Joke Collection Website - Blessing messages - Website system of China Railway Customer Service Center

Website system of China Railway Customer Service Center

12306 The online ticketing system has been optimized and adjusted. Passengers who purchase tickets in the same order can be arranged in adjacent seats or bunks, and elderly passengers over 60 can be identified by their ID numbers, giving priority to the lower berth.

In order to make the family stay together when they take the train, many passengers may have experienced such twists and turns when booking tickets online: after buying train tickets online, if several passengers are not together, they will give up the order and choose again. After canceling the order three times, the account will be temporarily locked, and then they will re-register with their family's ID number and continue to brush the ticket until they are satisfied. However, these two "priority arrangements" can only be realized when there are more tickets left, that is, when there are more tickets left, the system will follow this principle. However, at the peak of passenger flow such as Spring Festival travel rush Peak, it is still difficult for ticket buyers to realize the expectation of "people sitting next to each other" or "elderly people giving priority to berthing".

From 20 12, the seats on the train began to learn from the seating arrangement of the plane and were numbered by numbers and letters. Since then, it has been discussed on the Internet that bullet trains and high-speed trains should choose their own seats like airplanes. In fact, all bullet trains and high-speed trains in the 12306 ticketing system have seat selection function. The reason why it has not been opened to passengers is mainly because various types of railway vehicles in China are more complicated, and the number of carriages and seat layout of different trains are very different. When the train is approaching, it is difficult to guarantee that the train tickets sold 20 days in advance will not be adjusted. In this regard, some passengers suggest that the railway department can choose some models with fixed trains for passengers to choose seats online, or take the practice of choosing seats one day in advance like an airplane after pre-selling tickets, so that passengers in need can choose their own seats.

On 20 14, 12 and 17, Weibo, the official website of Cheetah Browser, announced that the verification code library was updated on 1 1 point, 12306, which made it impossible for most ticketing software to automatically submit orders and grab tickets offline. As early as 2065438+0465438+1October, 12306, the dynamic verification code was changed into a new static verification code with shading or interference lines.

20 15, 1 month, 12306, 75% of the residual ticket inquiry system has been migrated to Alibaba Cloud computing platform.

The itinerary conflicts with the account of the purchaser or is temporarily blocked.

In 20 15 Spring Festival travel rush, the railway pre-sale period was extended to 60 days for the first time. The first day ticket of 20 15 Spring Festival travel rush was put on sale on February 7 last year, which brought convenience to passengers, but also brought another phenomenon: some passengers had to buy tickets repeatedly because they could not determine the specific itinerary. After investigation, the reporter found that these passengers were suspected of "trip conflict and repeated ticket purchase". In order to crack down on scalpers, the railway department asked these passengers to "unlock" the artificial window of the station in order to refund and collect tickets normally.

According to the regulations of the railway head office, if the number of tickets with conflicting trains purchased by the same account and identity certificate is large (generally more than 10), his account will be temporarily "locked", and tickets purchased by others together with his account will also be "locked" at the same time. The account holder can only return, change and collect the ticket after "unlocking" the identity certificate in the manual window of the station.

If you need to "unlock" at the station window, you will be notified by SMS or email, telephone 12306.

In the process of unlocking, passengers may be questioned by the railway police. Only by removing the suspicion of scalping tickets can the normal account use function be restored.

Enable or disable the graphic verification code ticketing software.

On March 20 15, the 12306 website launched the graphic verification code. Every time a user logs in to the website of 12306, he needs to input the user name and password correctly, and choose the correct graphic verification code according to the text prompt to log in successfully.

The graphic verification code has 8 pictures at a time, two of which are pictures of text prompts. The key words of the text prompt are hairpin, safe, cat, dog, wings, tea, thermos, QR code and so on.

After the graphic verification code was enabled on 12306 website, some insiders said that all ticketing tools could no longer log in with 12306 account.

Registration requires two-way verification by mobile phone.

2015165438+1October 10, 12306 website has made another big move. That is, the registration of new users requires two-way authentication of mobile phones.

When registering a new user on the 12306 website, the page will prompt the mobile phone for two-way verification. That is, users need to use the mobile phone number left during registration to send the short message "999" to 12306. Then, 12306 will reply a 6-digit short message to the mobile phone. New users need to enter a 6-digit verification code within 10 minutes to log in to 12306 website.

If it is to register ID information, the customer service staff of Railway 12306 said that citizens can call 12306 to report their ID number, and the customer service staff will check whether the ID number account is "unverified" or "unprocessed". If it is "unverified", citizens can bring the original ID card and go to the station window to find the stationmaster on duty. Under normal circumstances, the stationmaster on duty will first operate the user to pass the verification, and then log off. After that, citizens can log on to the website of 12306 to register normally. According to the situation of cybersquatting, the stationmaster on duty will deal with it accordingly.

Buying train tickets online requires two-way verification.

Buying train tickets online requires two-way verification. This service is to prevent identity information from being registered. At the same time, after two-way verification, passengers can log in directly with their mobile phone numbers even if they forget their user names.

Online ticket purchase, whether by computer or mobile phone client, will leave ID number and mobile phone number when registering, and the mobile phone number is used to receive the ticket purchase information. This two-way verification is to rebind the ID number and mobile phone number.

