collective2: security problem

trendie

Legendary member
Messages
6,875
Likes
1,433
I dont know if this is a spam/scam or not, but....

got the email below. Now, although I am registered, I dont recall giving any credit-card details; actually, dont recall entering addresses either.
this could one of those scam emails requiring you to "change password", but wondered if anyone else got one of these:

"Dear Collective2 User:

We recently became aware that our computer database was breached by a hacker and that the personal information of our customers was accessed. The information accessed includes names, email addresses, passwords, and credit card information. Thus, anything you typed into Collective2 before today may be potentially compromised.

We have contacted federal and state law enforcement authorities, who we hope will track down and prosecute the person responsible. More important: we have changed our database security, locked down our servers, and altered our Web site in order to prevent similar attacks. We are also notifying the three credit bureaus - Equifax, Experian and TransUnion - of the breach.

While we have no evidence that the hacker intended to use or has used the accessed information, it would be prudent for you to take the following steps.

Please immediately log in to Collective2 and change your password. You can do so through the following link:

https://www.collective2.com/changepassword


WHAT HAPPENS NEXT

Obviously our company depends on your trust. This has been a hard blow to the small team here at C2. It's devastating to learn that much of the good will and trust that we've built over the last eight years can be harmed in a day.

You have my promise: we will do whatever it takes to protect your security. We have already made the changes necessary to prevent further access to your personal information by the hacker, or by others.

In addition, we have hired an outside security firm to help us. The firm has been engaged to conduct a full review of our servers, software, and architecture, to insure that information is secure.

STEPS WE ARE TAKING

We need to work hard to rebuild the credibility we lost. The first step, before anything else, is that we must be honest with our customers and make sure that they are safe. For this reason, I encourage you to go to the link above, and to change your Collective2 password as soon as possible.

HOW TO CONTACT US

If you have questions about this email, please contact me at [email protected].


CONCLUSION

I am sorry for the inconvenience and uncertainty this will surely cause you. I wish I were able to write you a different kind of letter as we enter the new year. I hope that you will stay with us in 2010, and that, by this time next year, we will have regained your trust and confidence.

Sincerely,

Matthew Klein
Founder
Collective2 LLC"
 
yup, I got it as well.... I also just have an account with nothing serious so I didnot bother but it did look legitimate to me
 
yup, I got it as well.... I also just have an account with nothing serious so I didnot bother but it did look legitimate to me

The message is genuine.

I logged on independently of that link (typed in the usual link) and found the same message Trendie.

I have also had a similar warning form other sites, urging me to upgrade and even change my password, which I did through other channels than the warning email.

Now donnaforex.com has been hacked, and more than 1000 emails have been spilled into the public domain - mine included.

This is a breach of duty of care to protect the private information of members.

Forums need to maintain the ultimate in security to guard against such hacking.

Now I am expecting heaps of spam, because my email address was cc'd to everyone else on the list, by the hacker/spammer offering me a robot for USD$206.

If you get a spam email from danielvc promoting a robot called "forexgiants" then you know you must have been a member of donnaforex, or another forum which has also been hacked.

Come to think of it - I have been handed a golden goose ... anyone wanna buy a hot, live email list??

B@st@rd$
 
Why would any serious trader associate themselves with this outfit?Results posted are hypothetical.Are they curve fitted?.Actual traded results will be worse after dealing costs.security flaws.5,000 systems, there are few systems in the whole world ,which are robust.
 
Why would any serious trader associate themselves with this outfit?.

C2 are facing some critisism at the moment which is understandable, but I (uncharacteristically) actually felt quite sorry for them. For what its worth, I think theyre handling the fallout from this extremely well and showing some real integrity in admitting their failings. They could have said nothing.

Despite its shortcomings C2 is still a good idea, its got better over time, and it will no doubt continue to do so, and its still the best site of its type out there, and light years ahead of its closest competitors.
 
C2 are facing some critisism at the moment which is understandable, but I (uncharacteristically) actually felt quite sorry for them. For what its worth, I think theyre handling the fallout from this extremely well and showing some real integrity in admitting their failings. They could have said nothing.

Despite its shortcomings C2 is still a good idea, its got better over time, and it will no doubt continue to do so, and its still the best site of its type out there, and light years ahead of its closest competitors.


The model will never work to make traders rich, if anything poorer.Systems used by the masses tend to stop working ,if masses start placing bids/offers at same time.
 
Top