WARNING - NECTAR Being Hit by Massive Fraud AGAIN!!!!
News
I just had 50,000 points stolen and I am very careful with my online presence and details - Apparently they are cloning your card at the till in Sainsburys.
I have been in touch with Nectar and they are aware of the situation and the Police are involved (YET AGAIN)!
Nectar card security is terrible and has been for years so they have themselves to blame but its you who will suffer the consequences.
Thankfully Nectar are no longer quibbling and will set you up a new account and send you a new card and give you 2000 free Nectar points for your trouble!
Also be aware of fraud if you have linked you Nectar card with Ebay - they have even found a way to defraud your Nectar points on Ebay!
Apparently the fraudsters have now found a way to clone your Nectar car and are using staff in Sainsburys so watch your card and dont let it out of your sight when you are at Sainsburys.
To be honest they can actually steal your points without any access to your card, account or skimming and its easy to do - I could do it now within 10 minutes.What they do is generate random 14 digit codes then plonk them into the Nectar app and try and login - Instead of Nectar security checking and allowing to enter a password it doesn't if the 14 digit code doesn't exist - as soon as they get a logon password - then its as simply as taking that number and using an online barcode generator - sticking it into Stocard app or printing it out and sticking it onto any old nectar card then they just wave it at the barcode scanner in Sainsbury or Argos etc to test it - then they empty your account - Nectar have known about this for at least 3 years but they haven't bothered to update their security at all - Utterly Disgraceful!
There have been multiple cases of fraud within Sainsburys itself with an IT Manager being sent to prison.
I have heard they have actually cracked the Nectar barcode so dont even need your card now - whether this is true is not entirely apparent as Nectar are saying nothing but if it is its a major disaster for Nectar!
A massive list of usernames and passwords is also being used so check your Nectar account - the first thing they will do is change your security details and then have a card sent to their mule addresses.
Go to this website and check your email address - It will tell you if you have been hacked so change your password immediately!
The first pointer to fraud is that they will attempt £1 transactions so you will see multiple 1 point additions to your account on the same day - this is them setting up payments at each of the Sainsburys or Argos they intend to defraud you at the next day!
In my case they were all on the same road in Leicester:-
Fosse Park
Wigston
Glen Road
Leicester North
Loughborough
Loughborough Cafe
Canley
I have already informed Nectar how easy it would be to catch these Mules as all they need to do is Tally the useage time of my Nectar card with CCTV time at these stores - Particularly the Loughborough Cafe!!! But they dont seem to want any help!!!
CHANGE YOUR PASSWORD ON THE NECTAR SITE IMMEDIATELY WOULD BE MY RECOMMENDATION!!!
They have also compromised Tesco Clubcard previously.
So its not just your bank card they are now targetting they will try and get your money from any avenue such is their modus operandi!
Be careful out there folks its a Jungle and TRUST-NO1.
Thanks! I have just changed my password and checked all of the transactions on my account. I don't use my local Sainsbury that often but will be more careful when next there.
Thanks. I like to collect points and spend them at Christmas but I suppose it makes more sense to spend them as I go along so I think I'll start doing that. At least then they won't be able to spend much.
Wow I wasn't aware of that completely To be honest I spend my points as soon as I reache the minimum £2.50 so they wouldn't get much of me
To be honest they can actually steal your points without any access to your card, account or skimming and its easy to do - I could do it now within 10 minutes.What they do is generate random 14 digit codes then plonk them into the Nectar app and try and login - Instead of Nectar security checking and allowing to enter a password it doesnt if the 14 digit code doesnt exist - as soon as they get a logon password - then its as simply as taking that number and using an online barcode generator - sticking it into Stocard app or printing it out and sticking it onto any old nectar card them they just wave it at the barcode scanner in Sainsbury or Argos etc to test it - then they empy your account - Nectar have known about this for at least 3 years but they havent bothered to update their security at all - Utterly Disgraceful!
