FlyerTalk Forums - View Single Post - BA Investigating Theft of Personal and Financial Data
Old Sep 11, 2018, 5:18 am
  #904  
EvilDoctorK
 
Join Date: Apr 2001
Location: LON
Programs: BA Gold, LH SEN , A3*G & others less exciting that don't fit in my wallet
Posts: 1,657
Originally Posted by Steve_ZA
Very interesting reading and it means that if this was the only attack that took place then the information that BA has shared about stored cards (that were used) being at risk is at least partially incorrect. The CVC numbers from those cards would have been redirected but not the card number itself. They would have any other information entered on the booking page which could add some puzzle pieces to data from another attack.
Yeah I think from reading that it the script would only have grabbed ******* 1234 from the card number field .. it would have grabbed the CVV as that's entered in .. but if this is correct ( and it sounds convincing) then I don't see how they'd have gotten the full number from a 'stored card'

Last edited by EvilDoctorK; Sep 11, 2018 at 5:23 am
EvilDoctorK is offline