SuiteSuccess Posted November 24, 2020 Report Share Posted November 24, 2020 (edited) Received an email from Rand McNally that some of their computers have been “compromised “ (I assume that means hacked). I know they are a big company, but just wondering if anyone else received it and if so would any of you gurus be worried about someone trying to screw with GPS data and accuracy? I have their RV GPS. Edited November 24, 2020 by SuiteSuccess Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
bockofma Posted November 24, 2020 Report Share Posted November 24, 2020 Good day. If you still have the email, hover over the sender's email address to see if it's actually from Rand-McNally. If it is not, then it is a phishing email. DON'T respond to it in any way whatsoever. Regards Michael Quote 2007 Volvo VNL 670 2007 NuWa HitchHiker Champagne Link to comment Share on other sites More sharing options...
DanZemke Posted November 24, 2020 Report Share Posted November 24, 2020 (edited) 32 minutes ago, SuiteSuccess said: Received an email from Rand McNally that some of their computers have been “compromised “ I don't have any Rand McNally devices. The phrase "some of our computers have been compromised" almost always means their internal business computers have been hacked or an employee has stolen information. But it's also unusual to be that vague about what the potential impact is on you (the person they sent the letter to). Was the anything else beyond boilerplate in the letter email? Edited November 24, 2020 by DanZemke clarity Quote Volvo 770, New Horizons Majestic and an upcoming Smart car Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 24, 2020 Author Report Share Posted November 24, 2020 6 minutes ago, bockofma said: Good day. If you still have the email, hover over the sender's email address to see if it's actually from Rand-McNally. If it is not, then it is a phishing email. DON'T respond to it in any way whatsoever. Regards Michael I did that and it is from Rand McNally. I suspected phishing initially. Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 24, 2020 Author Report Share Posted November 24, 2020 3 minutes ago, DanZemke said: I don't have any Rand McNally devices. But the phrase "some of our computers have been compromised" almost always means their internal business computers have been hacked or an employee has stolen information. But it's also unusual to be that vague about what the potential impact is on you (the person they sent the letter to). Was there substantively more to the letter? Here is the mailing. ”Dear Valued Customer, As you may be aware, Rand McNally recently discovered a disruption to certain portions of our computer and phone network. We commenced an immediate investigation that included taking certain systems offline and are working with specialists to determine the nature and scope of the event. We are working diligently to restore the functionality of our systems to minimize downtime, particularly for regulated and essential industry sectors. We apologize for any delay or inconvenience this has caused. The investigation is ongoing, but to date we have no indication that Rand McNally customer data is affected. We will continue to update you when we have meaningful updates on the restoration of services. We appreciate your patience and understanding and assure you we are working around the clock to restore our services. In the meantime, if you have a critical issue, we’ve established a temporary Customer Support phone number: 224-601-4847Thank you, Rand McNally” Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
DanZemke Posted November 24, 2020 Report Share Posted November 24, 2020 3 minutes ago, SuiteSuccess said: As you may be aware, Rand McNally recently discovered a disruption to certain portions of our computer and phone network. They're describing a problem with their internal (back-end) systems, so your device is extremely unlikely to have been hacked. From their note, they've detected a break-in, but aren't clear on the full scope of its impact yet. I wouldn't worry about. If it they find out more, that could damage you, they're required by law to notify you. Back to worrying about Covid-19 🙂 Quote Volvo 770, New Horizons Majestic and an upcoming Smart car Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 24, 2020 Author Report Share Posted November 24, 2020 6 minutes ago, DanZemke said: They're describing a problem with their internal (back-end) systems, so your device is extremely unlikely to have been hacked. From their note, they've detected a break-in, but aren't clear on the full scope of its impact yet. I wouldn't worry about. If it they find out more, that could damage you, they're required by law to notify you. Back to worrying about Covid-19 🙂 Thank you Dan. Didn’t want to be driving down dead end streets with faulty GPS input data, lol. Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
DanZemke Posted November 24, 2020 Report Share Posted November 24, 2020 SuiteSuccess, Out of curiosity, I tried to access Rand McNally's website. Going to https://www.randmcnally.com/ yields a blank page for me. I suspect hackers have disabled several of their internal computers and are demanding Rand McNally to pay them for a code that will restore their system(s). So called, ransomware. Quote Volvo 770, New Horizons Majestic and an upcoming Smart car Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 24, 2020 Author Report Share Posted November 24, 2020 50 minutes ago, DanZemke said: SuiteSuccess, Out of curiosity, I tried to access Rand McNally's website. Going to https://www.randmcnally.com/ yields a blank page for me. I suspect hackers have disabled several of their internal computers and are demanding Rand McNally to pay them for a code that will restore their system(s). So called, ransomware. Just out of curiosity and my ignorance, would it be possible for sophisticated hackers to cause GPS data to be skewed? My gut tells me they could only mess in some way with map updates and not the units receiving GPS data, Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
orca Posted November 25, 2020 Report Share Posted November 25, 2020 I got the same e-mail presumably because i bought some replacement parts for my gps a while ago. I sure hope they did not get my credit card info! But we will find out soon enough! Quote 2004 Freightliner m2 106 2015 DRV lx450 Fullhouse 2019 Indian Springfield 2014 Yamaha 950 V-Star Link to comment Share on other sites More sharing options...
