Go Back  FlyerTalk Forums > Miles&Points > Hotels and Places to Stay > Hilton | Hilton Honors
Reload this Page >

Consolidated "CAPTCHA for logging in?" thread

Community
Wiki Posts
Search
Old Oct 22, 2014, 4:27 pm
FlyerTalk Forums Expert How-Tos and Guides
Last edit by: davie355
HHonors Sign In (if the link has disappeared)

https://secure3.hilton.com/en/hh/customer/login/index.htm
Print Wikipost

Consolidated "CAPTCHA for logging in?" thread

Thread Tools
 
Search this Thread
 
Old Oct 20, 2014, 12:04 pm
  #91  
FlyerTalk Evangelist
Four Seasons Contributor BadgeMandarin Oriental Contributor Badge
 
Join Date: Feb 1999
Location: Seat 1A, Juice pretty much everywhere, Mucci des Coins Exotiques
Posts: 34,339
What is that 919-post thread supposed to tell us? And how would Captcha have prevented whatever happened? And most of all, how many people did it affect? I only see a very short list in the Wiki.

If it is a brute-force attack, prevention against that is common amongst many websites that do not need such things as Captcha.
stimpy is offline  
Old Oct 20, 2014, 4:44 pm
  #92  
FlyerTalk Evangelist
 
Join Date: Jun 2004
Location: MSP
Programs: DL PM, MM, NR; HH Diamond, Bonvoy LT Gold, Hyatt Explorist, IHG Diamond, others
Posts: 12,159
Originally Posted by NickW
[*]locking the account after several incorrect login attempts, with an email sent with an unlock link
If the attacker has a list of 1,000,000 account numbers without PINs, he can attack them once each (breaking 100 on the first pass) without anything getting locked.
sethb is offline  
Old Oct 21, 2014, 4:50 am
  #93  
 
Join Date: May 2012
Programs: Hilton Diamond DL Platinum UA 1K, DL Gold, Marriott Gold
Posts: 500
The idiocy continues. Try to sign in Captcha gave me easy to read 3 numbers. Then said I typed wrong number. I might be old but I am not Blind. Then it gave me 4 numbers easy to read and again it told me wrong. Then I typed in the same numbers and it accepted it.

Where is the Hilton Rep on this board to tell what Hilton is doing about the hacking, the stolen points (258,000) not yet returned and this useless Captcha.

How can this be a mult billion dollar company . Some people are going to get a rude awakening when they try to sign in and can't and all their points are gone.

Does Hilton Care?? , I guess they don't!!!
kapkap46 is offline  
Old Oct 21, 2014, 6:04 am
  #94  
 
Join Date: Nov 2006
Location: Tulsa, OK
Programs: HHonors Diamond, SPG Gold
Posts: 306
Originally Posted by sethb
I'd never seen the capcha going directly to Hilton.com; however, when I followed a link from an event (for their special rate), the login page did require one.

Awardwallet is still updating Hhonors points correctly for me.
Anybody else able to login without captcha? I see it every time.
I have more and more accounts that awardwallet is unable to automatically update.
jrjcopp is offline  
Old Oct 21, 2014, 3:15 pm
  #95  
In Memoriam
 
Join Date: Jul 2001
Posts: 35,555
I had another revelation how STUPID this is.

I am at the Conrad in INDY, how does an HHonors customer gain access to the internet? Well, you give your account number and pin over an unsecured network.

Brilliant, just brilliant!
underpressure is offline  
Old Oct 21, 2014, 3:18 pm
  #96  
 
Join Date: Nov 2013
Posts: 4,374
Originally Posted by underpressure
I had another revelation how STUPID this is.

I am at the Conrad in INDY, how does an HHonors customer gain access to the internet? Well, you give your account number and pin over an unsecured network.

Brilliant, just brilliant!
That is not true. The transmission is encrypted.
davie355 is offline  
Old Oct 21, 2014, 5:15 pm
  #97  
In Memoriam
 
Join Date: Jul 2001
Posts: 35,555
Originally Posted by davie355
That is not true. The transmission is encrypted.
If THAT is encrypted, why are we talking about CAPTCHA?
underpressure is offline  
Old Oct 21, 2014, 5:25 pm
  #98  
 
Join Date: May 2012
Programs: Hilton Diamond DL Platinum UA 1K, DL Gold, Marriott Gold
Posts: 500
The Saga continues with this Idiot Corporation.

