- ArMyZ security issues weekly roundup | 21-01-2012 – http://t.co/cdtc4rIC 00:53:11, 2012-01-22
- Interesting approach – Is Clicking A Link A Crime? #Anonymous #Attack #awareness http://t.co/L9sbZPqS #li #willing #participant 11:07:19, 2012-01-22
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 16:20:56, 2012-01-22
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 18:27:46, 2012-01-23
- TIM, 119 selfservice e carta di credito: 5 euro e passa la paura. – http://t.co/YpxSXMV5 22:30:18, 2012-01-23
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @drrleblanc @officialpausini 18:38:56, 2012-01-24
- Speaking the same language on cyber threats http://t.co/PnAZTce4 19:13:09, 2012-01-25
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @msftsecurity 20:47:44, 2012-01-25
- #Symantec tells customers to disable #pcAnywhere software http://t.co/I2uL2S5p #li 22:16:05, 2012-01-25
- "Frankenmalware" active in the wild http://t.co/iSse1BCE #li 22:19:34, 2012-01-25
- "Anonymous" DDoS Activity #li 22:22:43, 2012-01-25
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 01:20:50, 2012-01-27
- FBI Looking for App to Monitor Twitter and Facebook For Threat Data http://t.co/e6AgOkFC #fi 21:44:00, 2012-01-27
- Infographic: PHP vs. Python vs. Ruby http://t.co/er6DijVK #li 21:45:54, 2012-01-27
- Attackers Targeting Windows Media Bug With Malware http://t.co/sdhLc6Aw #li 21:46:47, 2012-01-27
- What if a virus infected a #virus? 'Frankenware' spotted by #security firm http://t.co/skrx080V #li 21:49:59, 2012-01-27
- Top #APT Research of 2011 (That You Probably Haven’t Heard About) http://t.co/UUJ5sj87 #li 22:17:51, 2012-01-27
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @elinormills @tweetsroma 03:46:06, 2012-01-28
- #OWASP Top 10 Rundown http://t.co/OswrAjIH #li 23:54:04, 2012-01-28
- Forbes Exploited: #XSS Vulnerabilities Allow Phishers to Hijack Sessions & Steal Logins http://t.co/kpU2HZWK #li 23:56:14, 2012-01-28
- One More Thing to Worry About: #Smartphone #Encryption Keys Can be Stolen Wirelessly http://t.co/DZzUIpcl #li 23:59:53, 2012-01-28
gennaio, 2012:
ArMyZ security issues weekly roundup | 28-01-2012
TIM, 119 selfservice e carta di credito: 5 euro e passa la paura.
Come tanti, ho abbinato al contratto TIM una carta di credito tramite la quale mensilmente la TIM preleva quanto pattuito.
Le carte di credito hanno una scadenza e la mia MASTERCARD (ricorda, è importante) scade a fine gennaio.
Ho aspettato il giorno in cui hanno registrato la transazione mensile dopodiché, dopo aver chiesto al supporto 119 su twitter, sono andato a modificare la carta di credito sul sito 119 selfservice.
Nella finestra che vedete sotto, non ho trovato la situazione attualmente in essere (il riferimento alla “vecchia” carta di credito, ndr.): tutto era vuoto, senza riferimento ma con la pretesa di specificare in alto la carta attualmente in funzione e, in basso, la nuova da inserire in sostituzione.
Compilazione vecchia carta
Ho provato in tutti i modi e con tutte le carte (con tutte le voci del menù a tendina) ma non c’era verso di andare avanti nella transazione: il messaggio mi informava che quanto specificato non era quanto noto al sistema.
Ormai disarmato provo a chiamare il 119.
Molto disponibili e accomodanti sfoderano un “proviamo insieme al telefono”: ecco, per fortuna grazie ai consigli dell’operatore sono riuscito a superare il primo blocco e cioè quello della compilazione della carta di credito “vecchia”.
Come? Semplice: basta specificare i 16 numeri del PAN come… tutti zero(?)!
Compilazione nuova carta
Arrivo al problema seguente cioè specificare la nuova carta di credito.
Anche qui, provo tutte le voci relative alle carte di credito disponibili (compreso KEYCLIENT, anche questo è importante) senza alcun successo.
L’operatore a questo punto desiste e mi suggerisce di sbrigarmi ad andare in un centro TIM per eseguire il cambio carta da loro perché il “sistema” potrebbe fare un polling sulla carta di credito e, avendo la vecchia in via di disabilitazione, potrebbe intendere che io voglia rifiutarmi di acconsentire all’addebito e procedere d’ufficio al recesso (con tanto di spese di penali per recesso anticipato, ndr.).
