We’d like to remind Forumites to please avoid political debate on the Forum.
This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Egg offers - security risk
malc_b
Posts: 1,094 Forumite
in Credit cards
Bankers! We are constant warned by the banks to be careful of phishing emails, but what did I get the other day from Egg? An email with a free draw every time I used my Egg card. I just had to click the link below and login in on the page.
In other words this was exactly like a spam email.
There was a an alternate method given. Login as normal and click the register link on the right. Except the register link wasn't there. I even contacted Egg to check this was a genuine email. I had checked the plain URLs and it looked ok, but the lack of register link when I had logged in normally was a worry. Egg confirmed that it was.
All told it seems pretty stupid to me for Egg to even send out emails with "click here and login" links. It just accustoms users to breaking security principles. Plus a hacker could get this Egg email, doctor it to change the click here link, and resend it out. Egg would even then tell customers it was genuine!
The stupidity of it all just astounds me :eek:
In other words this was exactly like a spam email.
There was a an alternate method given. Login as normal and click the register link on the right. Except the register link wasn't there. I even contacted Egg to check this was a genuine email. I had checked the plain URLs and it looked ok, but the lack of register link when I had logged in normally was a worry. Egg confirmed that it was.
All told it seems pretty stupid to me for Egg to even send out emails with "click here and login" links. It just accustoms users to breaking security principles. Plus a hacker could get this Egg email, doctor it to change the click here link, and resend it out. Egg would even then tell customers it was genuine!
The stupidity of it all just astounds me :eek:
0
Comments
-
My thoughts exactly when I received the email.
I haven't registered for the draw (yet), would prefer to do it from the Egg site.
Scrounger0 -
I would prefer to this through egg sit.0
This discussion has been closed.
Confirm your email address to Create Threads and Reply
Categories
- All Categories
- 354.8K Banking & Borrowing
- 254.5K Reduce Debt & Boost Income
- 455.6K Spending & Discounts
- 247.6K Work, Benefits & Business
- 604.6K Mortgages, Homes & Bills
- 178.6K Life & Family
- 262.2K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.7K Read-Only Boards