cancel
Showing results for 
Search instead for 
Did you mean: 

Security hole on O2 website

Anonymous
Not applicable
I didn't want to have to post this publicly, but customer services have ignored me (and hung up twice), and my emails are unanswered.
So
There is a nasty security bug on the 02 website. I changed my password via the lost password link and found my new username and password in the clear in my browsers history. Anyone using that browser can therefore see my credentials and use them to log into the site.
Hey O2 - Please get in touch so I can tell you about this and you can fix it.
Thanks
Message 1 of 20
1,815 Views
19 REPLIES 19

Anonymous
Not applicable
There is just other users here, no o2 participation!
Message 2 of 20
1,314 Views

Abs
O2 Social Media Team
O2 Social Media Team
  • 1014 Posts
  • 107 Topics
  • 8 Solutions
Registered:
Hi dmcg123,
I've tried to replicate the issue but didn't discover any user credentials in the browser history or in the URL. Could you please check this one again from your side and if required we can get our technical engineers to investigate this for you.
Thanks
Abs
Message 3 of 20
1,314 Views

Anonymous
Not applicable
Still there - steps to replicate (at least in Firefox Mac)
Steps removed
Thanks
Message 4 of 20
1,314 Views

Anonymous
Not applicable
I can't replicate this. Which browser are you using?
Message 5 of 20
1,314 Views

Anonymous
Not applicable
Still there - steps to replicate (at least in Firefox Mac)
Message 6 of 20
1,314 Views

Anonymous
Not applicable
Message 7 of 20
1,314 Views

Anonymous
Not applicable
Also applies to Chrome. Hard to believe that it only happens on Mac, but not tested on Windows.
Message 8 of 20
1,314 Views

Abs
O2 Social Media Team
O2 Social Media Team
  • 1014 Posts
  • 107 Topics
  • 8 Solutions
Registered:
Thanks for the screen-shot dmcg123,
I'll try to replicate the issue on a mac (with safari, FireFox browser) as it doesn't seems to affect windows based OS.
Abs
Message 9 of 20
1,314 Views

Anonymous
Not applicable
I don't think that you're trying hard enough - it's there in the browser history on Firefox 3.6.13 on Windows XP
Can we take this discussion to email please.
D
Message 10 of 20
1,314 Views