Go Back  Bike Forums > Bike Forums > General Cycling Discussion
Reload this Page >

Identity Theft and Nasbar?

Search
Notices
General Cycling Discussion Have a cycling related question or comment that doesn't fit in one of the other specialty forums? Drop on in and post in here! When possible, please select the forum above that most fits your post!

Identity Theft and Nasbar?

Thread Tools
 
Search this Thread
 
Old 07-31-09, 12:59 PM
  #251  
pedaler
 
Join Date: Jul 2008
Location: NYC
Posts: 255

Bikes: 2023 Brompton C Line Electric

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 1 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Originally Posted by akansaskid
So, can someone direct me to another online retailer with comparable prices and inventory, and no securiy issues (yet!)? I'm all for switching, but don't know to whom.
I've used my LBS, JensonUSA.com and Bikeman.com with no problems. I've been trying my best to give my LBS first dibs at getting my money but sometimes they just don't jump at the chance. I go in there waving cash and leave with it to go online and buy what they didn't have and didn't offer to order for me. It's actually quite frustrating to wave cash around and not be able to give it away locally. I've had excellent service from both Jenson and Bikeman. I have also had superior service from wallbike. I prefer places that take paypal.
baldsue is offline  
Old 07-31-09, 02:58 PM
  #252  
Senior Member
 
Join Date: Mar 2009
Location: Massachusetts
Posts: 93
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
Originally Posted by prathmann
Sure, I figure they're probably one of the safest retailers to deal with right now. After getting hit with this scam they've redesigned their procedures and are working with a different credit processing company. Given that this fraud was the reason for the change it's pretty safe to assume they looked closely at the new company's protection against any similar scam. Just like you're likely to find the best alarm system and locks on the house of the guy who's recently been hit by burglars.

Nashbar's not the villain here - they're the main victim of whoever hacked the systems used by Heartland and placed the phony charges.
Was it really Heartland, or was that a separate breach? This Bike Portland article suggests that it was Bike Nashbar's site, and as I mentioned in reply 62 of this thread, a quick look at their site left me unimpressed. I just checked again, and that problem still exists. Again, it's not necessarily a security problem, but merely a sign that their QA on the website either isn't good enough or doesn't care about details.

Assuming the problem was with their website, I'm not sure what the role of the credit processing company would be. I know that the credit card networks (e.g. MasterCard, Visa, etc.) have their own security standards, but I'm not sure how they enforce them. Auditing web sites is time consuming and expensive.

There are many web site design companies out there, including many small ones that are quite capable of doing a secure site. However, there isn't any good way to know that the company is qualified to handle credit card security, other than picking a large company with a proven reputation and prices to match. And once that's done, they still need to make sure their systems are maintained and updated properly.
GaryBy is offline  
Old 07-31-09, 08:05 PM
  #253  
Senior Member
 
Jeffbeerman2's Avatar
 
Join Date: Aug 2003
Location: Wichita KS USA
Posts: 486

Bikes: Surly Crosscheck w Nexus 8 drivetrain set up as a commuter/tourer. Old and quick '89 Trek 1200. 08 Fisher Cobia 29er

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
I got a letter from Nashbar today. They admitted that they had a security breech that exposed my name, address, account info, and debit card info, and stated that they corrected the security flaw.

My info was compromised but I didn't have any fraudulent charges (this time, but it has happenned to me before with other retailers).

I called my bank to cancel my debit card (that I have used with nashbar) just to be safe.

I applaud nashbar for admitting the breech and helping me prevent any possible misuse.

It's inconvenient to not have a check card for a week or two, but not as inconvenient as making a police report and disputing a charge.
Jeffbeerman2 is offline  
Old 07-31-09, 08:12 PM
  #254  
Senior Member
 
Jeffbeerman2's Avatar
 
Join Date: Aug 2003
Location: Wichita KS USA
Posts: 486

Bikes: Surly Crosscheck w Nexus 8 drivetrain set up as a commuter/tourer. Old and quick '89 Trek 1200. 08 Fisher Cobia 29er

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
For anyone worried about using nashbar's store (after reading through the thread), keep in mind most nashbar stuff is available through Amazon with them as the "marketplace" retailer.

