Quantcast LiveSide - Windows Live news and interviews
LiveSide on the Windows Live Network LiveSide on Facebook LiveSide on Twitter LiveSide RSS  
Translate this page
MoFuse
LiveSide - News blog

Hotmail Lead Program Manager's email compromised

Wow don't really know what to say about this.  Omar Shahine, a Lead Program Manager for Hotmail, who we've interviewed and had numerous conversations with about Hotmail, has apparently had his email account hijacked. Omar posted this tonight:

What do you do when some one:

  1. hacks into your account
  2. changes your password
  3. changes your secret question
  4. changes your "alternate email address"
  5. changes all your profile information
  6. sets up mail forwarding to another account
  7. Turn on the exclusive junk filter (deleting all your email)
  8. Deletes your life (email, contacts etc)

That is what I found this evening. I believe that some one managed to issue a password reset command to my account and then somehow logged in and reset my password essentially owning my data.

Don't really know what to say about this one, other than "sorry, Omar".  Ouch.

Comments

Mephiles wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 10:21 AM

I think it's sick that someone would actually want to do that! Omar would be feeling horrified right now.

Alex wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 10:33 AM

Ouch. O, the irony.

Now I'm wondering what his password or secret question was...

BV2312 wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 12:14 PM

No rollback? I think Hotmail should implement just incase you delete something or someone else deletes something for you

WyzyrdMyrrlyn wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 1:30 PM

i bet it was some determined hacker who just HAD to do that. the lead hotmail program manager's email, compromised. thats going to send a message....

kenbw2 wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 2:05 PM

I feel sorry for the guy. However, if these things were important then shouldn't he have backed it all up? Even in WLMail or something...

JonT wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 3:23 PM

ouch, thats harsh. Funny this story should come up on the same night i find a password reset email in my inbox.

JonT wrote re: Hotmail Lead Program Manager's email compromised
on 02-11-2008 3:32 PM

Also I just realised how bad this could be, with the email linking feature the attacker could then access all your linked accounts too.

CalumJR wrote re: Hotmail Lead Program Manager's email compromised
on 02-12-2008 3:32 AM

This is very shocking. I would have thought the program manager of WLHotmail would have been more secure with his password and secret question. I would have also thought he would have backed up his contacts and exported them. And also his emails, if there is a way?

rgonzruiz wrote re: Hotmail Lead Program Manager's email compromised
on 02-12-2008 7:56 AM

Exactly the same misfortune happened to me on early 2001 with my hotmail account... At that time I already had my account associated with some MSN Premium services and it took me a couple of weeks to prove my identity and ownership of the account to the hotmail customer support team... I even created a @msn.com account in the mean time to be able to chat in msn and stuff... The hacker had even changed my account's language to swedish or something like that, so when I was able to log in again, no only had I lost everything just like Omar, but also I had no idea where the menus for changing any settings where :DDDD

I use strong passwords since, as well as not-so-easy security Q&A's...

But ever since, once in a while I come to think of how dependent one becomes with their email addresses... I use my hotmail and gmail accounts for so many services (from my company's MS Partnership login and stuff to payment gateways linked to my gmail or hotmail accounts), that, although it would not be difficult to prove my ownership, it would certainly be a mess to lose for a couple of days...

Its no fun at all knowing that even now there are still security holes that allow for this to happen in the Windows Live services, and even scarier knowing that forever there will be a never-ending battle between the IT and the hackers worlds, and that once in a while you might end up as collateral...

Sign In Live ID using Live ID, Name/Password, or OpenID
or Join LiveSide to leave a comment!