Do not use netbanking to pay reliance datacard bills – Its not safe

I came up with another rant. This time it is reliance datacard. I usually pay my bills online only. I used netbanking to pay my reliance netconnect bills.
When I pay the bill, I noticed that the website doesn’t have https. What???
Yes. http://myservices.relianceada.com does not have SSL certificate even for  netbanking. Firefox did warn me not to proceed with payment. How do you expect the customer to provide their bank details to a website that does not even have SSL protection?
Come on Reliance, You are one of the internet service provider and you don’t bother to have SSL in your own website. Cheap social networking sites have SSL in all the pages of their websites… We hear lot of news and scandals about internet security now a days. What if my bank information are stolen in the middle of the un encrypted transaction?
Will reliance take the responsibility?

As a responsible netizen, I tried to contact reliance customer care and reported this problem. I tried to find the email address for the customer care. I could not find that in the website. All I found was this url.
http://myservices.relianceada.com/storeFeedbackMail.do

Ok. I decided to record my concerns in this feedback form. I explained all the above problem sincerely and I clicked outside the text area provided for the description.
I then clicked on the text area again…

Poof…

All your typed data are gone… Come on Reliance. I am expecting this from you.
I had to use gedit to type all my complaints again from the beginning and pasted it in the “description box”.
Okay now I clicked on submit button. I got an error that my email address is not valid. what??? why???
My email address has a dot (.) character and their js validation does not allow me to use my email address. To submit my complaint, I have to register another email address without a dot???

As a final resort, I called customer care call center. As usual, the representative does not have a clue what SSL is and what https is. After 15 minutes of discussion with their experts, he asked me to use https:// if I really want to use it. Oh my!! This is not funny.

At last I got the email address for customer care and sent the url of this post to them.

I hope Reliance will take necessary steps to fix this vulnerability soon. Until then, guys, Please don’t pay your bills through internet for your reliance datacard.

It is UNENCRYPTED AND YOUR DATA AND BANK INFORMATION IS NOT SAFE.

Open an RD account online with icici bank and kick your ass yourself

Today I was trying to open an RD in icici bank using internet banking.
It’s been a long time since I used Icici bank. After logging into my account, I opened the “Request for opening RD form”.
There I filled all details like, Tenure, amount, email etc.
I clicked on the submit button. Now boom…
There was an alert box “TypeError: document.getElementsByName(“classification3″)[0] is undefined”.

alert program error on icici bank
Excellent… Now I clicked on ok button on the alert box and continued the process of opening RD. But alas! To my disappointment, the page was waiting for a long time for server and did not return any valid response. My session was timed out and I logged in again.
I thought, “This should be a program error and I should report this to the bank”. But then I realized that this kind of errors does not occur automatically. I think the guys who develop the icici bank website are debugging in the production site. This should be done in a dev server or in a staging server. Oh… not in the production website.
I went on to find email address of the customer care but I landed some form for sending email to bank.

There I filled in all the details they need and clicked on “Go”.

email complaint to icici
A new page opened and the page says “We apologise for the inconvenience. The ICICI Bank page you’ve requested is not available at this time. There are several possible reasons you are unable to reach the page”

page not found in icici

Mr.ICICI, This is not I wanted. I just wanted to report something bad happening in your site. Please allow me to do so.

Finally I called customer care and first time, I asked the executive in Tamil language. He told me that he will transfer the call to Tamil speaking officer. But somehow he disconnected the call. Second time I called customer care again and again some english speaking officer attended and I told them that I need tamil speaking officer in english.

He again transferred the call to tamil speaking officer and I told all the above story to him.
He provided me that email for customer care (Sigh!!!)

At fIrst I thought, I should send an email with the screenshots I have taken… Later I changed my mind and I decided to write a blog post. I just wanted to tell you that it is not an easy process to open RD online. I am a software engineer and still I was facing this much problem. Imagine what happens when an average person who may not know technical aspects of the computers tries to access this rocket science banking software??

I still remember when I was trying to assist my girl friend with her computer over phone. I told, “click on the start button”. She said, “There is no start button here”…

 

Update:

I again tried to open RD account with ICICI bank by 3.10PM today. This time I used Google chrome browser. Now I get different js alert error. Surely ICICI is debugging their code in production. This is not good. How can I trust a company which does all their testing in production site? I think I should consider to open RD with HDFC bank. Here is the screenshot of the error

icici error_in_chrome

UPDATE 2:

This is what I received from ICICI bank regarding my complaint via email. They indirectly say that they can not help you if you have a problem.

Dear Mr. Poomalairaj,

We value your relationship with ICICI Bank.

In the interest of our customers’ security, we accept e-mail requests only if they are sent from the secure ‘logged in’ section of www.icicibank.com. We do not disclose account details in response to e-mails sent from the public domain, since such mails are prone to hacking and frauds.

You would appreciate that ICICI Bank gives topmost priority to safe banking and hence follows strict norms, offering the highest security to your account details.

Therefore, we regret our inability to process your query sent through e-mail in public domain.

To enable us assist you promptly, please write to us after logging on to the Internet Banking channel or call our 24-hour Customer Care:

  • Logon to www.icicibank.com
  • Select ’24-hour Customer Care link’ available on the right hand top of the home  page.

