The Forum is currently experiencing technical issues which the team are working to resolve. Thank you for your patience.

BT account hack. how is this being done?

Neighbour had BT account hacked. password, recovery mobile and recovery email all changed. Result - 1. email to address list asking for money 2. replies from these people being forwarded to spammer email address in BT (auto-forward) settings.
Sorted with BT, we thought.  Half an hour later, the auto-forward has been reactivated. How are they doing this!!!  I assume there's malware/key logger on the computer.  OR their router has been hacked (is this even possible).
I've got their computer at my house.  No signs of a repeat problem (auto-forward settings being messed around with).  Bloody hell.
If you put your general location in your Profile, somebody here may be able to come and help you.

Comments

  • Neil_Jones
    Neil_Jones Posts: 9,518 Forumite
    Part of the Furniture 1,000 Posts Name Dropper
    edited 15 February 2024 at 9:32AM
    Change the recovery mobile and email back to what they should be.
    Then change the password, to something more stronger than "apple123" or something that can be cracked in less than the time it takes you to read this.

    This might be enlightening:

    Set up two factor authentication if you haven't already done so..

  • PHK
    PHK Posts: 2,189 Forumite
    Eighth Anniversary 1,000 Posts Photogenic Name Dropper
    Yes, I'd say the neighbour had an easily guessed password or used the same password for multiple services one of which had a data breach. 

    Time to get their digital health up to date:

    Use a password manager to generate unique secure passwords for each site/app

    Turn on 2FA, preferably using a one time code from an authenticator app rather than SMS. 

    If you can educate them about being careful what they click on. 
  • Newcad
    Newcad Posts: 1,603 Forumite
    1,000 Posts Second Anniversary Name Dropper Photogenic
    edited 15 February 2024 at 1:47PM
    It's not particularly a BT problem, it could happen no matter who your internet provider is.
    Your neighbours email address(es) and password(s) have been exposed in one of the many data breaches that happen everyday.
    So they now need to be changed.
    You can check if an email address is known to have been exposed (it's known as being Pwned) here:
    https://haveibeenpwned.com/
    And you can do the same check for exposed passwords here:
    https://haveibeenpwned.com/Passwords
    I check my own email addresses (and passwords) at least one a month, and if necessary I'll abandon them and make a new email account.
    When buying something. or registering with a website, I will usually use a gmail account and forward the mail from that to my main private email account. It's easy to simply abandon a breached gmail and create a new one in a different name and with a different password.


  • grumpycrab
    grumpycrab Posts: 5,016 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Bake Off Boss!
    Thanks. Yes, the password was simple. Took BT 2 goes to sort it out (MyBT/BT ID part of the account was also hacked).  2FA authentication enabled on mobile; authentication device would have been too much for my elderly neighbour; at least he has a mobile.
    If you put your general location in your Profile, somebody here may be able to come and help you.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350K Banking & Borrowing
  • 252.7K Reduce Debt & Boost Income
  • 453.1K Spending & Discounts
  • 242.9K Work, Benefits & Business
  • 619.8K Mortgages, Homes & Bills
  • 176.4K Life & Family
  • 255.9K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 15.1K Coronavirus Support Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.