"How not to do Twitter support" (imgur.com)
8 years ago from David Barker
8 years ago from David Barker
Holy shit, It just keeps going and going..
Wow - I just read into this on Reddit, seems that Betfair has or is still having a HUGE security flaw with their reset Password.
http://www.reddit.com/r/webdev/comments/348ek5/how_not_to_do_twitter_support/
Via Reddit:
DO NOT TRY THIS. If you enter in a valid username (where oh where could you get valid usernames? Maybe https://twitter.com/BetfairHelpdesk/with_replies[1] ?) it'll ask you to then click a button to send a reset password email. THEY HAVE EMAIL ADDRESS IN HIDDEN FORM FIELD. IT IS CHANGEABLE VIA DEVELOPER TOOLS. WHATEVER EMAIL ADDRESS YOU ENTER WILL RECEIVE A RESET PASSWORD EMAIL. This email will have a unique link, asks you date of birth and another private question, like father's name. Then you can reset password. AVOID THIS COMPANY LIKE THE PLAGUE.
Jesus Christ! I hope they sort this out immediately - horrible security, especially for a company that deals with transactions and bank infomation
Wow, that's so bad.
Another reason to just not bet your money online.
LOL Forgotten your username and/or password? Fear not, help is at hand
Click the link in their status!
This was painful, yet I couldn't look away… :trainwreck:
Deny, deny, deny. Good lord.
This is amazing.
"We've already stated, the link you provided doesn't not take us to what you are stating you receive?"
Designer News
Where the design community meets.
Designer News is a large, global community of people working or interested in design and technology.
Have feedback?
Login to Comment
You'll need to log in before you can leave a comment.
LoginRegister Today
New accounts can leave comments immediately, and gain full permissions after one week.
Register now