Vaporshark DNA200

Status
Not open for further replies.

thermoplastics

Full Member
Dec 8, 2014
33
9
USA
I think VS is monitoring this thread. Coincidental that they released that email 3 months after finding the vunerability and the topic coming up here? My issues happened before and after their stated dates (5/15 and 9/15) so they obviously didn't fix the problem.

They are monitoring here and /r/ecr on Reddit, where I happened to post this the other day. https://redd.it/3obmbk
Which is what most likely drove them to finally fess up. Still, this means they have known since June and told no one, which as moneymike pointed out is pretty illegal.
 
Last edited:

thermoplastics

Full Member
Dec 8, 2014
33
9
USA
It was a pretty bad idea including those dates in the email. Not only does it raise concerns of another hidden attack, but by their own admission that notification was almost 3 months late. One call to the Florida attorney general office would cost them over $100k.

Definitely, which is why I made an archive.is, which is impossible to fake unlike screenshots. https://archive.is/MKeif
:)
 

Cotay

Super Member
ECF Veteran
Verified Member
Oct 29, 2014
830
1,464
Central Coast California
I just had a fraudulent charge attempt today on my CC used to purchase my VS200 on Sept. 7. VS needs to look more closely at their systems...their efforts to isolate the malicious code clealy were not successful. I have only used the specific card twice in the last 6 months, so it is pretty clear it came from the VS transaction. The thief tried to order a $235 cooler and put their shipping address info in...the vendor was suspicious and called. I have a name, street address and IP address for the chump....calling my CC now and the Police.
 

Vlad1

Ultra Member
ECF Veteran
Apr 8, 2014
1,444
1,459
Earth
I just had a fraudulent charge attempt today on my CC used to purchase my VS200 on Sept. 7. VS needs to look more closely at their systems...their efforts to isolate the malicious code clealy were not successful. I have only used the specific card twice in the last 6 months, so it is pretty clear it came from the VS transaction. The thief tried to order a $235 cooler and put their shipping address info in...the vendor was suspicious and called. I have a name, street address and IP address for the chump....calling my CC now and the Police.

They were only referring to one vulnerability, there are others some reported as recent as yesterday on one of the Magento database tools.

http://www.csoonline.com/article/29...-tool-magmi-has-a-zero-day-vulnerability.html
 

Tpat591

Ultra Member
ECF Veteran
Verified Member
Jul 28, 2014
2,728
9,711
RB nj
It was a pretty bad idea including those dates in the email. Not only does it raise concerns of another hidden attack, but by their own admission that notification was almost 3 months late. One call to the Florida attorney general office would cost them over $100k.
Make the call. It was only issued as a result of pressure from cc companies like Amex. I know I gave Vaporshark full credit for my fraud charges. Problem with that announcement is that we all know these security breeches have been going on far longer than they have admitted.
 

Netranger

Full Member
Oct 14, 2015
13
4
55
I just had a fraudulent charge attempt today on my CC used to purchase my VS200 on Sept. 7. VS needs to look more closely at their systems...their efforts to isolate the malicious code clealy were not successful. I have only used the specific card twice in the last 6 months, so it is pretty clear it came from the VS transaction. The thief tried to order a $235 cooler and put their shipping address info in...the vendor was suspicious and called. I have a name, street address and IP address for the chump....calling my CC now and the Police.
I hope they hang em out to dry.
 
  • Like
Reactions: Cotay

moneymike

Senior Member
ECF Veteran
Verified Member
Mar 25, 2014
115
47
United States
Make the call. It was only issued as a result of pressure from cc companies like Amex. I know I gave Vaporshark full credit for my fraud charges. Problem with that announcement is that we all know these security breeches have been going on far longer than they have admitted.
Check the reddit thread @thermoplastics posted. There's dozens of other people with fraudulent charges over the last few weeks. Some of them only used the card to purchase a dna 200 from VS so its definitely still been happening since July. Your two charges for over $1500 total is the most I've seen so far though. The fact that you only noticed because of this thread makes me so nervous I ordered a Google Wallet card yesterday to use for online purchases from now on.
 

jmarkus

Ultra Member
ECF Veteran
Verified Member
Mar 3, 2011
1,387
1,126
53
CA USA
happend to me too...twice. i bought a vs dna40 about 8 months ago, shortly after i saw a few fraud charges and had to cancel card. then, bought a dna200 labor day and shortly after i saw fraudulant charges. another card canceled and another customer that will never buy from that site again. this has been an ongoing issue for a good long time, and vs certainly makes enough money off us to implement and much safer way to purchase. shame on them for taking so long to admit/address. the email blast they sent doesnt really assure/comfort me at all. sad, cuz i dig the product.
 

KTMRider

Vaping Master
ECF Veteran
Verified Member
Jul 5, 2014
4,538
18,079
NJ
Only bought from them once - their store in Key West, and no problems. But, based on this thread alone, I never will again. Their lack of effective corrective action is inexcusable.
I wouldn't have a problem buying from one of their stores. There's one about 2 hrs away from me in NJ and I bought a DNA30 there back in Dec with no issues. It's just 2 hrs away (4 hr round trip). I don't think VS understand the severity of the issues with their card processor and/or security breach. I know Visa/MC doesn't take these issues lightly.
 

KTMRider

Vaping Master
ECF Veteran
Verified Member
Jul 5, 2014
4,538
18,079
NJ
I can only imagine the amount of money vaporshark has lost in the past month or especially from all of these problems. One of my friends was gonna by a vs200 last week but with the issues with credit cards he bought a vt200 instead. I bet a bunch more people did similar things.
It's a shame because the VS DNA200 is possibly the best DNA200 mod on the market right now.

I find that I'm constantly tipping my DNA200 over because it's so thin and no sharkskin on it. The finish is holding up even better than my rDNA40 which chipped by the battery door when I was in a hurry. The new finish feels good.
 

taylord22

Senior Member
Verified Member
Jan 5, 2015
72
49
IL
I want a sharkskin for my DNA200 but after having to replace a credit card, no way. Wish there were other vendors that carried the skins.

Same boat. I just emailed VapeNW, since they are going to carry the VSDNA200, and asked if they planned to carry the skins (and pleaded for them to).

That might be the best option for those wanting to get in on this mod without the risk -- it really is a great mod, so this is all very unfortunate.

I ordered Sept 9th. I tried using a prepaid, but there were stipulations that prevented it from going through, so I used my emergency CC that had one purchase in the last 6 months (Amazon). 2 weeks later, $400 charge to a sporting goods store.
 
Status
Not open for further replies.

Users who are viewing this thread