Detto fatto, l’indomani arriva un sms minaccioso che mi annuncia la recessione imminente del contratto. Ogni chiamata al 119 è stata infruttuosa: dovevo recarmi ad un centro TIM e fare l’operazione GRATUITA di cambio carta da loro al COSTO DI 5 EURO che mi sarebbero stati rimborsati COME CREDITO TELEFONICO!
Ho provato a spiegare che non era affatto GRATUITA l’operazione sebbene venisse rimborsata come credito visto che unilateralmente era stato deciso che dovevo, difatti, versare 5 EURO in traffico prepagato.
Evidentemente troppo complicato.
CENTRO TIM
L’indomani sono andato ad un centro TIM per questo cambio carta.
Io: “Salve, devo cambiare la carta di credito associata al numero telefonico XXX”
Lei: “Documento, codice fiscale e SIM”
Io: “Ecco. Forse è il caso di farlo presente in Azienda: i clienti con la MASTERCARD nativa e non agganciata ad altri circuiti non possono usare le funzionalità selfservice. Ho provato più volte: la voce MASTERCARD nativa sembra non essere proprio prevista dalla vostra applicazione. Per quanto mi sembra assurdo, pensi che non c’è nemmeno sul menù a tendina!”
Lei: “Non si preoccupi, io specifico KEYCLIENT e funziona”
Io: ” Ma come? Io l’ho provata più e più volte, KEYCLIENT compreso!”
Pronti…?
Lei: “Senta, lo so: sul self service non funziona altrimenti tutti la farebbero in autonomia gratuitamente. E chi verrebbe ad un centro TIM a farlo a 5 EURO? Dobbiamo pur guadagnarci qualcosa noi no?”
Tra ribaltarle la scrivania o guardarla con estrema tristezza e amarezza ho optato per la seconda, dannata educazione.
Questo è lo straccio di ricevuta che mi hanno fornito.
Adesso abbiamo imparato qualcosa in più su mamma TIM.
#FAIL
P.S.: ad oggi non mi sono stati ancora rimborsati i famosi 5 euro.
ArMyZ security issues weekly roundup | 21-01-2012
- ArMyZ security issues weekly roundup | 14-01-2012 – http://t.co/2JcKKNrz 00:58:27, 2012-01-15
- 30,000,000 Emails Accounts hacked by Hannibal Part 1 http://t.co/CkNZURBZ #li 21:12:28, 2012-01-15
- ok #TIM, domani scrivo qualcosina, a beneficio di tutti http://t.co/qlfWwGVk 22:13:53, 2012-01-15
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @fairyvisions 22:44:45, 2012-01-15
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @v3_co_uk @coresecurity 17:09:44, 2012-01-16
- Zappos Passwords Hacked: What You Need To Do Right Now http://t.co/KOM0DJBF #li 22:18:17, 2012-01-16
- Use This Infographic to Pick a Good, Strong #Password http://t.co/Cjn4dEKC #li 22:20:14, 2012-01-16
- #Hacking Group TeaMp0isoN Claims Breach of T-Mobile http://t.co/rzaRFbJN #li 22:21:14, 2012-01-16
- #Hackers spread #malware via children's gaming websites http://t.co/ho1Hgpjc #li 22:22:07, 2012-01-16
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @shakayumi @giuliadevani @symantec 17:51:50, 2012-01-17
- Interesting – Symantec Says Norton Source Code Was Stolen in 2006 http://t.co/cCq8MqiH #li 06:56:22, 2012-01-18
- Sign Into Your Google Account on Public Computers Without Typing Anything http://t.co/LnQoazAO #qr #li 06:59:09, 2012-01-18
- #McAfee software lets scammers hijack PCs to send #spam http://t.co/ZDg1ZY82 #li 07:01:02, 2012-01-18
- #BlackBerry #PlayBook Lets #Hackers View Your Email http://t.co/Pf4qAbdJ #li 07:02:03, 2012-01-18
- Would your insurance policy respond to a cyber security attack? Don't be so sure. http://t.co/S6Rixa2Y #li 07:03:23, 2012-01-18
- #Security firm Sophos reveals how it caught the gang behind #Facebook malware, #Koobface http://t.co/2a3jktuk #li 07:04:57, 2012-01-18
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @simplyhavefun @dlorette 17:14:48, 2012-01-18
- Comparing BlueGriffon and Bluefish: Which Open Source Web Editor is Right For You? http://t.co/tTLRIKaF #li 22:58:45, 2012-01-18
- Using the NIST HIPAA #Security Rule Toolkit for #Risk #Assessments http://t.co/M2ekNPUO #li 23:03:13, 2012-01-18
