eBay mandates developer password change

eBay mandates developer password change
eBay mandates developer password change

The giant web marketplace site eBay has warned developers of a security vulnerability, and is requiring that they change their credentials immediately.

Kumar Kandaswamy, manager of the eBay Developers Program, posted a notification Monday that warned: “eBay has recently identified a means by which someone could gain access to eBay Developers Program account information.”

“We are requiring that all developers take the following steps: Take advantage of our new, stricter password standards and change your eBay Developers Program passwords," he wrote. "If you believe you or your customers have been the victim of fraudulent activity, contact us immediately."

Kandaswamy said access to the Developers Program account does not allow the capture of financial or other sensitive information, such as credit card, bank account information or Social Security numbers.

“Fortunately, we have not detected any unusual activity with any developer account,” he said.

Software developers in the eBay Developers Program can build and offer applications that integrate with eBay through the eBay application programming interface (API), to create services, for example, to manage listing, bidding, checkout and shipping tasks.

eBay did not respond to a request for comment Tuesday.

 

Sign up to our newsletters

More in News

Bitcoin mining botnet has become one of the most prevalent cyber threats

Fortinet researchers have tracked 100,000 new ZeroAccess trojan infections per week, making the botnet very lucrative to its owners.

House Intelligence Committee OKs amended version of controversial CISPA

House Intelligence Committee OKs amended version of controversial ...

Despite the 18-to-2 vote in favor of the bill proposal, privacy advocates likely will not be satisfied, considering two key amendments reportedly were shot down.

Judge rules hospital can ask ISP for help in ID'ing alleged hackers

Judge rules hospital can ask ISP for help ...

The case stems from two incidents where at least one individual is accused of accessing the hospital's network to spread "defamatory" messages to employees.