
46759 posts
Posted on 1/25/12 at 2:30 pm to
quote:

nb4madlsufan


quote:

dkreller


You seem to be here
Posted by TexasTiger89
Houston, TX
Member since Feb 2005
24237 posts
Posted on 1/25/12 at 3:22 pm to
Thank you hackers
Posted by THEBEARLIVES
Boston, MA
Member since Oct 2009
364 posts
Posted on 1/25/12 at 3:25 pm to
Butthurt corn dog trying to get the money he lost on the game back
Posted by Damn Good Dawg
Member since Feb 2011
47325 posts
Posted on 1/25/12 at 3:28 pm to
am i gonna be the first one to say the criminals in question made a huge tactical error when they decided to steal credit cards from the Alabama fan base of all choices?
Posted by NYCAuburn
TD Platinum Membership/SECr Sheriff
Member since Feb 2011
57002 posts
Posted on 1/25/12 at 3:28 pm to
Bamastuff.com is the site that had all the save harvey stuff. I hope they got every cc number on that site and max them out.

































Posted by chilld28
Get in B Chord and Mash It!!
Member since Nov 2009
29622 posts
Posted on 1/25/12 at 3:30 pm to
quote:

am i gonna be the first one to say the criminals in question made a huge tactical error when they decided to steal credit cards from the Alabama fan base of all choices?
For real. They should have went for UGA. They havent had to buy NC gear in a long time
Posted by NBamaAlum
Soul Patrolville
Member since Jan 2009
27604 posts
Posted on 1/25/12 at 3:30 pm to
That rig should be outlawed.
Posted by DvlsAdvocat
Your Mom's House, AL
Member since Jul 2007
24491 posts
Posted on 1/25/12 at 3:36 pm to
quote:

That rig should be outlawed.



A guy I know makes and sells them online. He's sold so many that he could do it as a full time job right now.

Its a genius configuration, and its not uncommon for a fisherman to land multiple fish on a single cast...
Posted by NBamaAlum
Soul Patrolville
Member since Jan 2009
27604 posts
Posted on 1/25/12 at 3:48 pm to
quote:

He's sold so many that he could do it as a full time job right now.



No doubt.


quote:

Its a genius configuration



Yep, hard to cast...but kills 'em if trolled.


quote:

and its not uncommon for a fisherman to land multiple fish on a single cast...


A guy caught a 12lbs largemouth on the upriver side of Guntersville Dam the other day...I've heard reports of folks landing 6-8 lbs 2 a two at a time on the damn thing.


Like anything else, ADCNR will have a reaction...and someone will do what happened in Tennessee. They outlawed the 5 piece Bama Rig, and a guy is selling 3 piece ones named Tennessee Rigs.
first pageprev pagePage 1 of 1Next pagelast page
refresh

Back to top
logoFollow SECRant for SEC Football News
Follow us on Twitter and Facebook to get the latest updates on SEC Football and Recruiting.

FacebookTwitter