Logo
external image

Oh goody! My online casino account got robbed... 😎

A fraud you say , but no breach ? That makes no sense at all and how does it sit with the closed loop deposit withdrawal system if anyone can add a card to another account with no verification and withdraw to it?
Unless it’s something more sinister as in someone has got access to your payment system and diverted a withdrawal made to the card on the account..

What I meant is that there has been no breach of the data stored with us. There were questions about whether passwords had been leaked from Videoslots, and my response was specifically referring to that.

I can’t comment on your other questions in relation to this specific account. However, generally speaking, it may be possible to introduce new payment methods to an account if the relevant loop has been closed.

There is always a balance between security and the customer experience. The more barriers we introduce to prevent scammers and fraudsters, the more friction we also create for legitimate players.

Fortunately, we rarely see issues of this nature. When they do occur, compromised credentials can originate from data breaches on other websites where the same or similar login details have been used, or potentially from malware on a user’s device. I wouldn’t be able to guess what happened in this case.

We will, of course, review our systems and processes to determine whether there are further improvements we can make to strengthen customer protection. However, for security reasons, details of such measures and internal controls are not something we will discuss in public forums.
 
I understand that it doesnt make sense. However, casinos cover these type events through their terms :(

The gesture is insanely kind if you ask me. VS didn't had to do it technically. So kudos to them.
So in a case like this it’s the customers fault a card that wasn’t attached to the account has been added and a large withdrawal sent to it?
Very surprised a customer could ever be held responsible for it happening and even more concerning that it’s not the first time it happened at VS.
 
good idea, but many wont take it imo. I wouldnt for sure. So there is still some risk.

I might have an extra solution for those that dont want to take 2fa. PM and ill explain.
@L&L-Jan just wondering what might make you not want to take 2FA?

Thinking of security - is the "Passkey" concept perhaps the modern way to go, it seems to pop up more often as an offer from websites.
 
A fraud you say , but no breach ? That makes no sense at all and how does it sit with the closed loop deposit withdrawal system if anyone can add a card to another account with no verification and withdraw to it?
Unless it’s something more sinister as in someone has got access to your payment system and diverted a withdrawal made to the card on the account..
Yes, great questions. The response came across a bit like “well it’s not our fault but because it garnered enough attention so we’ll provide a goodwill gesture. Oh and by the way, let’s change the subject to something about issues with Battles”.

From what AI tells me, a closed loop system is not mandatory in the UK but the UKGC strongly recommends one for AML purposes. I haven’t been able to fact check that but someone else may know better?

The only two plausible scenarios I can come up with is either Lemon’s login details got into the wrong hands (in which case it is hard to lay blame on the casino bar the sensible closed loop system), or that the casino’s systems were compromised (the casino’s responsibility).

I’m glad that Lemon got a good outcome, but will this likely happen to other customers?
 
@L&L-Jan just wondering what might make you not want to take 2FA?

Thinking of security - is the "Passkey" concept perhaps the modern way to go as well?
I think it has been mentioned before, but these things require the customer to opt into, and for those who are less technically inclined, they tend to not use such measures. Although to be fair, it’s not hard to set up and understand 2FA. Passkeys are definitely the way to go though.
 
Everyone should check the
You do not have permission to view link Log in or register now.
site. There have over the years been lots of high profile data breaches and also not so high profile ones.

For high profile ones, think Adobe, Linkedin and MySpace to name but three.

The key is to use unique hard as nails passwords on each and every online and offline account you have. Yes using 2FA is preferable if offered, of course but, using the same login credentials for all your accounts, sadly you are asking for trouble.

Case in point, if you put a gun to my head, I wouldn't even be able to tell you what my password is for 'Webzcas' here on the Casinomeister forum.
 
Yes, great questions. The response came across a bit like “well it’s not our fault but because it garnered enough attention so we’ll provide a goodwill gesture. Oh and by the way, let’s change the subject to something about issues with Battles”.

From what AI tells me, a closed loop system is not mandatory in the UK but the UKGC strongly recommends one for AML purposes. I haven’t been able to fact check that but someone else may know better?

The only two plausible scenarios I can come up with is either Lemon’s login details got into the wrong hands (in which case it is hard to lay blame on the casino bar the sensible closed loop system), or that the casino’s systems were compromised (the casino’s responsibility).

I’m glad that Lemon got a good outcome, but will this likely happen to other customers?
Exactly what happened last time.

Whilst it is the OPs responsibility to ensure his account is secure, it should also be VS to ensure their systems work effectively and securely.

Allowing a random card to be added and withdrawn to is absurd.
 
Exactly what happened last time.

Whilst it is the OPs responsibility to ensure his account is secure, it should also be VS to ensure their systems work effectively and securely.

Allowing a random card to be added and withdrawn to is absurd.
Agreed - makes me feel like I should close my videoslots account.............oh wait a minute.....
 
Happy that Lemon has been told he will get his money back (hopefully in cash and not free spins on starburst)

The whole response of "as a gesture of good will" really winds me right up. If someone commits fraud on your account, a player, especially at a UKGC accredited casino should not have to expect a "good will" gesture to get their funds back, especially when a rouge withdrawal method has been used. It should be returned straight away after investigation. Don't make it sound like you are doing the guy a favour.

I firmly believe the only reason that the "good will gesture" has even happened is due to the post on Casinomeister - shows the strength of the forum (which is good) but I doubt if this had been done through "normal" channels the result would be the same (or as quick)
 
This is another reason why there should be personal vaults. Place some or all of your winnings in the vault if you don't want to cash it back to your bank for one reason or another. Then if you want to take some out later, possibly receive a withdrawal code to the email on your account or use an authenticator app. I'm using authenticator apps just to place a prescription with my doctor these days, everything's gone authenticator app mad!
 
This is another reason why there should be personal vaults. Place some or all of your winnings in the vault if you don't want to cash it back to your bank for one reason or another. Then if you want to take some out later, possibly receive a withdrawal code to the email on your account or use an authenticator app. I'm using authenticator apps just to place a prescription with my doctor these days, everything's gone authenticator app mad!
100% - All apps I use for work nowadays require 2FA with Authenticator.
 
Same - and they all log me out after 30 days and have to do them again - it gets annoying but it is what it is
My energy company does this auto log out which winds me up.

Ah yes indeed. Security vs Convenience.

I noticed that even The National Lottery website doesn't offer 2FA or Passkeys. Just the basics.

Seems to be industry norm for gambling maybe.
 

Users who are viewing this thread

Accredited Casinos

Back
Top