• expired

Catch of The Day - Additional 50% off Toys, Adult Clothing, etc at Checkout- Ends 7PM Today

20

Kids accessories and toys. 50% off at checkout (excludes postage). Ends 7PM AEST 24 July 2014.
Only applies to items on this event.
http://www.catchoftheday.com.au/event/40009/

Please use this referral link if you don't already have an account:
https://www.catchoftheday.com.au/register?ref=4r5yuj8e

Postage is capped today.

Related Stores

Catch.com.au
Catch.com.au
Marketplace

closed Comments

  • +8

    Any company which takes 3 years+ to advise customers of possible compromise of their personal data is not worthy of my support.

    • +1

      You best add The Good Guys to your list of companies to avoid.

      • +1

        I don't need to shop online with TGG because they have b&m shops nearby. Nevertheless they probably have some of my details on their systems.

        Haven't heard about them being hacked and not disclosing, please elaborate.

        • +3

          I found a security vulnerability on their website last November during their infamous games clearance sale.

          They had incorrectly set user privileges for customer accounts on their website which allowed anyone with an account to access to their entire customer order database containing customer names, addresses, order details, etc. This was not just for online orders, but also for purchases made in-store as they were were all synced to the same IBM WebSphere Commerce service the website runs on. We are talking millions of records here.

          After I discovered it I reported it to them immediately once their call center opened the following day and I was asked to provide more detailed information via email.

          I spent an or 2 preparing some technical documentation which I then emailed to them. In the 2 weeks following I spoke with them on the phone about the issue an additional 4 times by which point I think they got some legal advice as they spoke very carefully.

          They made sure to mention several times that to their knowledge there is no issue and that by discussing this with me they were not admitting to anything. They said they take these matters very seriously and were following up for more information.

          I kept checking the site every few weeks to see if they had fixed it and it wasn't until about 5 months later that they finally got the vulnerability plugged.

          They never made any announcement about it and after all the trouble I went through to help them I never even received a thank you in the end.

  • +4

    I thought for a second that I it was a deal for adult toys when I read the headline….

Login or Join to leave a comment