General Discussion Triathlon Talk » Nashbar.com ID Theft Rss Feed  
Moderators: k9car363, alicefoeller Reply
 
 
of 1
 
 
2009-07-25 9:59 PM

User image

Master
3127
2000100010025
Sunny Southern Cal
Subject: Nashbar.com ID Theft

Did anyone else just get a letter telling them that their personal info & credit card were stolen from the website?  That's awesome.  If you've shopped there, you should be aware.

That will put me on my fifth new credit card # for the year.  Is there really such a thing as information security?  Because I'm pretty sure that no company in this world bothers to do more than the absolute bare minimum, if that.



2009-07-25 11:09 PM
in reply to: #2308044

User image

Expert
2189
2000100252525
Dodge County, MN (out in the corn)
Subject: RE: Nashbar.com ID Theft

Yep.  Actually, Amex caught it way back this winter.  They issued me a new card and I'd forgotten about it until Nashbar called me about a month ago.  Sucks, but at least they were quick to isolate the problem and alert their customers.  And give free shipping.  Love free shipping!

2009-07-25 11:33 PM
in reply to: #2308106

User image

Master
3127
2000100010025
Sunny Southern Cal
Subject: RE: Nashbar.com ID Theft

Yeah, I just read the last page of the letter and the hack supposedly happened between December and March.  It's only the end of July now, thanks for the quick notification.  Already been through the bogus charges, but it could easily be from any of the other hacks I've been notified about, too.  Or the hacks that haven't been discovered yet...

2009-07-26 9:27 AM
in reply to: #2308044

Extreme Veteran
454
1001001001002525
OKC
Subject: RE: Nashbar.com ID Theft
Got the letter ~3 months after my card company contacted me about what it considered bogus charges.
2009-07-26 8:18 PM
in reply to: #2308044

User image

Pro
5011
5000
Twin Cities
Subject: RE: Nashbar.com ID Theft
Yes. And I looked back, and see nothing untoward since I got my last new card, so I pretty much disregarded it.
2009-07-27 7:47 AM
in reply to: #2308044

User image

Master
1704
1000500100100
Charlotte
Subject: RE: Nashbar.com ID Theft
Yes and I did have my CC # stolen.  Fortunately the crooks were pretty timid and only charged me about 4 songs on iTunes (all of which were blocked by my CC company as suspicious).  They used the cc # within a couple days of me placing the nashbar order.   Didn't put 2 and 2 together until the letter from nashbar came.

Will use the 30% discount though!


2009-07-27 7:51 AM
in reply to: #2308044

User image

Elite
3371
200010001001001002525
Subject: RE: Nashbar.com ID Theft
I had $2000 in bogus charges in March.  Got it all back, but the hassle is always annoying.  Changed cards twice since then.  Got the letter too...at least they did it.  But really 30% off your next order doesn't make up for it.
2009-07-27 8:02 AM
in reply to: #2308044

User image

Extreme Veteran
597
500252525
Fairfax
Subject: RE: Nashbar.com ID Theft
I started using Paypal's Secure Card which can generate a one-time use (or multiple use) CC # for buying stuff online.  I use it to buy from PBK because of the identity theft problems and have had no issues.
2009-07-27 8:23 AM
in reply to: #2308044

User image

Pro
4507
20002000500
Simpsonville, SC
Subject: RE: Nashbar.com ID Theft
Yes. And they tried the iTunes thing with my card too (which was blocked by my CC company).
2009-07-27 8:33 AM
in reply to: #2308044

User image

Master
1920
1000500100100100100
Ann Arbor, MI
Subject: RE: Nashbar.com ID Theft
So it was a stolen credit card #, not your whole identity, right? I mean, it still sucks, but isn't ID theft way, way worse? I'm asking, cause I just bought something from Nashbar
2009-07-27 8:34 AM
in reply to: #2309642

User image

Elite
3371
200010001001001002525
Subject: RE: Nashbar.com ID Theft
jazz82482 - 2009-07-27 9:33 AM So it was a stolen credit card #, not your whole identity, right? I mean, it still sucks, but isn't ID theft way, way worse? I'm asking, cause I just bought something from Nashbar


Correct.  No ssn's involved.