DanZemke Posted November 25, 2020 Report Share Posted November 25, 2020 1 hour ago, SuiteSuccess said: Just out of curiosity and my ignorance, would it be possible for sophisticated hackers to cause GPS data to be skewed? My gut tells me they could only mess in some way with map updates and not the units receiving GPS data, Your gut has betrayed you on this one. :-). Rand McNally GPS devices are capable of "software" updates. If you choose to update your device to a new version, that new software could have been hacked to skew the GPS data on your device. But this is extremely unlikely to happen. Why? Because, there are much more lucrative targets for hackers seeking money or chaos. Quote Volvo 770, New Horizons Majestic and an upcoming Smart car Link to comment Share on other sites More sharing options...
jkoenig24 Posted November 25, 2020 Report Share Posted November 25, 2020 Carl, IF in fact Rand McNally WAS hacked, I expect the hackers would be looking for USER ID information (credit / debit card numbers, names / addresses / emails / phone numbers etc). Personal information like that is sold on the "Dark Web" every day. As for GPS data to be "skewed", I expect that would be a real possibility. Watch your bank and credit / debit card accounts carefully for the next six months (at least). I have my cards notify me if ANY purchases are made or attempted (gas stations and Redbox kiosks often put a "hold" of about $1.00 just to ensure that a card IS active). Years ago, I put a "lock" on my accounts at Experian, Equifax and Transunion credit reporting agencies. NOBOBY (and that includes ME!) can open a line of credit under my name and personal information until I contact said agencies and give them my SUPER-SECRET information along with a scan of my pecker 😉 (you should have seen the car salesman's face when I bought my last car). A while ago, I bought a "USB Security Key" that, once I get my butt in gear to set it up properly, will allow me to open my laptop (and certain other electronics) via this Security Key. It would replace "Two Factor Authentication" as well as alternate pain in the butt hoops we have to jump through just to use our devices with a high degree of security. PEOPLE will always be the weakest link in any security system. Quote Link to comment Share on other sites More sharing options...
rickeieio Posted November 25, 2020 Report Share Posted November 25, 2020 Carl, I know a guy who knows a guy....... Really, I'll see someone tomorrow who knows a lot about "hacking" and cyber security, to the point that he helps teach/write the security software for big companies and gov't agencies. Google "Big Fix". i'll ask them about it. Quote KW T-680, POPEMOBILE Newmar X-Aire, VATICAN Lots of old motorcycles, Moto Guzzi Griso and Spyder F3 currently in the front row Young enough to play in the dirt as a retired farmer. contact me at rickeieio1@comcast.net Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 25, 2020 Author Report Share Posted November 25, 2020 7 hours ago, jkoenig24 said: Carl, IF in fact Rand McNally WAS hacked, I expect the hackers would be looking for USER ID information (credit / debit card numbers, names / addresses / emails / phone numbers etc). Personal information like that is sold on the "Dark Web" every day. As for GPS data to be "skewed", I expect that would be a real possibility. Watch your bank and credit / debit card accounts carefully for the next six months (at least). I have my cards notify me if ANY purchases are made or attempted (gas stations and Redbox kiosks often put a "hold" of about $1.00 just to ensure that a card IS active). Years ago, I put a "lock" on my accounts at Experian, Equifax and Transunion credit reporting agencies. NOBOBY (and that includes ME!) can open a line of credit under my name and personal information until I contact said agencies and give them my SUPER-SECRET information along with a scan of my pecker 😉 (you should have seen the car salesman's face when I bought my last car). A while ago, I bought a "USB Security Key" that, once I get my butt in gear to set it up properly, will allow me to open my laptop (and certain other electronics) via this Security Key. It would replace "Two Factor Authentication" as well as alternate pain in the butt hoops we have to jump through just to use our devices with a high degree of security. PEOPLE will always be the weakest link in any security system. John, Have my credit reporting locked also and notifications set up on credit cards. Did that several years ago. Interesting, my daughter used to work for a high level financial firm in compliance. She carried a little device that gave a code to enter her company’s computers and website where very sensitive financial info was kept. That code was randomly changed every few minutes. Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 25, 2020 Author Report Share Posted November 25, 2020 1 hour ago, rickeieio said: Carl, I know a guy who knows a guy....... Really, I'll see someone tomorrow who knows a lot about "hacking" and cyber security, to the point that he helps teach/write the security software for big companies and gov't agencies. Google "Big Fix". i'll ask them about it. Thanks Rick. As you know my imagination of “what ifs “ can run a little rampant sometimes. Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