- How to Identify the #Insider #Threat http://t.co/HVZ2PPWV #security #awareness #li 23:04:52, 2012-01-18
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @miti_vigliero @rogeragrimes @packet_storm 17:52:05, 2012-01-19
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 18:04:48, 2012-01-20
- Downloads of LOIC DoS Attack Tool Spike as Anonymous Inspires Online Protests http://t.co/38Z3POey #li 23:31:04, 2012-01-20
- Hacking critical infrastructure systems now as easy as pushing a button? http://t.co/O5fyXzZg #li 23:33:51, 2012-01-20
- Grindr Hacked! 100,000 users exposed down under! http://t.co/7kUtkjcF #li 23:34:29, 2012-01-20
- Anonymous Hacks Public Intelligence in “Friendly Audit” http://t.co/aD2RaD1D #li 23:35:13, 2012-01-20
- Read, keep and save, well done. 13 Steps to Learn & Perfect #Security Testing in your Org http://t.co/4yt5Y3uB #li 23:38:24, 2012-01-20
- #Risk Management – Chapter 2 http://t.co/D0daA5gs #li 23:39:34, 2012-01-20
- Cyber Security with ISO 27001 http://t.co/VHChR1Od #li 23:40:45, 2012-01-20
- Israeli hackers take down Arab bank sites http://t.co/xTbnFMnH #li 23:42:13, 2012-01-20
- Collection of information key to thwarting #APT# attacks http://t.co/6aS4Rkkf #li 23:43:24, 2012-01-20
- Hackers snatch $6.7m in South African cyber bank robbery http://t.co/ut8ty9MA #li 23:46:07, 2012-01-20
- READ, READ & READ – Anonymous's #OpMegaupload attack: Visit their link and you instantly launch a #DDoS #attack http://t.co/0wEVfThX 23:49:47, 2012-01-20
- HEADS UP – DreamHost Hacked; Change Your Passwords Now http://t.co/GyXcCe9p #li 09:10:45, 2012-01-21
- Interessante, da leggere – Explainer: How can the US seize a "Hong Kong site" like #Megaupload? http://t.co/3pUY1J2a #jurisdiction #law #li 09:16:31, 2012-01-21
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 16:21:03, 2012-01-21
ArMyZ security issues weekly roundup | 14-01-2012
- ArMyZ security issues weekly roundup | 07-01-2012 – http://t.co/M8d71Z4y 00:52:21, 2012-01-08
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 17:51:54, 2012-01-08
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 22:22:45, 2012-01-09
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @cert_advisory 17:26:48, 2012-01-10
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @frannina @0xcharlie 16:22:04, 2012-01-11
- What else? http://t.co/uyikB0tw 19:23:40, 2012-01-11
- Svchost Process Analyzer Tool to Fix Infected Svchost.exe http://t.co/hGcMeKe1 #li 22:09:15, 2012-01-11
- Cybersecurity help exists, focusing it is the trick http://t.co/7ERnm3hp #li 22:12:10, 2012-01-11
- Hackers Claim Indian Government Targeted U.S. Counterparts http://t.co/WLEc8Ski #li 22:18:58, 2012-01-11
- Buona lettura – How to Crack (and how to protect) a Wi-Fi Network's WPA Password with Reaver http://t.co/n4REAajd #li 22:27:06, 2012-01-11
- STRATFOR Back Online with a Clear Message to Anonymous – “You have not won” http://t.co/pOQ2PA5s #li 22:28:01, 2012-01-11
- Time to test it – Protect Your Mac and iOS Devices on Public Wifi with Cloak http://t.co/7dSamzeQ #li 22:33:43, 2012-01-11
- Vuoi cambiare la carta di credito sul tuo contratto #TIM? In autonomia non funziona, col 119 non funziona e non possono farlo loro. #fail 12:21:38, 2012-01-12
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @ecb_europa_eu @fattoquotidiano 16:21:08, 2012-01-12
- Show me your SSID’s, I’ll Tell Who You Are! http://t.co/ha53ZjSc #wifi #li 21:19:37, 2012-01-12
- Malicious Software #Attacks #Security Cards Used by Pentagon http://t.co/cyS609FH #li 21:22:13, 2012-01-12
- Despite what you may think, IT #security *is* your business http://t.co/ZWAKfzNG #li 21:23:11, 2012-01-12
- Retailers increasingly considering #biometric #authentication http://t.co/sGq0y3gs #li #trend 21:24:24, 2012-01-12
- How to foil #targeted #attacks http://t.co/8hICVj5G #li 21:25:43, 2012-01-12