2009-07-27 8:35 AM
in reply to: #2308044

User image

Master
2277
2000100100252525
Lake Norman, NC
Subject: RE: Nashbar.com ID Theft

SevenZulu - 2009-07-25 10:59 PM

Is there really such a thing as information security?  Because I'm pretty sure that no company in this world bothers to do more than the absolute bare minimum, if that.



We do!  (Food Lion, Bloom, Reid's, Harvey's & Bottom Dollar grocery stores).  We were pretty tight, but when our sister company, Hannaford Brothers had an ugly breech last year, that really lit a candle under us.  I can't go into details, but I'm one of the leads on the team taking us to an all new level of security.  By year's end our customer's private data will be as secure as it possibly can be.  Probably the most in the retail industry.  If there is a breech, we'll at least be able to spot it fast enough to limit the damage to the number of credit/debit cards transactioned within just a few minutes.  No one every thinks that a grocery store chain would be the target of organized white collar crime.  But we transmit something like 1.5 million credit/debit cards every day through our company.

I can asure you that the laws, rules and PCI are getting considerably tougher and at least my company is going well above and beyond the bare minimum.

I advise people NOT to use debit cards.  They directly link to your checking account and the cards are not as secure as you would think.

Credit cards are safer because the number can quickly be canceled and replaced (as you well know five times this year).  It may be a pain, but it's better than having your bank account emptied.

If you have an online way of checking your cc transactions, check it on a daily basis to look for fraud.

If you don't swipe the card yourself or can't see the card the whole time the clerk runs it,  I would recommend using cash.  Places like restaraunts where the waiter walks away with it can be a bit risky.  It's very easy to quickly clone a card.  Places like retail, grocery, gas, convenience store, etc where you use the card or see the card are safer.

You can relax a little.  At least in some companies (like mine) we have 20+ very paranoid Information Security people who consider themselves "cops".  My counterpart over there spent most of his earlier career in Air Force Intelligence.  He treats information security around here like this place is Fort Knox.

2009-07-27 8:35 AM
in reply to: #2308044

User image

Expert
1053
10002525
Culpeper, VA
Subject: RE: Nashbar.com ID Theft
Haven't seen the letter, but I caught wind of this on another forum some time ago.  I sent an e-mail to them and they flatly denied anything was wrong, which I gathered was a lie after reading some of the stories.  I.E. "I got a brand new card and only used it one place... next thing you know bogus charges, pink ring sent to my house, etc."  I know it wasn't them, but their card processor that got hacked(I think), but I'm still very uneasy about ordering from them.  In fact I don't plan on buying from them again.  Nothing has jumped on my card that I've seen, but I'm still worried that my CC info is out there somewhere in someone's hands.  Those single use CC #'s are sounding like the only way to buy things anymore.  
2009-07-27 3:42 PM
in reply to: #2308044

User image

Champion
10742
5000500050010010025
Ames, IA
Subject: RE: Nashbar.com ID Theft
Just got the letter today and now I know why I had to deal with bogus cc charges 3 or 4 months ago.  Really?  Just 30% off?  That makes up for it.
2009-07-27 3:45 PM
in reply to: #2308044

User image

Science Nerd
28760
50005000500050005000200010005001001002525
Redwood City, California
Subject: RE: Nashbar.com ID Theft
Both of the cards we used at Nashbar were used and then closed in October and December.  We just found out about it. 

Nashbar has annoyed me for awhile with the way they change prices.  I won't shop there again after this.
2009-07-27 3:51 PM
in reply to: #2308044

User image

Expert
856
5001001001002525
Pittsburgh
Subject: RE: Nashbar.com ID Theft
I got the letter as well. 

I had a number of charges against a credit card back in February, so that card was changed.  I started getting all sorts of crap in the mail that people ordered for me - chocolate covered strawberries, business cards, acai berry diet pills, and some other stuff.  All were cheap intro offers, and I was signed up for recurring "monthly" payments and whatever club it was.  Credit card company took care of all the charges.

Then in March, same thing happened again to my debit card. Frown  Not pleased at all with that because it was quite a hassle to have the money put back in my bank account.

So I was at least happy to know where the theft came from.  I haven't ordered from them in over a year, and don't really plan to again.