rickeieio Posted November 25, 2020 Report Share Posted November 25, 2020 Yep, I find that being pretty common among the older crowd. Seriously, it's interesting to watch how different folks perceive, or react, to things based on their past life experiences. Since I grew up in the country and have never lived, or worked, in areas where crime was an issue, I tend to not lock my doors or vehicles. Every one of my vehicles has the key in it, other than the smart, which Susan drives. (She grew up in the city.) And it follows, that since I've never had the experience of being "hacked", I tend not to worry about it. Perhaps that makes me an easy target. Quote KW T-680, POPEMOBILE Newmar X-Aire, VATICAN Lots of old motorcycles, Moto Guzzi Griso and Spyder F3 currently in the front row Young enough to play in the dirt as a retired farmer. contact me at rickeieio1@comcast.net Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 25, 2020 Author Report Share Posted November 25, 2020 18 minutes ago, rickeieio said: Yep, I find that being pretty common among the older crowd. Seriously, it's interesting to watch how different folks perceive, or react, to things based on their past life experiences. Since I grew up in the country and have never lived, or worked, in areas where crime was an issue, I tend to not lock my doors or vehicles. Every one of my vehicles has the key in it, other than the smart, which Susan drives. (She grew up in the city.) And it follows, that since I've never had the experience of being "hacked", I tend not to worry about it. Perhaps that makes me an easy target. Glad to know that my friend. I might be needing a new tractor or excavator or F150 or........😋😋 Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
SuiteSuccess Posted November 25, 2020 Author Report Share Posted November 25, 2020 (edited) Dear Valued Customer, Rand McNally hopes this message finds you and your family in good health as we approach the holiday. In an effort to be transparent regarding the recent disruption to our network, we are making you aware of a cyber incident that is affecting our hosted and network systems. We assure you that we are focusing our resources on restoring the functionality of our network to resume delivery of products and services to you. We appreciate your patience and continued partnership in this regard. Please note: The navigation functionality of our GPS devices is not impacted — those devices continue to work as do other consumer electronics. However, we have established a temporary Customer Support number for immediate needs: 859-353-9057. Please also note that are experiencing significant shipping delays for orders made through our online store. We apologize for the inconvenience. During the response and recovery process, we are mindful of the ever-increasing level of sophistication of these incidents. We engaged experienced professional consultants to guide our efforts, and we are taking deliberate care to evaluate any risks. We have taken significant steps forward toward restoration and continue to investigate for more insight into the incident and how to prevent future disruption. While we are unable to provide a timeline at this moment, we appreciate the trust and confidence you have in Rand McNally to move as quickly as possible to resume to normal operations. We apologize for any temporary impact this may have on you. Thank you, Rand McNally Nice to know I was concerned about the GPS functionality, lol. Edited November 25, 2020 by SuiteSuccess Quote 2006 Volvo 780 "Hoss" Volvo D12, 465hp, 1650 ft/lbs tq., ultrashift Bed Build by "JW Morgan's Custom Welding" 2017 DRV 39DBRS3 2013 Smart Passion Coupe "Itty Bitty" "Don't go around saying the world owes you a living. The world owes you nothing. It was here first!" Link to comment Share on other sites More sharing options...
DanZemke Posted November 27, 2020 Report Share Posted November 27, 2020 (edited) Rand McNally's home page says: "We’re upgrading our systems now and will be back up soon." IMO, this is typical (and reasonable) marketing speak for, we've been hacked, our systems aren't operational, and we're not sure how long it will take us to get out of this mess. Try googling "rand mcnally" and click on the "Contact Us" link. Then the "Road Atlas" link. And then the "Fleet Rand McNally...". All of these links display content that is much different that they did a week ago. The Fleet Sales link has a pretty temporary page because Fleet Sales are probably their most profitable customers. I'm not trying to disparage Rand McNally. They're behaving like most corporations when they've been hacked. But what they are working on is much more than a typical system "upgrade". The primary purpose of this kind of attack (ransomware) is not about user's information like credit card numbers. It's about making the cost of system recovery more expensive than the cost of paying perpetrator for a simple solution. That said, if they can get valuable customer information, they would probably sell that too. https://en.wikipedia.org/wiki/Ransomware Edited November 27, 2020 by DanZemke corrected bad internet link (URL) Quote Volvo 770, New Horizons Majestic and an upcoming Smart car Link to comment Share on other sites More sharing options...
