Forums › Frequent flyer programs › The British Airways Club › Account hacked › Reply To: Account hacked
If I log out, close the browser and then then go back in as the second person, and change their email address, then log out and close the browser, if I try to log in as the first user, I get a message saying I haven’t validated the new email address of the second user.
Basically a security nightmare; seems their session cookie management is broken. Do others see this?
Yes I’ve commented on it before. It’s the same reason you often get told you have multiple tabs open. Very poor session cookie handling. Incompetent web design or poor load Balanacer configuration.
New to Head for Points?
Welcome! We’re the UK’s most-read source of business travel, Avios, frequent flyer and hotel loyalty news. Let us improve how you travel. Got any questions? Ask them in our forums.
Latest Forum Posts
-
Rui N. on Chat thread – Wednesday 2nd July
-
Spaghetti Town on Chat thread – Wednesday 2nd July
-
zapato1060 on Iberia seat selection
-
zapato1060 on Using Avios on Rwandair
-
BBbetter on Hyatt Centric Malta – Jun/July ’25 review
-
BSI1978 on Hyatt Centric Malta – Jun/July ’25 review
-
Guernsey Globetrotter on Chat thread – Wednesday 2nd July
-
BA Flyer IHG Stayer on Solo Christmas recommendations?
-
Aston100 on Chat thread – Wednesday 2nd July
-
stankpa on Chat thread – Wednesday 2nd July
Check reward flight availability instantly for free!
Booking a luxury hotel?
Our luxury hotel booking service offers you GUARANTEED extra benefits over booking direct. Works with Four Seasons, Mandarin Oriental, The Ritz Carlton, St Regis and more. We've booked £1.7 million of rooms to date. Click for details.