Edited by willie05 2009-07-27 3:52 PM


2009-07-27 3:54 PM
in reply to: #2308044

User image

Miami,FL
Subject: RE: Nashbar.com ID Theft
Both my credit and debit card information was stolen, they bought a bunch of crap. They sent me new cards.
2009-07-27 3:56 PM
in reply to: #2308044

User image

Pro
3705
20001000500100100
Vestavia Hills
Subject: RE: Nashbar.com ID Theft
When did this breach happen? My credit card company called me some three to four weeks ago (?) to say that there were a number of strange charges that they blocked.  I have ordered from them a number of times but did not get a letter from Nashbar. 

2009-07-28 12:22 AM
in reply to: #2308044

User image

Expert
878
500100100100252525
Carmel
Subject: RE: Nashbar.com ID Theft
I got the letter, I had some charges in April but I caught it and actually got the charges reversed from the companies where they were made and just cancelled the account.

The companies still sent me the crap that was ordered after they refunded me. I got "lucky" so to speak bc I moved so the address that was on file did not let any charges post, I caught them all while they were pending.
2009-07-28 10:51 AM
in reply to: #2311760

User image

Pro
6582
50001000500252525
Melbourne FL
Gold member
Subject: RE: Nashbar.com ID Theft
Wow!
I wonder if this is the source of a $3000 plane ticket to Spain on my old card back in Feb?  CC company contacted me ASAP when it was attempted, nice catch.
2009-07-28 11:35 AM
in reply to: #2308044

User image

Extreme Veteran
574
5002525
Crossville, TN
Subject: RE: Nashbar.com ID Theft
They blocked my card and sent me a new one because someone tried to use mine to buy a $1.25 New York Times paper back in March.


2009-07-28 11:56 AM
in reply to: #2308044

User image

Extreme Veteran
444
10010010010025
Olathe, KS
Subject: RE: Nashbar.com ID Theft
My husband got the letter yesterday - he just ordered some things from Nashbar a couple weeks ago (and had in the past as well). I didn't get a letter (maybe because I moved somewhat recently), but I did have weird charges show up on my credit card. I purchased some winter riding gear from Nashbar back in the fall of 2007 I believe, and hadn't done any business with them since, so I can't say for sure that's where my info was stolen, but I've never had any other problems. I had only two small charges - one for gglprofit, which after some google searching, I found associated with other ppl who'd purchased via Nashbar. I was also signed me up for a random shopping website, with a monthly fee. I'd never even heard of the place before. Weird stuff. Luckily, I caught it early, and got a new cc #, but it's still a hassle.


Edited by LindaKC 2009-07-28 11:58 AM
2009-07-28 12:03 PM
in reply to: #2308044

User image

Pro
5123
5000100
Canandaigua NY
Subject: RE: Nashbar.com ID Theft

I got an odd call from my credit card company one Saturday night back in February about potentially fraudulant charges.  They were i-tunes, small charges that the fraud investigator said were typically used to test a stolen credit card number.  They cancelled the card and I imediately started watching my debit card for similar transactions.  A week or 2 later some concert tickets, airplane tickets and clothing charges appeared.  I disputed the charges with my bank and cancelled the card.  After they did their investigation, the charges were refunded.  A bit agravating but not an overwhelming process.  It definately taught me to check my account on line at least a couple of times a week!

I always suspected it was Nashbar, as it was the common denominator between the 2 cards, but never pursued it.

FWIW, although this is the first time it lead to fraudulent charges, we have been caught up in a few companies security issues (not all of them on line, like TJ Maxx) and this is the first time the vendor gave us a discount for our "inconvenience". 

2009-07-28 12:03 PM
in reply to: #2308044

User image

Pro
4528
2000200050025
Norwalk, Connecticut
Subject: RE: Nashbar.com ID Theft
just replaced 3 cards, 15 fraudulent charges, most under 10 bucks, more hassel than anything.

2009-07-28 2:20 PM
in reply to: #2308044

User image

Veteran
183
100252525
Grand Rapids, MN.
Subject: RE: Nashbar.com ID Theft
yep, I got hit as well, on charge for an online meeting club, plus a $3500 dollar car in Colorado. Looks like discover wrote them all off for me. I'm waiting for the right price on a new trainer, and am going to try to get them to add the 30% to whatever offer is out there as well. It's worth a try.
New Thread
General Discussion Triathlon Talk » Nashbar.com ID Theft Rss Feed  
 
 
of 1