Ray,IN Posted November 27, 2020 Report Share Posted November 27, 2020 (edited) Bleeping computer had an article yesterday about RM being locked down due to a possible ransomware attack similar to what happened to Garmin last summer, Garmin paid $10 million ransom to get the unlock key. I posted the links on irv2.com but don't have them on my computer. RM's ELB system is offline, saying to use paper log books for now.https://www.bleepingcomputer.com/news/security/truck-routing-provider-rand-mcnally-hit-by-cyberattack/ Edited November 27, 2020 by Ray,IN Quote 2000 Winnebago Ultimate Freedom USQ40JD, ISC 8.3 Cummins 350, Spartan MM Chassis. USA IN 1SG retired;Good Sam Life member,FMCA ." And so, my fellow Americans: ask not what your country can do for you--ask what you can do for your country. John F. Kennedy 20 Jan 1961 Link to comment Share on other sites More sharing options...
Darryl&Rita Posted November 29, 2020 Report Share Posted November 29, 2020 Latest newsnews, that isn't that new. Claiming a system upgrade, instead of cyberattack. Quote I have been wrong before, I'll probably be wrong again. 2000 Kenworth T 2000 w/N-14 and 10 speed Gen1 Autoshift, deck built by Star Fabrication 2006 smart fourtwo cdi cabriolet 2007 32.5' Fleetwood QuantumPlease e-mail us here. Link to comment Share on other sites More sharing options...
sandsys Posted November 29, 2020 Report Share Posted November 29, 2020 1 hour ago, Darryl&Rita said: Latest newsnews, that isn't that new. Claiming a system upgrade, instead of cyberattack. How about a system upgrade BECAUSE of a cyber attack? Linda Quote Blog: http://sandcastle.sandsys.org/ Former Rigs: Liesure Travel van, Winnebago View 24H, Winnebago Journey 34Y, Sportsmobile Sprinter conversion van Link to comment Share on other sites More sharing options...
Darryl&Rita Posted November 29, 2020 Report Share Posted November 29, 2020 5 minutes ago, sandsys said: How about a system upgrade BECAUSE of a cyber attack? Linda Not what the article says. Quote I have been wrong before, I'll probably be wrong again. 2000 Kenworth T 2000 w/N-14 and 10 speed Gen1 Autoshift, deck built by Star Fabrication 2006 smart fourtwo cdi cabriolet 2007 32.5' Fleetwood QuantumPlease e-mail us here. Link to comment Share on other sites More sharing options...
DanZemke Posted December 1, 2020 Report Share Posted December 1, 2020 Latest Facts When I try to access: https://store.randmcnally.com/contact-us/ FireFox says: Warning: Potential Security Risk Ahead Chrome says: Your connection is not private. Attackers might be trying to steal your information from store.randmcnally.com When I try https://www.randmcnally.com/support/s/diagnose-and-repair, I get a not found error. I wish Rand McNally well, but their current website problems are not due to a "system upgrade". Quote Volvo 770, New Horizons Majestic and an upcoming Smart car Link to comment Share on other sites More sharing options...
Ray,IN Posted December 2, 2020 Report Share Posted December 2, 2020 (edited) I just went to storerandmcnally.com and got the security risk page. When I clicked on advanced it said if I continue it will take me to *.hostmonster.com, hostmonster.com. Naturally I backed out. PLEASE DO NOT TRY TO GO TO THE ABOVE!!!! The latest email from RM said their GPS systems are unaffected but no updates possible. I totally agree Dan there is no system upgrade, recovery perhaps - IF they pay the ransom. If you look around the internet this is happening to many entities right now, including hospital networks. Edited December 2, 2020 by Ray,IN Quote 2000 Winnebago Ultimate Freedom USQ40JD, ISC 8.3 Cummins 350, Spartan MM Chassis. USA IN 1SG retired;Good Sam Life member,FMCA ." And so, my fellow Americans: ask not what your country can do for you--ask what you can do for your country. John F. Kennedy 20 Jan 1961 Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.