- Backtrack 5: Penetration Testing with Social Engineering Toolkit http://t.co/Rwi5lCLk #li 21:26:50, 2012-01-12
- Rare Legal Fight Takes On Credit Card Company #Security #Standards and Fines http://t.co/Pp48jIE2 #pci #pcidss #li 21:28:50, 2012-01-12
- PHP 5.3.9 fixes #hash #collision #DoS #vulnerability http://t.co/HV2SnvWC #li 21:30:08, 2012-01-12
- Securing virtual machines in the cloud http://t.co/MXYTlwhL #security #vm #esx #cluster #li 21:34:08, 2012-01-12
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @bullhornreach 18:52:21, 2012-01-13
- #IRC #Bot for #Android Masquerades as Madden NFL 12 http://t.co/3xWA0PKF #li 23:53:02, 2012-01-13
- #Malware #Attack Targets US #Government Agencies http://t.co/akIqwul6 #li 23:54:53, 2012-01-13
- Cyber-criminals Target #Mobile Devices With #QR Codes http://t.co/vqb1nNYv #li 23:57:02, 2012-01-13
- #Facebook #Security #Phishing #Attack In The Wild http://t.co/JRjLd90s #li 23:59:15, 2012-01-13
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @rogeragrimes @manfrys @gazzettadiasti 16:20:57, 2012-01-14
- Combating Online Piracy while Protecting an Open and Innovative Internet http://t.co/tjZGyoY8 #li 23:45:41, 2012-01-14
- Critical infrastructures – Main #threats for 2G and 3G #mobile networks http://t.co/U4tr53Bk 23:47:22, 2012-01-14
- Introducing the Updated #IBM #Security #Framework http://t.co/332Cukz0 #li 23:49:23, 2012-01-14
ArMyZ security issues weekly roundup | 07-01-2012
- ArMyZ security issues weekly roundup | 31-12-2011 – http://t.co/YYjKqhzh 00:53:42, 2012-01-01
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @gg 16:19:44, 2012-01-01
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @joomla 19:57:03, 2012-01-02
- Adriano Celentano? Ok, chi vuole l'ultimo singolo di Orietta Berti remix? #apple #12 #gift #fail http://t.co/auMNNsYi 06:07:42, 2012-01-03
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 16:21:02, 2012-01-03
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @msftsecurity @dodrecruiterdc 19:12:31, 2012-01-04
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 18:59:48, 2012-01-05
- Facebook: most hijacked logins by Ramnit were invalid http://t.co/Kcm5Izcy #li 11:02:17, 2012-01-06
- Symantec Confirms Hackers Accessed Source Code of Two Enterprise Security Products (ENDPOINT PROT and Antivirus) http://t.co/7BIdMEPz #li 11:09:22, 2012-01-06
- Sony Pictures Hacked By Anonymous, #OpSony http://t.co/q1XTIxPU #li 11:10:33, 2012-01-06
- #SpyEye #bank #Trojan hides its fraud footprint http://t.co/fmf92kS4 #li #mitb 11:13:27, 2012-01-06
- Interesting digest
– Ten Things To Do to Secure an Important Person's Computer http://t.co/MbLmqQpz #li 11:21:53, 2012-01-06 - New Denial-Of-Service #Attack Cripples Web Servers By Reading Slowly http://t.co/8E4TdxD0 #slow #read #dos #li 11:23:15, 2012-01-06
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R 17:51:03, 2012-01-06
- Saudi Hacker Threatens to Release 1 Million Israeli Credit Card Numbers http://t.co/etpeMOFM #li 10:14:39, 2012-01-07
- FBI warns of new Zeus-based #malware in phishing scam http://t.co/FfyEZZif #li 10:15:51, 2012-01-07
- Could Apple power cables help you remember your passwords? http://t.co/jucVSgsk #li 10:21:18, 2012-01-07
- Stolen Stratfor mailing list used to Rickroll customers… This time http://t.co/QTX4aggy #li 10:22:41, 2012-01-07
- Security Think Tank: What is the most important nut for infosec to crack in 2012? http://t.co/lEiX33ew #li 10:25:08, 2012-01-07
- Think Your WPA-Protected Wifi Is Secure? Think Again – Here Comes The Reaver http://t.co/UjMTN0Gq #li #wps 10:27:41, 2012-01-07
- #ModSecurity Advanced Topic of the Week: #Mitigation of 'Slow Read" Denial of Service #Attack http://t.co/7UodoqQl #li #poc #dos 10:35:02, 2012-01-07
- The Armando Leotta Daily is out! http://t.co/cq3Lvq3R ▸ Top stories today via @yanfry @darios 16:32:40, 2012-01-07









