Meet the Other Phone. Flexible and made to last.

Meet the Other Phone.
Flexible and made to last.

Buy now

Please or to access all these features

AIBU?

Share your dilemmas and get honest opinions from other Mumsnetters.

to warn anyone who shopped with Lush about this?

38 replies

BubbleBobble · 21/01/2011 20:43

www.guardian.co.uk/money/2011/jan/21/lush-website-hack-customers-fraud

The Lush website was hacked and a lot of people I know have had their card details stolen and used. Apparently Lush has known about this for a while, but they haven't put out an official statement to the press to warn customers.

OP posts:
BubbleBobble · 21/01/2011 20:44

www.guardian.co.uk/money/2011/jan/21/lush-website-hack-customers-fraud

Here's the link...

OP posts:
clumsymumluckybaby · 21/01/2011 20:46

oh no!
thats terrible...i used to work for them,lovely lovely pepole,not always so hot on the management side of things in my experiance though Hmm

isoldeone · 21/01/2011 20:54

My husband lost 200 quid . We bought from lush at Christmas. Luckily the bank rang on Sunday and queried tops up on pay as you go transactions on the credit card. We are not out of pocket. Apparently lush closed the site.

sparkle12mar08 · 21/01/2011 20:56

This has been appallingly handled, I honestly can't believe they thought they would get away with it. There are some serious legal questions to be answered.

PeachyPossum · 21/01/2011 20:57

They emailed statements out. I had one (email) and the bank have been informed, they are monitoring my account.

I hope no one ends up out of pocket. I believe they have closed the site and set up a temp one.

Meglet · 21/01/2011 20:59

clumsy Grin Me too. Great ideas and some cracking staff. Shocking management though.

PeachyPossum · 21/01/2011 21:01

Where does it say they have known for a while, it says site was hacked late Dec, and when they found out they took the site down, which was last night?

Not good if they haven't been encrypting though.

sparkle12mar08 · 21/01/2011 21:02

Their web technicians were blogging on Boxing day saying they'd had hacking problems. And there is currently a facebook group for people considering legal action against them. They have allowed customers to order on a compromised site for 26 days. Utterly shocking.

isoldeone · 21/01/2011 21:04

Did they keep quiet to make sure the Xmas orders went through is my dh's big question????

BubbleBobble · 21/01/2011 21:05

They posted a thread on their forum, which included a link to a diary from one of their technicians. Apparently they knew there were issues since Christmas time and didn't tell anyone until now because they were investigating.

OP posts:
PeachyPossum · 21/01/2011 21:05

Blimey. That is shocking Sparkle. My card expired a few weeks after my order. Don't think I'll order online from them again, which is sad as I order mainly for a treat for my little ones.

FabbyChic · 21/01/2011 21:06

Anybody that paid via cc or debit card can initiate chargebacks via their card providers for goods not received. Or through unauthorised use.

dementedma · 21/01/2011 21:11

eeek! i ordered a lot at Christmas - what should I do? Just keep an eye on the bank statements?

BubbleBobble · 21/01/2011 21:12

The friends of mine who've been affected noticed small amounts charged to O2, I'd keep an eye out for anything like that. If you're really concerned, contact your bank for advice.

OP posts:
theITgirl · 21/01/2011 21:22

My bank contacted me at the end of Dec for two mobile top-ups (also from O2). Not mine & they cancelled my card & refunded my account. I have a new one now.
Got an email from Lush today. So I know how it happened, planning on calling the bank tomorrow to let them know and they can decide what they want to do.

wandawings · 21/01/2011 21:24

wonders who the above posters are from a different forum

theITgirl · 21/01/2011 21:28

What do you mean?

BubbleBobble · 21/01/2011 21:29

I have posted on Lush's forum in the past, if that's what you mean Wandawings? Not for a long time though.

OP posts:
aPixie · 21/01/2011 21:29

That's really bad that they didn't tell anyone.

Luckily I hate Lush so no problems for me but I hope everyone here gets money back/doesn't have details taken.

Carphone warehouse had the same problem a while back and had their site closed in 24 hrs. My bank where quick on the ball too thank-god.

wandawings · 21/01/2011 21:34

:) Don't mean anything horrid by it, just wondering if you are friends from a forum (not Lush main one) that I go on. You know when your path crosses with people in places where you least expect it.

WorzselMummage · 21/01/2011 21:39

We had our account cleared out by someone who worked for the dvla after renewing our cars tax!!

The police said they knew about the problem and the bank was sure who it was.

I'd like to think think the dvla would be a lot more secure than a soap shop but you just never know!

BubbleBobble · 21/01/2011 21:39

Very possibly, Wandawings. Wink I try and keep all my identities separate as much as I can though.

Now I sound like Superman. Awesome. Grin

OP posts:
wandawings · 21/01/2011 21:44

oooh BB! Now I'm gonna be wondering who you are!!

dementedma · 21/01/2011 21:46

aPixie - how can you hate Lush? Shock

aPixie · 21/01/2011 22:09

My eye's water and I sneeze constantly for about 20 minutes just from walking past the place with the over powering smell wafting out the shop, can't imaginecwhat I would be like if I actually went into the place.

My eye's are watering just thinking about it.

Swipe left for the next trending thread