Live data from Hacker News

NameCheap's email hacked to send Metamask, DHL phishing emails

bleepingcomputer.com

31–40 of 114 posts

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#31

Seems like the hackers also had access to at least some customer data. Several people I know who were also Namecheap clients, including me, received those emails. Whether that data was also stored with the upstream provider remains to be seen. Might be an even bigger deal.

A third part email provider we use for our newsletter was impacted. Our own systems and customer accounts were not breached.

You and who else? If it's one of your employees credentials getting compromised this excuse isn't going to age well and will do more harm than good. I assume you're using a big provider and there would be news of others being affected.

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#33
post #29
post #27

Earlier quoted context omitted.

I just wanted to add another note in favor of Fastmail. I switched from Gmail this year as part of an early new year's resolution and have been far happier with their service thus far. Especially with how aliases are handled.

If only their app and spam filtering weren’t garbage. I made the move from gmail a while ago but it’s been kinda meh tbh.

I use and like Fastmail but yes their spam filter both catches legit e-mail and lets some spam through. I’d say overall it’s a bit more of the former than the latter.

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#34
post #20

Earlier quoted context omitted.

I can corroborate the same, no spam As of now I haven't yet received spam/phishing from this breach either

me too - I haven't received anything from namecheap despite being a customer for 10 years or so

FWIW, I also have some namecheap domains and I didn't get anything

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#35

To be clear, the issue was with a 3rd party provider that we use to send our newsletter. None of our own systems or customer accounts where breached. I sent a follow up email to all users that were affected. The domains linked in the original phishing emails were also disabled. I apologize for this issue and to anyone it may have affected. We have also taken immediate steps to insure it will not happen again.

[flagged]

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#36

To be clear, the issue was with a 3rd party provider that we use to send our newsletter. None of our own systems or customer accounts where breached. I sent a follow up email to all users that were affected. The domains linked in the original phishing emails were also disabled. I apologize for this issue and to anyone it may have affected. We have also taken immediate steps to insure it will not happen again.

[flagged]

Yeah! Like why is Microsoft lying by no longer being “micro.” They’re way too big for that name.

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#37

To be clear, the issue was with a 3rd party provider that we use to send our newsletter. None of our own systems or customer accounts where breached. I sent a follow up email to all users that were affected. The domains linked in the original phishing emails were also disabled. I apologize for this issue and to anyone it may have affected. We have also taken immediate steps to insure it will not happen again.

[flagged]

Namecheap is still reasonably cost competitive. I use them for a few domains I own and haven’t had any major issues and found the price closer to other well known competitors.

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#38

To be clear, the issue was with a 3rd party provider that we use to send our newsletter. None of our own systems or customer accounts where breached. I sent a follow up email to all users that were affected. The domains linked in the original phishing emails were also disabled. I apologize for this issue and to anyone it may have affected. We have also taken immediate steps to insure it will not happen again.

So… What happened? Did you get your keys stolen out of a CI or something? It just seems suspicious that you’d be the only business affected by this 3rd party provider.

I don't think this is unique to NameCheap, I've gotten both metamask and DHL emails from other lists I'm on, I assume from the same threat actor. I would assume that they're opportunistically using whatever mailing list they can gain access to.

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#39

To be clear, the issue was with a 3rd party provider that we use to send our newsletter. None of our own systems or customer accounts where breached. I sent a follow up email to all users that were affected. The domains linked in the original phishing emails were also disabled. I apologize for this issue and to anyone it may have affected. We have also taken immediate steps to insure it will not happen again.

So… What happened? Did you get your keys stolen out of a CI or something? It just seems suspicious that you’d be the only business affected by this 3rd party provider.

If I have a business and I use a company like sendgrid, I have credentials to use that service. If some employee has access to that account (such as to send newsletters), and that employee’s credentials were lost or stolen, that doesn’t seems suspicious at all.

I don’t have any inside info here, but it makes sense. And as a namecheap customer, I see no reason to panic at this time.

Re: NameCheap's email hacked to send Metamask, DHL phishing emails

#40
post #37

Earlier quoted context omitted.

[flagged]

Namecheap is still reasonably cost competitive. I use them for a few domains I own and haven’t had any major issues and found the price closer to other well known competitors.

Porkbun is cheaper
Post reply on HN