This Hacker Can Use Your Amazon Wish List To Take Control Of Your Entire Online Life

Advertisement

home alone surprised face

Screengrab

A comedian named Erik Stolhanske let Brandan Geise, a cybersecurity expert at a security firm called SecureState, go after him and try to hack his online identity, reports CBS News.

Advertisement

Going through a site that aggregates people's personal information, Spokeo, Geise found the comedian's Amazon account, his email address, and his house address. Using the email address, Geise found his Amazon Wish List.

Here's where the weaknesses start to show, of course – at the human level. The security expert calls up Amazon customer service (on the phone!) and, thanks to some loopholes and social engineering based on all the data he'd collected, is able to fully take over Stolhanske's Amazon account.

Complimentary Tech Event
Transform talent with learning that works
Capability development is critical for businesses who want to push the envelope of innovation.Discover how business leaders are strategizing around building talent capabilities and empowering employee transformation.Know More

As the dominos begin to fall, Geise manages to take over Stolhanske's AOL account, Apple ID, and main email accounts. For all the details on how he did so, read it on CBS News »

Disclosure: Jeff Bezos is an investor in Business Insider through his personal investment company Bezos Expeditions.

Advertisement