We seek your co-operation in helping us adhere to safe banking practices.

Sincerely,

Anitha Kumari
Customer Service Officer
ICICI Bank Limited

 

Update3:

Mr. Govindan from Hydrabad branch called me regarding this issue and it seems he read this post thoroughly. He offered me help to open the RD. But as I had already opened the RD account, I did not need any help for that. He also assured that this error will be fixed soon. I hope this error will not show up in the future.

 

N900 not booting : I almost bricked my phone. No initfs \o/

My N900 not booting

Yesterday I messed with easy debian chroot on my N900 so, I deleted the easy debian image and copied fresh one to my N900. When I was trying to install phpmyadmin in easydebian, suddenly N900 turned off and then rebooted. It was stuck at showing five dots animation splash screen foreaver and never loads desktop. I tried to reboot, remove battery and inserted again. Still my N900 not booting.

n900 bootingAs a last resort, I tried to flash N900. Flashing went well but still the problem was there. I thought I bricked my N900. My wife will kill me if I ask another N900. :(

Continue reading

Is Dvorak keyboard layout better than QWERTY?

Dvorak keyboard layout Vs QWERTY keyboard layout

Yesterday one of my colleagues told me that he is using Dvorak keyboard layout and it is easy to use. I casually checked the Dvorak keyboard layout and found that that it is designed in such a way that frequently used keys are placed under stronger fingers.
When you use Dvorak keyborad layout, you will feel lot less strain on fingers than using a QWERTY keyboard.

Programmer Dvorak Keyboard layout

There is a programmer’s Dvorak keyboard layout too. It is optimized for programmers. The number keys and special symbol keys are arranged in easily accessible places.
switching from one keyborad layout to another is a bit uncomfortable as our brain is trained to use the keys we have practiced earlier (The mighty QWERTY).
But with a little practice anyone can use dvorak. Typing using Dvorak is easier, less strain and lot faster.

I started practicing Dvorak with this site.  You might not want to change the keyboard layout of your computer while practicing Dvorak. Because it can end up in unexpected results. If you type QWERTY style when using Dvorak layout, the typed messaged will look encrypted. D.nnr <rpne% This is Hello World! typed using Dvorak layout but in QWERTY Style. funny isn’t it? Using this method you can send secret encrypted messages to your girl friend ;)

But important thing is she must be a geek to understand this else she will kick your ass. Don’t complaint about your ruined date because of this geek love letter.

To avoid all these problems the site has a keyboard mapping from QWERTY to Dvorak. you dont have to change the keyboard layout of your computer. Just select the mapping option in the page or click here. Now you can practice Dvorak peacefully.

Don’t forget to Share your thoughts and experiences.

Juniper network connect on ubuntu 11.10

How to setup Juniper network connect VPN on ubuntu 11.10

The Juniper Network Connect vpn client usually will not work in ubuntu out of the box.
The reason behind this is Juniper network connect needs Oracle java SE and NOT openjdk JRE. This is the reason when you invoke junper network connect in ubuntu using openjdk, it will show a session timeout error. Mad scientist has done a great job by writing a shell script to connect to juniper network vpn.

In this how to I will explain how to make juniper network connect in ubuntu 11.10 (Oneiric Ocelot).

Continue reading

My first blog post

Hello world!

start blogging

Finally I created a blog in my name. I was planning to start a blog long ago. I even registered the domain name poomalairaj.com years ago but never started the blog. I was not satisfied with free services like blogger, wordpress etc. So I decided to buy paid hosting service and bought one from webfaction. The hosting at webfaction is nice. Interested to know how I chose webfaction? Read this post to know 7 reasons to choose webfaction as your hosting service provider.

In this blog I will post my thoughts about technology, web development, php, gadgets, howto’s and more interesting stuff. Stay tuned and have fun.

7 reasons to host your blog with webfaction

I never thought that I would buy a hosting service. I was using 0fees.net for my hosting needs. It was completely free and there was no ads for the free service. But later I realized that I need more. I need faster cpu, more ram, ssh access, custom daemons running on custom ports, own mail boxes etc.

I needed all these things at affoardable price. That is around 5k. VPS hosting offers flexibility and power to your server but it is also costly. Webfaction is actually a shared hosting service but it is a perfect balance of vps and shared hosting.

Enough blah blah… Here are the 7 reasonswebfaction

  1. Cheaper : cheaper web hosting in its class. I bought one year pre-payment which is $102. It was around Rs.5100 INR.
  2. SSH access : Usually shared hosting will not provide you ssh access
  3. Control Panel : simple but flexible and intuitive control panel. It is not the cPanel you usually expect from a shared hosting service.
  4. Nginx : All the request to your site are handled by front end nginx instance and this make your site to handle more requests.
  5. Long running processes : Long running processes like django, ruby on rails can be hosted.
  6. Custom ports : Custom software can be compiled and installed in home directory and arbitrary port number can be chosen for the software to listen
  7. Doesn’t suck : webfaction sucks less or doesn’t suck at all. Search on google for “webfaction sucks

PS: I am not working for webfaction. i am a satisfied customer. If you are thinking about purchasing a hosting from webfaction, click here.