Forums › Frequent flyer programs › The British Airways Club › Account hacked › Reply To: Account hacked
The problem is that the fake wi-fi also has a fake DNS server, so http://www.ba.com is not really sending you to ba.com. Most sites generate a hidden session key when you connect, so you don’t have to log in every time, and when you are connected to that dodgy wi-fi site, the owner will sniff that session key and then use it in what’s called a replay attack
Except BA doesn’t do this until you have logged in over an encrypted connection. So unless they are hijacking all the traffic with a fake certificate and you’ve accepted said fake certificate despite your browser’s warnings, they will be SOOL.
I personally think VPNs are oversold though I do have my own which I use mainly to bypass geo-blocking. I don’t use it for security and can’t anyway on my work phone as we policy out personal VPNs.
Doesn’t Android have its own password safe these days? Keychain in the latest iOS has proved good enough that I will let my 1Password subscription lapse this year.
New to Head for Points?
Welcome! We’re the UK’s most-read source of business travel, Avios, frequent flyer and hotel loyalty news. Let us improve how you travel. Got any questions? Ask them in our forums.
Latest Forum Posts
-
BSI1978 on Hyatt Centric Malta – Jun/July ’25 review
-
Guernsey Globetrotter on Chat thread – Wednesday 2nd July
-
BA Flyer IHG Stayer on Solo Christmas recommendations?
-
Aston100 on Chat thread – Wednesday 2nd July
-
stankpa on Chat thread – Wednesday 2nd July
-
Blair Waldorf Salad on Solo Christmas recommendations?
-
Blair Waldorf Salad on Chat thread – Wednesday 2nd July
-
tootsci on Crediting QR flights to BAEC or FinnairPlus
-
JAG on Chat thread – Wednesday 2nd July
-
Spaghetti Town on Chat thread – Wednesday 2nd July
Check reward flight availability instantly for free!
Booking a luxury hotel?
Our luxury hotel booking service offers you GUARANTEED extra benefits over booking direct. Works with Four Seasons, Mandarin Oriental, The Ritz Carlton, St Regis and more. We've booked £1.7 million of rooms to date. Click for details.