Feeds

Bot-wielding hackers crash eBay holiday giveaway

eBay cares not

Protecting against web application threats using SSL

eBay users are howling in protest after discovering hackers are using automated scripts to win hundreds of steeply discounted auctions as part of a holiday season contest designed to draw visitors to the site.

Auctions for pricey items including a Green Life electric scooter and an Oscar de la Renta evening gown, which had been marked down to just $1, were scooped up even as the counter for their pages registered 0000 visitors. The Grinch stealing this year's Christmas booty were bot-armed hackers who were able to sniff out the promo pages before they went live to the public.

"This should have been advertised as a programming contest because those are the only people who can win," one eBay user complained to MSNBC's Red Tape Chronicles, which reported the story. "eBay can stop this if they want to by requiring a verification screen or something, they just don't care."

Perhaps. But that would require eBay to have an established set of contest rules, which it apparently doesn't.

An eBay spokesman first told MSNBC's Bob Sullivan the rules didn't prohibit the use of scripts to find items included in the "Holiday Doorbusters" promotion. Later, he changed that to say they might bar automated tools. Finally, the company issued a mealy-fingered email that said only that employees were "doing everything in our power to ensure that all eBay users have an equal opportunity to search for and win these hot holiday items."

So our advice to eBayers intent on winning this year is to hire a freelance programmer to scoop up the hot items before someone else gets there first. It may not be the most ethical thing you've ever done, but the deals are amazing. ®

Reducing the cost and complexity of web vulnerability management

More from The Register

next story
Spies would need SUPER POWERS to tap undersea cables
Why mess with armoured 10kV cables when land-based, and legal, snoop tools are easier?
Early result from Scots indyref vote? NAW, Jimmy - it's a SCAM
Anyone claiming to know before tomorrow is telling porkies
Apple Pay is a tidy payday for Apple with 0.15% cut, sources say
Cupertino slurps 15 cents from every $100 purchase
Israeli spies rebel over mass-snooping on innocent Palestinians
'Disciplinary treatment will be sharp and clear' vow spy-chiefs
YouTube, Amazon and Yahoo! caught in malvertising mess
Cisco says 'Kyle and Stan' attack is spreading through compromised ad networks
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
Microsoft to patch ASP.NET mess even if you don't
We know what's good for you, because we made the mess says Redmond
NORKS ban Wi-Fi and satellite internet at embassies
Crackdown on tardy diplomatic sysadmins providing accidental unfiltered internet access
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Security and trust: The backbone of doing business over the internet
Explores the current state of website security and the contributions Symantec is making to help organizations protect critical data and build trust with customers.