To day I logged into my new account # and selected My Reservations.

Clicked on one to change (actually add mores date for this Moron Corporation)

It says this reservation does not belong to this account . So 22 future reservations I am unable to select.

Back to another 30 minute overseas call to see if they can fix this

I said before 3rd graders would do abetter job in IT. Kindergarden would do better.

I am still waiting for my 258,000 points to be returned.
kapkap46 is offline  
Old Oct 21, 2014, 11:36 pm
  #99  
 
Join Date: Jan 2006
Location: RIX
Programs: SAS Lifetime Gold, HHonors Lifetime Diamond, TK*G Elite+, airBaltic VIP, Sixt Plat, Hertz Gold
Posts: 1,079
Mobile application comes handy. It just shows account without any b*sht.
I don't update mobile app coz I'm afraid of mobile CAPTCHA.

Audio challenge is much easier for web sing in. Still wrong & annoying.
dabee69 is offline  
Old Oct 22, 2014, 2:10 am
  #100  
 
Join Date: Jan 2013
Programs: UA 1K, Hilton Gold, Marriott Gold
Posts: 304
I finally gave up trying to login to make a reservation - I'll book with Marriott tomorrow.
sogboulder is offline  
Old Oct 22, 2014, 5:03 am
  #101  
 
Join Date: May 2010
Location: PHL
Programs: AA EXP, UA *S, Hilton Diamond, Marriott Titanium, Hyatt Exp, IHG Plat, National EE, Sixt Plat
Posts: 648
Well, it looks like Hilton's found an even more secure method than captcha... they've removed all login links from their site entirely. Let us all congratulate them on fixing the problem!!

http://screencast.com/t/21xnINrQTZ
http://screencast.com/t/6aOpi9Ec6hZ

Update: If you run into this problem, try clearing your cookies. That fixed it for me.

Last edited by sjpmurph01; Oct 22, 2014 at 5:18 am
sjpmurph01 is offline  
Old Oct 22, 2014, 5:08 am
  #102  
FlyerTalk Evangelist
Four Seasons Contributor BadgeMandarin Oriental Contributor Badge
 
Join Date: Feb 1999
Location: Seat 1A, Juice pretty much everywhere, Mucci des Coins Exotiques
Posts: 34,339
That may just be your PC. I see the login link here and it brings me to the lovely Captcha page.
stimpy is offline  
Old Oct 22, 2014, 5:18 am
  #103  
 
Join Date: Aug 2012
Location: SLC
Programs: DL FO, KM, & 1.7MM; UA nothing; HH♦; National EE
Posts: 6,344
Originally Posted by dabee69
...web sing in...
Please don't give them any ideas. Captcha is bad enough. Many people have almost no singing abilities.
Howste is offline  
Old Oct 22, 2014, 6:35 am
  #104  
alc
 
Join Date: Dec 2008
Posts: 4,519
Originally Posted by sjpmurph01
Well, it looks like Hilton's found an even more secure method than captcha... they've removed all login links from their site entirely. Let us all congratulate them on fixing the problem!!

http://screencast.com/t/21xnINrQTZ
http://screencast.com/t/6aOpi9Ec6hZ

Update: If you run into this problem, try clearing your cookies. That fixed it for me.
Just another idea for those (like me this morning) that even after clearing your cookies can't show the login, you do the following:

- Perform a random search for a hotel stating you want to use your HHonors points
- When the result show up, click to book the room
- Select the Hhonors rate and the login pop-up will show
- Once you login, then you can go back to "My Account"
alc is offline  
Old Oct 22, 2014, 7:11 am
  #105  
 
Join Date: May 2005
Location: Cote d'Ivoire
Programs: OW Emerald - HH Diamond
Posts: 3,416
Thanks to FT, at least I know I'm not NOT seeing things. No login fields for me this morning. Excellent!
Abidjan is offline  


Contact Us - Manage Preferences - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service -

This site is owned, operated, and maintained by MH Sub I, LLC dba Internet Brands. Copyright © 2024 MH Sub I, LLC dba Internet Brands. All rights reserved. Designated trademarks are the property of their respective owners.