I don't tend to more than about £2.50 on my card. I've started doing nectar surveys, but to be honest, that isn't working out too well as I seem to get booted out of every survey and I'm not liking that site, so I doubt I have much more than a few pounds in points. Thank you for telling us. I never knew that about Nectar.
The points worth £30 were taken from my card and spent in Lewisham. Card only used in store so do not know how that happened. Can only conclude zero security
They can actually steal your points without any access to your card, account or skimming and its easy to do - I could do it now within 10 minutes.What they do is generate random 14 digit codes then plonk them into the Nectar mobile app and try and login - Instead of Nectar security checking and allowing to enter a password it doesnt if the 14 digit code doesnt exist - as soon as they get a logon password which means the code is genuine - then its as simply as taking that number and using an online barcode generator - sticking it into Stocard app or printing it out and sticking it onto any old nectar card then they just wave it at the barcode scanner in Sainsbury or Argos etc to test it usually with a £1 test purchase - You will see it in your account usually random £1 points additions at places you have never visisted - then they empty your account - Nectar have known about this for at least 3 years but they havent bothered to update their security at all - Utterly Disgraceful!
The weak point is the mobile phone app - thats why you should never put any sensitive details on anything you take out of the house like Smartphones or tablets or laptops - I laugh when I see people using mobile phone banking apps!!! - I work as an IT security analyst and thats the best advice I can give you - Thieves are even targettting your home so they can steal your laptops and pcs etc just to get the login details of your bank accounts asnd passwords off of them - not for the value of the items themselves as they used to in the old crime days!
ShellyAnn Yes they said they are sending out a new card creating a new account - refunding all my points before the incident and adding 2000 points as a goodwill gesture so I guess that is what everyone should expect at a minimum - you could probably angle for more but I am not greedy I just want my Nectar card back!
I work in IT Security and just had 54,000 points stolen - the problem is not even solvable - if you did notice the points disappearing you would need to contact Nectar within 24 hours to stop the account but these fraudsters will usually do all the fiddling before 8am or after 8pm which means you cant talk to Nectar to sort it out as they dont run a 24 hour fraudline - Ridiculous eh!
As I said it doesnt matter how much security you use and passwords it can be hacked by a 10 year old with no knowledge of Security or IT and nectar havent done a thing since it was discovered in 2014.
garygemmell Well, if they go ahead with their plans for nectar points to be given on loyalty if you use sainsburys all the time, I don't think any of us will have any points on our cards. I can see mine becoming reductant.
I have just checked my account today and had £67 worth of points redeemed in Taplow, I will be on the phone first thing tomorrow
Yeah its disgraceful seeing as how Tesco have changed their cards so it doesnt happen now but Nectar are not doing anything - pretty stupid i just got my replacement card and still no security but they gave me bonus 2000 points for my trouble lol
No they usually add a point to see if they can access you account first then they start taking points!
Sounds like yer wife has been using points to spend on her fancy man lol
I didn't think I had many points on mine, so I wasn't too bothered but I have more than I thought, so I need to spend them ASAP. Don't trust Nectar after all I've read here.
I had my nectar account hacked about 6 weeks ago, 9,500 points spent on ebay. Nectar set me up a new account and gave me an additional 2000 points - i then had the new account hacked a couple of days ago, 12,000 points also spent on eBay! I’m now waiting for my newest card to show up, but at least I got another 2000 points I suppose! I’ll now be spending my points on my food shopping rather than saving them up. I don’t have any faith in Nectar’s security procedures now!
I keep checking my account now to make sure! Do you get back the points that they stole? Cause I would not be impressed otherwise!
garygemmell That is alright then! I would be gutted to lose my points! I am saving them up to take my husband to the cinema.
I went to spend my Princes voucher at Sainsburys but they only sell del Monte or their own brand fruit so I'll have to try Morrisons. The last voucher I had from them expired before I spent it. I was 1p short of £15 so spent £12.50 worth. I like to leave it until I at least notice the difference from my shopping bill. They didn't give me any coupons at the till or extra points so I wonder if they are stopping that as well as cutting down the points.
