<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Customer data leakage in Archived Posts</title>
    <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076882#M286740</link>
    <description>&lt;P&gt;My wife has a separate ee account and just managed to get my name and number!!&lt;/P&gt;</description>
    <pubDate>Sat, 11 Sep 2021 16:19:03 GMT</pubDate>
    <dc:creator>Juamei</dc:creator>
    <dc:date>2021-09-11T16:19:03Z</dc:date>
    <item>
      <title>Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076866#M286734</link>
      <description>&lt;P&gt;Hey,&lt;/P&gt;&lt;P&gt;You are exposing customer names and numbers to other customers by accident. Looks to be a cached call, possibly via a cdn. Try to add another phone to your account (Android on Chrome on the ee website). There is a bit of text at the top which should say the logged in customer and name but instead may say another customers. My name is neither Elena or Haider but as you can see in the attached screenshots, that's what the website said...&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_20210911-161119~2.png"&gt;&lt;img src="https://community.ee.co.uk/skins/images/C95650EEE1DC8F9478B135E2FF721236/responsive_peak/images/image_rejected.gif" alt="Screenshot_20210911-161119~2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I'm&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_20210911-154013~2.png"&gt;&lt;img src="https://community.ee.co.uk/skins/images/C95650EEE1DC8F9478B135E2FF721236/responsive_peak/images/image_rejected.gif" alt="Screenshot_20210911-154013~2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I'm a senior sw engineering manager for a digital agency, I've seen this class of bug a few times. You need to make the call with unique parameters or (better) whitelist it on the cache.&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 15:28:19 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076866#M286734</guid>
      <dc:creator>Juamei</dc:creator>
      <dc:date>2021-09-11T15:28:19Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076868#M286735</link>
      <description>&lt;P&gt;&lt;a href="https://community.ee.co.uk/t5/user/viewprofilepage/user-id/2119876"&gt;@Juamei&lt;/a&gt;&amp;nbsp; You need to report this to customer services not post it on a public forum. If there is some sort of breach your showing the whole world.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 15:47:11 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076868#M286735</guid>
      <dc:creator>Chris_B</dc:creator>
      <dc:date>2021-09-11T15:47:11Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076871#M286736</link>
      <description>&lt;P&gt;Well I asked on Twitter and was ignored and pointed it out on webchat but was told I had made a mistake. Do neither of those go to customer services?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 15:50:57 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076871#M286736</guid>
      <dc:creator>Juamei</dc:creator>
      <dc:date>2021-09-11T15:50:57Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076872#M286737</link>
      <description>&lt;P&gt;I have experienced this too. Huge data protection issue for EE yet when I informed them the response I got is they are aware of the issue. That was all.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 15:51:24 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076872#M286737</guid>
      <dc:creator>Landerz44</dc:creator>
      <dc:date>2021-09-11T15:51:24Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076875#M286738</link>
      <description>&lt;P&gt;That's not great. When did you inform them? Disabling the functionality wouldn't be hard, couple of hours max plus testing and deployment time.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 16:00:14 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076875#M286738</guid>
      <dc:creator>Juamei</dc:creator>
      <dc:date>2021-09-11T16:00:14Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076877#M286739</link>
      <description>&lt;P&gt;I called them an hour ago roughly. They spieled out some technical things and said their aware of the issue. I do not think EE realise the impact of a data breach.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 16:03:22 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076877#M286739</guid>
      <dc:creator>Landerz44</dc:creator>
      <dc:date>2021-09-11T16:03:22Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076882#M286740</link>
      <description>&lt;P&gt;My wife has a separate ee account and just managed to get my name and number!!&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 16:19:03 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076882#M286740</guid>
      <dc:creator>Juamei</dc:creator>
      <dc:date>2021-09-11T16:19:03Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076885#M286741</link>
      <description>&lt;P&gt;Reported as a data breach via customer services. Will delete this thread when happy it's being actioned.&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 16:45:59 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076885#M286741</guid>
      <dc:creator>Juamei</dc:creator>
      <dc:date>2021-09-11T16:45:59Z</dc:date>
    </item>
    <item>
      <title>Re: Customer data leakage</title>
      <link>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076921#M286742</link>
      <description>&lt;P&gt;You can't delete threads. You may select a post as a Solution if you like.&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 20:45:10 GMT</pubDate>
      <guid>https://community.ee.co.uk/t5/Archived-Posts/Customer-data-leakage/m-p/1076921#M286742</guid>
      <dc:creator>XRaySpeX</dc:creator>
      <dc:date>2021-09-11T20:45:10Z</dc:date>
    </item>
  </channel>
</rss>