I'll probably use the 30% coupon. No doubt nashbar is turbo-vigilant about security right now.
Jeffbeerman2 is offline  
Old 07-31-09, 08:32 PM
  #255  
Great State of Varmint
 
Panthers007's Avatar
 
Join Date: Sep 2008
Location: Dante's Third Ring
Posts: 7,476
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 2 Post(s)
Likes: 0
Liked 15 Times in 15 Posts
I'd use the 30% coupon-code if I knew a few hundred people to go in on it with me. Let's say an order for more than $100,000. This would hit Nashbar where it hurts - their financial-artery. And no less than they deserve.
Panthers007 is offline  
Old 07-31-09, 09:03 PM
  #256  
Senior Member
 
Join Date: Jun 2009
Posts: 319
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
Use the 30% coupon with a virtual one time use CC number?
robotphood is offline  
Old 08-01-09, 04:04 AM
  #257  
~ Going the Distance ~
 
powerglide's Avatar
 
Join Date: Sep 2006
Location: Hermosa Beach, CA
Posts: 1,180

Bikes: 2006 Bianchi Carbon 928, 2002 Gary Fisher Utopia

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
Maybe this is a coincidence...I just got my first fraudulent charge on any of my credit cards ever. $100 from CRAIGSLIST...Amex caught it and contacted me right away...
powerglide is offline  
Old 08-01-09, 07:42 AM
  #258  
cs1
Senior Member
 
cs1's Avatar
 
Join Date: Feb 2004
Location: Clev Oh
Posts: 7,091

Bikes: Specialized, Schwinn

Mentioned: 1 Post(s)
Tagged: 0 Thread(s)
Quoted: 225 Post(s)
Liked 24 Times in 22 Posts
Originally Posted by Panthers007
I'd use the 30% coupon-code if I knew a few hundred people to go in on it with me. Let's say an order for more than $100,000. This would hit Nashbar where it hurts - their financial-artery. And no less than they deserve.
Sounds great to me. Know anyone with a CC that's got a $100K limit? I sure don't.
cs1 is offline  
Old 08-01-09, 07:48 AM
  #259  
Been Around Awhile
 
I-Like-To-Bike's Avatar
 
Join Date: Oct 2004
Location: Burlington Iowa
Posts: 29,969

Bikes: Vaterland and Ragazzi

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 12 Post(s)
Liked 1,532 Times in 1,043 Posts
Originally Posted by Panthers007
I'd use the 30% coupon-code if I knew a few hundred people to go in on it with me. Let's say an order for more than $100,000. This would hit Nashbar where it hurts - their financial-artery. And no less than they deserve.
Originally Posted by cs1
Sounds great to me. Know anyone with a CC that's got a $100K limit? I sure don't.
Sure. I can handle this inspired plan. Everybody who wants in, wire $$ to me with your bicycling product orders. When I reach the $100,000 goal, I will take the appropriate action.
I-Like-To-Bike is offline  
Old 08-01-09, 07:55 AM
  #260  
Bike ≠ Car ≠ Ped.
 
BarracksSi's Avatar
 
Join Date: Jul 2007
Location: Washington, DC
Posts: 13,861

Bikes: Some bikes. Hell, they're all the same, ain't they?

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 2 Post(s)
Liked 5 Times in 4 Posts
I just remembered that I've got a $50 gift card from the Autotrader.com booth at the auto show. Assuming that I can still activate it, I could use that instead of my own card. Now I need to find something to buy that I actually need...
BarracksSi is offline  
Old 08-04-09, 03:54 PM
  #261  
Eater of carbs
 
Kinetikx's Avatar
 
Join Date: Aug 2006
Location: Daytona Beach
Posts: 215

Bikes: 1989 Trek 330

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
Almost a happy ending to my part of the story today. $100 of the $150 has been credited back to me. Only $50 left to go. Color me amazed.
Kinetikx is offline  
Old 08-06-09, 08:44 AM
  #262  
Senior Member
 
Join Date: May 2005
Location: IL-USA
Posts: 1,859
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 111 Post(s)
Likes: 0
Liked 5 Times in 5 Posts
Get a credit card that gives "one-use" numbers, and forget about it.