According to the prompt, users should use the mobile phone number reserved during registration to send a short message "999" to 12306, complete the verification of identity information and mobile phone information according to the received verification code, and then log in to the website or mobile phone client of 12306.

Two-way authentication not only facilitates login, but also plays an important role in preventing ID numbers from being fraudulently used or stolen.

The railway department said that once there is a "duplicate identity information" prompt during two-way verification, it means that your ID card has been registered by others. You need to bring the original valid ID card to the ticket window of the station to handle it again, and you can't entrust others to handle it. After the window is completed, existing registered users can log in to 12306 website to modify their identity information.

As for the online saying that "passengers who do not conduct two-way verification after 20 15 12.3 will not be able to purchase tickets". The relevant person in charge of the railway department explained that the website 12306 will accept the passenger's mobile phone verification business at any time, and confirm the reachability by sending short messages between the website and the passenger's mobile phone. 20 15 12 1 passengers will be prompted when purchasing tickets online for the first time. Within 3 days from the date of the first ticket purchase, passengers can verify their mobile phones at any time at their convenience, and they can still purchase tickets without verification within these 3 days. Tickets must be verified by mobile phone after 3 days. In other words, within 3 days, passengers can purchase tickets smoothly. After 3 days, passengers must first verify and then purchase tickets, but either way will not affect passengers' purchase of tickets. Vulnerability release

20 14 12.25, a report released by Wuyun, a vulnerability reporting platform, said that a large number of 12306 user data, including user accounts, plaintext passwords, ID cards and email addresses, spread wildly on the Internet. The public security organs have been involved in the investigation.

On the afternoon of February 25th, 20 15, the netizen "New Hao Ming" sent a message to Weibo, saying that he had bought a high-speed train ticket from Yichun to Nanchang West at 12306 official website. The ticket showed that the seat was No.04 car 1 1D, but he was told that there was no such car before boarding.

12306 reminds users to change their passwords as soon as possible to prevent reserved train tickets from being returned maliciously. In addition, if other important accounts use the same registered email address and password as 12306, they should also change their passwords as soon as possible to avoid the risk of number theft.

Wuyun vulnerability platform exposed 12306 information leakage, and the vulnerability reporting platform Wuyun vulnerability released a report saying that a large number of 12306 user data were madly transmitted online, including user accounts, plaintext passwords, ID mailboxes, etc. , resulting in a large number of user data leakage. According to the dark clouds. The vulnerability has been handled by cncert National Internet Emergency Center.

Security experts told me that there are about 6.5438+0.3 million pieces of leaked user information, which is probably just the tip of the iceberg. Because the truth rate of leaked information is extremely high, and a large number of users use mobile phone numbers and QQ mailboxes as user names, it may cause greater harm in the future.

On March 24th, 20 15, Wuyun Vulnerability Platform submitted a vulnerability of 12306 photo verification code today. It is stated that there is a logical loophole in the new version of 12306 map selection verification code, which leads to the restriction being bypassed (theoretically, the ticketing software can be revived).

Official announcement

12306 Railway Customer Service Center issued the announcement 20 14 14 on February 26th, saying that railway police authorities have cracked many cases of hoarding and reselling tickets online by using other people's identity information, so a number of new measures will be implemented from tomorrow to severely crack down on fraudulent use of identity to purchase tickets. If passengers find that their identity has been fraudulently used, they can report it at any time. In addition to reporting to railway police authorities, a reporting function will be added to the website 12306.

12306 specially reminds that according to the principle of purchasing tickets by bus in real-name registration system, passengers are not allowed to buy tickets with conflicting trips. From February 26th, 20 14, 14, the ticketing system will not accept tickets with conflicting trains. If passengers are reminded that there is a conflict with the previous ticket purchase itinerary when purchasing tickets again, they must change or refund the purchased tickets before purchasing tickets again. For those who are waiting for tickets with uncertain itinerary, at least they can't choose adjacent trains in the future.

In response to the report that "user information of 12306 website is going viral on the Internet", all leaked information contains the user's plaintext password. All user passwords in the database of 12306 website are non-plaintext conversion codes encrypted for many times, and the leaked user information on the Internet flows out through other websites or channels.

In order to ensure the safety of users' information, please purchase tickets through 12306 official website. Do not use third-party ticketing software or entrust third-party websites to purchase tickets, so as to prevent the disclosure of personal identity information.

Some third-party websites develop a ticket-grabbing artifact that bundles insurance functions. Please pay attention.

Reward for reporting

Patching vulnerability response platform, the manufacturer whose real name is certified as "china academy of railway sciences" has registered and released reward information. And one of the copyright owners of 12306 website is china academy of railway sciences.

Website records show that in just three days, several netizens have provided more than a dozen loopholes. China academy of railway sciences hopes that everyone will actively provide information on vulnerabilities, with a maximum reward of 2,000 yuan.

As of press time, more than 20 netizens have submitted vulnerability reports. According to the degree of loopholes found, 9 netizens have received rewards ranging from 50 yuan to 2,000 yuan, totaling 4,850 yuan.

In recent years, the user data leakage of 12306 website has become the focus of public attention, and the railway police quickly arrested the suspect for leaking information. 201412.2912306 website has joined the world's largest vulnerability response platform and started to fix vulnerabilities. China academy of railway sciences, director of the website, offered a maximum reward of 2,000 yuan, appealing to netizens to find loopholes.