Thousands Hit In OnePlus Credit Card Hack

OnePlus phonesImage copyright OnePlus
Image caption OnePlus said the card-stealing script was active for about two months

Up to 40,000 people were caught out by hackers who stole credit card details from the site of phone maker OnePlus.

The company stopped taking card payments via its site earlier this week after learning about the attack.

An investigation has revealed that attackers stole data by exploiting a loophole in its payment system between mid-November 2017 and 11 January.

The company apologised and said affected customers would get free help to resolve card problems.

In a statement posted to its community forum, OnePlus confirmed that it had been attacked adding: "a malicious script was injected into the payment page code to sniff out credit card info while it was being entered".

It said the malicious script ran "intermittently" and has now been expunged from the affected server.

The loophole in its payment system that it exploited had also been eliminated, it added.

OnePlus said that only customers who entered their credit card details for the first time on its site between the two dates would be affected.

Anyone who had submitted those card details before mid-November or after 11 January or who used a different payment method, such as Paypal, would not have been caught out.

All those whose credit card numbers were scooped up by the script have been contacted via email.

The company learned about the theft of data from its support site when customers started reporting fraudulent charges turning up on statements.

It urged anyone who might have been among the victims to check statements to see if any bogus bills had been charged to their cards.

A spokeswoman for OnePlus said it would offer credit monitoring to everyone who had been affected and would also set up a hotline that people could call to get help resolving payment and card issues.

"We cannot apologise enough for letting something like this happen," wrote OnePlus in its update.

RECENT NEWS

From Chip War To Cloud War: The Next Frontier In Global Tech Competition

The global chip war, characterized by intense competition among nations and corporations for supremacy in semiconductor ... Read more

The High Stakes Of Tech Regulation: Security Risks And Market Dynamics

The influence of tech giants in the global economy continues to grow, raising crucial questions about how to balance sec... Read more

The Tyranny Of Instagram Interiors: Why It's Time To Break Free From Algorithm-Driven Aesthetics

Instagram has become a dominant force in shaping interior design trends, offering a seemingly endless stream of inspirat... Read more

The Data Crunch In AI: Strategies For Sustainability

Exploring solutions to the imminent exhaustion of internet data for AI training.As the artificial intelligence (AI) indu... Read more

Google Abandons Four-Year Effort To Remove Cookies From Chrome Browser

After four years of dedicated effort, Google has decided to abandon its plan to remove third-party cookies from its Chro... Read more

LinkedIn Embraces AI And Gamification To Drive User Engagement And Revenue

In an effort to tackle slowing revenue growth and enhance user engagement, LinkedIn is turning to artificial intelligenc... Read more