With Citibank, the number is only good for charges from one retailer and has a one-month expiration date. I don't ever give out my real CC number online anymore.

Someone else mentioned another company that lets you set up a maximum charge limit on a throwaway number.
~
Doug5150 is offline  
Old 08-13-09, 01:46 PM
  #263  
Unlisted member
 
no motor?'s Avatar
 
Join Date: Dec 2005
Location: Chicagoland
Posts: 6,192

Bikes: Specialized Hardrock

Mentioned: 29 Post(s)
Tagged: 0 Thread(s)
Quoted: 1376 Post(s)
Liked 432 Times in 297 Posts
I was checking my credit card statement today and there was an online charge of $15.93 from Blizzard Ent (they sell some World of Warcraft video game I didn't buy) made on a day when I wasn't online. Googling them shows a number of people with similar problems. I haven't charged anything from Nashbar using that account in quite a while and expect the two problems are unrelated. The cc has been closed and a new card is on the way.
no motor? is offline  
Old 08-13-09, 01:59 PM
  #264  
Great State of Varmint
 
Panthers007's Avatar
 
Join Date: Sep 2008
Location: Dante's Third Ring
Posts: 7,476
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 2 Post(s)
Likes: 0
Liked 15 Times in 15 Posts
Well all the credit-card theft can't be just Mushbar - it can happen elsewhere, too. Glad you closed that account.
Panthers007 is offline  
Old 08-16-09, 09:13 AM
  #265  
Member
 
Join Date: Jul 2007
Location: Fort Worth, Texas
Posts: 28

Bikes: Wiler Zero.7

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
I was also one of the Nashbar "victims". Has anyone used the 30 percent code?

I'm a little hesitant to give them more of my money after having to wrangle with various vendors to reverse fraudulent charges from the last mess (still out $60), especially because it's "only" 30 percent and I'm naturally skeptical of their claims of new security.

For a site that regularly discounts items more than 40 percent, 30 percent seems like a slap in the face for a security breach that caused a lot of consternation for many.

Perhaps I'm being unfair here, but I feel a bit insulted that they think I'll run back to them for a 30 percent discount.
stljingram is offline  
Old 08-16-09, 09:36 AM
  #266  
Banned
 
Join Date: Nov 2004
Posts: 10,082
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 4 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Originally Posted by stljingram
I was also one of the Nashbar "victims". Has anyone used the 30 percent code?

I'm a little hesitant to give them more of my money after having to wrangle with various vendors to reverse fraudulent charges from the last mess (still out $60), especially because it's "only" 30 percent and I'm naturally skeptical of their claims of new security.

For a site that regularly discounts items more than 40 percent, 30 percent seems like a slap in the face for a security breach that caused a lot of consternation for many.

Perhaps I'm being unfair here, but I feel a bit insulted that they think I'll run back to them for a 30 percent discount.
Even their 40% discounts aren't really that great as they often inflate the 'retail' price in order to give a bigger discount. Urgh.
Cyclist0383 is offline  
Old 08-16-09, 10:38 AM
  #267  
Ti
 
125psi's Avatar
 
Join Date: Aug 2008
Location: vancouver, wa
Posts: 295
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 1 Time in 1 Post
I've used them several times in the last month and no issues. I watch my accounts. Folks they are OK now.
125psi is offline  
Old 08-17-09, 02:51 PM
  #268  
Great State of Varmint
 
