on 30-09-2011 12:38
on 30-09-2011 12:38
on 17-05-2012 23:59
on 17-05-2012 23:59
Yes I got the same results for your name
We are sorry but no results matched your search, please check the spelling or try one of the recommendations below.
on 18-05-2012 01:54
on 18-05-2012 01:54
Simply having your name and address shouldn't beat security, that's daft!
on 18-05-2012 06:37
<Simply having your name and address shouldn't beat security, that's daft>
But add in mothers madien name and other security details and its easy in some cases to 2nd guess additonal details.
Security is hard to get to the right level. To high and losts of people fail, causing complaints. To lax and can cause hacked accounts.
But as I said far too much personal info is avaiable on the internet (Ancestry.co.uk ). People want easy access to create a faimily tree, but fail to forget that to a fraudster these sites are goldmines for security information.
How often do you ring o2 ? So being able to remember what you set as your security. This then causes issues as many people simply fail security and then kick off, that they know who they are and as such the operator must know who they are.....
I wonder how many people simply expect to get through security with name and phone no..... As clearly they know who they are and their phone no, so clearly it has to be them....
So in cases like this, a simple text to the cm phone no with a pin code. Could solve the issue.
But at the end of the day many people move or change their details and fail to update companies. In these case how do you suggest companies work round this when some fails security?
on 18-05-2012 10:12
on 18-05-2012 10:12
on 18-05-2012 10:23
@ewanrw wrote:
To be fair, O2 aren't the only ones in same situation.
My Dad had forgotten his password for T-Mobile, but was still allowed access to his account by being persistent, and was then also allowed to change to a new password.
ewan
Is that really relevant ?...........just because one company has poor security procedures does that make it acceptable for every company to follow ?
on 18-05-2012 12:36
@O2MACH2 wrote:
Is that really relevant ?...........
yes it is.
I'm grumpy cos I'm decorating, what's your excuse.
on 18-05-2012 12:49
on 18-05-2012 12:49
There are other ways that O2 implement security such as date and amount of last bill, most regularly called number, date, method and amount of last top up, what tariff you are on, bank details on account for direct debit, email address etc.
All these should be verified if a customer wants to order a phone shortly after the address is changed on the account. As suggested, a pin number sent to the mobile on the account to confirm an address change would be simple to implement.
on 18-05-2012 13:25
@Anonymous wrote:what's your excuse.
It's Friday.....my day for being antagonistic
on 18-05-2012 16:09
on 18-05-2012 16:09
@O2MACH2 wrote:Is that really relevant ?...........just because one company has poor security procedures does that make it acceptable for every company to follow ?
It's entriely relevant as it highlights that O2 are not the only ones with the same issues. It's not a case of following.
The problem I suspect is down to 3rd party call centres, with high staff turnover, and where the responsibility for a mistake is easier to hide, but us, as consumers are probably partly to blame also; We complain when we can't access our own accounts because we can't remember our own security questions, and we complain when security is too tight.
And although it is not acceptible for accounts to be hacked, the number of people it happens to, is a tiny precentage of 70-odd million mobile customers in the UK, which would indicate that they are doing a fairly good job at getting their security levels correct.
Just my 2p worth.
ewan
on 18-05-2012 16:28
@ewanrw wrote:It's entriely relevant as it highlights that O2 are not the only ones with the same issues.
But we're only concerned with how O2 deal with security procedures.....that's why I said "is that really relevant".
But, if you're saying that it's the mobile phone industry's standard that anybody can phone up and change anybody else's personal details then that is a different matter.....but I don't think you are.
I couldn't care less what security procedures Vodafone, T-Mobile, Orange etc use because those don't affect me.