Sneaker Marketplace StockX Misleads Users Over Suspicious Security Reset

StockX forces a widespread customer password reset due to suspicious activity, initially misleading users by claiming it is a routine system update. The billion-dollar company declines to answer questions about potential data compromises.

StockX, a billion-dollar sneaker and apparel marketplace, forces a widespread customer password reset after detecting suspicious activity on its platform. The company initially misleads users by emailing them that the reset is a result of routine "system updates," providing no mention of any potential security threat. Customers express immediate concern on social media, with many questioning if the sudden emails are genuine or part of a clever phishing attack.

After TechCrunch confronts the company about the misleading email, a StockX spokesperson admits the reset is a proactive security measure triggered by suspicious activity. While companies often reset passwords to protect accounts from credentials stolen in other breaches, StockX declines to clarify if its own customer data is compromised. The spokesperson ignores follow-up questions regarding who alerted them to the threat and why the company chose to misrepresent the situation to its users.

Throughout the day, worried customers continue to share screenshots of the vague email online, demanding answers from the company. StockX founder Josh Luber and the official corporate Twitter account reply with boilerplate statements confirming the email is legitimate, but they ignore all inquiries about the true reason for the reset. Customers who attempt to reach out to the provided support email, including TechCrunch reporters, receive no response, leaving the user community in the dark about the safety of their personal data.

Read More at the original source →