Panthers007's Avatar
 
Join Date: Sep 2008
Location: Dante's Third Ring
Posts: 7,476
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 2 Post(s)
Likes: 0
Liked 15 Times in 15 Posts
Looks like the got the three people behind it - allegedly:

https://www.comcast.net/articles/news...RIME-IDENTITY/
Panthers007 is offline  
Old 08-17-09, 03:37 PM
  #269  
Unlisted member
 
no motor?'s Avatar
 
Join Date: Dec 2005
Location: Chicagoland
Posts: 6,192

Bikes: Specialized Hardrock

Mentioned: 29 Post(s)
Tagged: 0 Thread(s)
Quoted: 1376 Post(s)
Liked 432 Times in 297 Posts
Originally Posted by Panthers007
Looks like the got the three people behind it - allegedly:

https://www.comcast.net/articles/news...RIME-IDENTITY/
It's on Yahoo too - on the front page.
no motor? is offline  
Old 08-17-09, 03:46 PM
  #270  
Go Leafs
 
kgriffioen's Avatar
 
Join Date: Sep 2008
Location: Milwaukee
Posts: 348
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 0 Times in 0 Posts
Originally Posted by stljingram
I was also one of the Nashbar "victims". Has anyone used the 30 percent code?

I'm a little hesitant to give them more of my money after having to wrangle with various vendors to reverse fraudulent charges from the last mess (still out $60), especially because it's "only" 30 percent and I'm naturally skeptical of their claims of new security.

For a site that regularly discounts items more than 40 percent, 30 percent seems like a slap in the face for a security breach that caused a lot of consternation for many.

Perhaps I'm being unfair here, but I feel a bit insulted that they think I'll run back to them for a 30 percent discount.
I just used it last week. Bought all kinds of stuff. Remember its 30% off of your order, not original pricing so if an item is discounted 50% lets say from 100 to 50, with the additional 30% off the cost to you would be 35. Seems like a pretty good deal to me.
kgriffioen is offline  
Old 08-17-09, 10:47 PM
  #271  
Ti
 
125psi's Avatar
 
Join Date: Aug 2008
Location: vancouver, wa
Posts: 295
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Argh... don't blame the retailer...BLAME the processors. Trust me on this.
125psi is offline  
Old 08-18-09, 12:00 AM
  #272  
Banned
 
Join Date: Nov 2004
Posts: 10,082
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 4 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Originally Posted by 125psi
Argh... don't blame the retailer...BLAME the processors. Trust me on this.
Nashbar handled the situation extremely poorly, which says a lot about them as a company.
Cyclist0383 is offline  
Old 08-18-09, 08:04 AM
  #273  
Ti
 
125psi's Avatar
 
Join Date: Aug 2008
Location: vancouver, wa
Posts: 295
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 0 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Perhaps but then I can't recall any retailer who has.
My bank issued new cards after the heartland breach weeks after it occurred. I knew of this way in advance since I'm tied in with the biz. There was a window of about 3 - 4 weeks.

Another big bank in the South had a laptop stolen with millions of CC on it.

Security is lame these days; however, things are being done to correct this. The years of blatant disregard has finally caught up.
125psi is offline  
Old 08-18-09, 08:26 AM
  #274  
Banned
 
Join Date: Nov 2004
Posts: 10,082
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 4 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Originally Posted by 125psi
Perhaps but then I can't recall any retailer who has.
My bank issued new cards after the heartland breach weeks after it occurred. I knew of this way in advance since I'm tied in with the biz. There was a window of about 3 - 4 weeks.

Another big bank in the South had a laptop stolen with millions of CC on it.

Security is lame these days; however, things are being done to correct this. The years of blatant disregard has finally caught up.
There was a window of something along the lines of six months from the time Nashbar knew about the problem to when they informed people. Six months.
Cyclist0383 is offline  
Old 08-18-09, 08:47 AM
  #275  
pedaler
 
Join Date: Jul 2008
Location: NYC
Posts: 255

Bikes: 2023 Brompton C Line Electric

Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quoted: 1 Post(s)
Likes: 0
Liked 1 Time in 1 Post
Originally Posted by Ziemas
There was a window of something along the lines of six months from the time Nashbar knew about the problem to when they informed people. Six months.
About 5 months too long for me to be tempted to use their 30% coupon.
baldsue is offline  


Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service -

Copyright © 2024 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.