It is disappointing not to be able to save them up but better to be safe.
I have just checked my account and 4000 points were redeemed at Argos! Not by me they were not!
Wow, you have just told everyone how it is done! 2,000 isn't much compo if you lose 50,000 or is that just a bonus? Mine never gets higher than £20 worth and there is always someone with a birthday i can treat.
Nectar have known about this for at least 3 years but they haven't bothered to update their security at all - Utterly Disgraceful!
I’ve just had my account hacked today.
Got an SMS with a verification code, shortly followed by an email stating my email address had been changed. I was then unable to log into my account.
Called the helpline and they are issuing new cards, but also found out they had changed mobile number as well as email on both mine and my wife’s card.
This happened about an hour after presenting my card at a Sainsbury’s till
Nectar have known about this for at least 3 years but they haven't bothered to update their security at all - Utterly Disgraceful!
This is still going on, I noticed my points were minus figures a few weeks ago and it turns out my points were taken a few months ago.
You need to make sure you’re not using the same password for your nectar account that you use for other online accounts. This is how accounts are attacked. Treat your account like a bank, don’t share or share passwords with anyone.
They can even leave your account in a negative balance if they do two shops in the same day! That's we they did to my account, was 18000 points, now -15000!!!
I have about £2 on mine. I did log in recently which I never do but I needed to change my details. I thought nectar was doing away with nectar points. Maybe I read the wrong thing.
This seems to have happened again. And if you do use it, the account will be negative.
I only have 120 points or so in my account. Nothing much. lol
I use my nectar points pretty quickly for ebay vouchers. I bought some cafe nero vouchers with my points but they refused them instore so that put me off that. I don't shop in sainsburys or argos much and get all my petrol from Tesco normally (momentum), its only really ebay that I collect and spend nectar points. Nectar is such a rubbish loyalty scheme for so many reasons.
I cant access my nectar account on my app it was ok yesterday but now it's not working.
When I scan my card to log back in it says cannot recognise card details what do I do
Phone Nectar helpline (0344 811 0811) - they have hacked your account , changed your password and probably your address and other details so the Nectar team will probably use your original details if you tell them you think the account has been changed and hacked!
Still happening! just lost 15000 points, reasonably helpful on the 0344 number above. Saw a spurious £1 debit from sainsbury's thursday. got a verification code email early Friday (6:15am) changed password immediately, well a couple of hours later, then today an 'email address change' email from Nectar, tried to login and account disabled. Spoke to Nectar team who said 2 ebay transactions had cleared out my account! Getting a new card and 2000 points as goodwill at least!
Nectar needs to get it sorted out and if they don't, they might reboot the service as a new one while old customers get transferred automatically.
Not to mention the horrendous security vulnerability in their nectar app. Try this:
Within the app, tap the little icon at the top-right (looks like a head and shoulders) which takes you to the "Your Account" menu.
Tap "Log out".
When you log back in it remembers your nectar ID, and if you tap Continue it has also remembered your PLAIN TEXT PASSWORD!!!! Seriously, you can just tap "Show" and it will show you your password!!!
I don't think Sainsbury's have any idea of what Security is.
I've just had 9000 points removed have to wait 28days for a response hopefully will be earlier as was saving points for a big Christmas food shop
Just had all my stolen as well. We are very carful with the card. Best advice is to download the nectar app and set notifications to send you a message when anything takes place. Sadly I had a new phone and did not log in and set it up for 2 weeks and this is when it happened otherwise I would have spotted it straight away. If you get a notification that you do not recognise 1) order a replacement card straight away!!! 2) change your nectar password.
I think this should make us all wary of saving up points or money on any reward cards, cashback sites etc. I always redeem mine as soon as I can. There are safer ways to save up for Christmas.
Join for free to get genuine deals, money saving advice and help from our friendly community
Chief Bargain Hunter