index home News audio search help techcity computerworld
News analysis

Online credit-card scare an inside job, Starwave says

Two separate but chilling messages were sent to people who purchased items online from ESPNet or the NBA Store this week. The first anonymous E-mail told shoppers they had been the victims of careless security and that their credit-card numbers and addresses were easily available.

The second message, sent by E-mail and regular mail by the World Wide Web sites' host, Starwave Corp., alerted 2,397 online shoppers that their credit-card information might have been misappropriated.

Starwave said the credit-card information was in a secure, encrypted area that was accessed by an intruder who had the proper password information. "This was not done by a hacker," said Jennifer Yazzolino, a Starwave spokeswoman. "They knew how to get in to the system and unlawfully used classified information." The area that the intruder broke in to was an order-processing system that sends shoppers' orders from each site to 1-800-PRO-TEAM, a Florida fulfillment company.

Following the break-in, Starwave called in the FBI and the U.S. Secret Service to investigate. It has also implemented a new encryption process and changed all system passwords. "We think this is a matter of a password either being used directly by someone involved with the system or passed along directly by someone involved in the system," Yazzolino said.

"We relied too much on human integrity."

Last updated on 07/10/97



Search
Enter
words describing a concept or
keywords you wish to find information about:




More News Analysis
* Starwave security breach hits a nerve

* Online services, Web sites rake in retail bucks in marketing deals

* Netscape server bundles targets intranets, advanced network enterprises

* MCI earnings alert sparks BT probe

* Umax CEO says Apple needs a leader who knows the PC business

* Spamming lawyer gets disbarred

* GM gives wearable computer a test drive

* Frustrated NT users snap up third-party applications

* Motorola's DRAM decision bruises quarterly results but not share price

* Men in black (hats) identify future hacker targets: NT, intelligent hubs

* BackWeb acquires Lanacom, plans to integrate Headliner tool

* Seagate earns $59 million for quarter

* Yahoo beats analysts' predictions, posts a profit

* Netscape launches extranet for business-to-business sales and services

* Joint venture led by UUNet launches Internet business fax service

* Carmakers will let the Internet drive business-to-business network

* Justice Department approves merger of BT and MCI, with a few conditions

* EU issues declaration on Internet use

* NetFrame adds four-way Pentium Pro server

* NCR jumps on data mart bandwagon

* Europeans, U.S. remain at odds on encryption

* New face at the top of Apple as search for CEO begins

* Intranets outpace external Web sites' growth

* TechNet seeks to lobby Congress and boost U.S. education

* Bell Atlantic inks pact with MCI to link customers' LANs over long distances

* Sun's Enterprise JavaBeans specification on tap this month

* FileNet touts better-than-anticipated second-quarter results

* AMD earnings slump below expectations

* Compaq cuts expected to spark PC price war

* Control Data Systems to go private in $255 million deal

* Orioles give automated retail system a swing

* IBM licenses NDS for RS/6000, mainframes

* Bell Labs uncovers JavaScript bug

* Amazon.com's quarterly loss less than expected, sales strong



index home News audio search help techcity computerworld

© Copyright 1997 by Computerworld, Inc. All rights reserved. @Computerworld is a service mark of International Data Group, Inc.