Page 1 of 4 1 2 3 ... LastLast
Results 1 to 10 of 40

Hybrid View

  1. #1
    Player
    Rekujen's Avatar
    Join Date
    Aug 2013
    Posts
    426
    Character
    Rekuja Azalon
    World
    Behemoth
    Main Class
    Archer Lv 50

    So I was hacked... my observation so far and tip.

    Let this be a lesson, I recommend everyone use an Authenticator... because no matter how secure you think you are, there is a high chance it will happen to you.

    Hear me out.

    I'm very computer savvy, I've been working with computers for 15 years and I know them inside-out. I have built over 100+ computers, I have done networking for 11 years and coding for 4.


    My PC? very very secure
    My login details? very unique and hasn't been used anywhere else, not on any forums, any games, nothing.

    So I'm at work and my girlfriend calls me...

    Her: "dude you're online"
    Me: "what? I'm at work..."
    her: "you're in Gridania... let me see what's going on"
    her: "wow you're spamming for gil sales"
    me: "wtf.... how could this even happen? let me enable the token, it should boot him off"
    her: "yup, you're logged off now"

    So i change my password and now this "hacker" can't log into my account because I am secure via password token.

    What did I do in the past few days? I'm a PC user but recently purchased the PS3 version and linked it to my PC account so I can play on both machines, that's the ONLY thing I have done recently. I haven't visit any dodgy websites, haven't installed any software or run into any problems with my PC...and my guess would be that these "hackers" somehow got my account via PSN, because we all know how useless PSN is with security.

    My question to Square is... who's to blame here? PSN? You? Me?

    I have emailed Square but my ticket isn't showing up on the support-page, I'm hoping they still received it.

    Is there counter-measures for this stuff? I'm assuming hundreds of people have black-listed me now :\ will there be a black-list wipe so all those people that were hacked aren't on ignore by half the server?

    tldr: get an authenticator, don't be foolish.
    (5)

  2. #2
    Player
    Lux_Rayna's Avatar
    Join Date
    Dec 2011
    Posts
    911
    Character
    Vynce Walker
    World
    Sargatanas
    Main Class
    Miner Lv 50
    Two things:

    1) If you have a really secure password (numbers, upper case, lowercase, *and* special characters, no common words, more characters the better) the chances of you getting hacked are incredibly small. Like incredibly small.

    2) If you have a strong password but link your login details to other networks, that is where the trouble is.

    PSN has known security issues. There was a huge crisis a few years ago when it got hacked and everyone's credit card details were at risk. The only counter-measure is to use a strong password and thats it. I even think getting a security token is risky, which is why I wont buy one. The only database/network that should have my account information is this one. I refuse to put it anywhere else, as I am at the mercy of that network's security.
    (0)

  3. #3
    Player
    DiceMan's Avatar
    Join Date
    Aug 2013
    Posts
    29
    Character
    Gold Attack
    World
    Balmung
    Main Class
    Conjurer Lv 50
    How do you have the slightest idea how hard or not hard is it for hackers who are writing their own Phishing programs and implementing them over the web can get someone's PW? Do you write all the phishing programs and sell them to hackers? DO you know for a fact that there program they designed or are running cant get someone's PW even if its the most unique thing in the world?

    Why do so many people spout off like they know everything?

    Here's a fyi for you. If a hacker wanted to hack the most secure nuclear programs in the world they can. Someone's PW on FF 14 or wow or whatever it is can be hacked at any time.
    (0)

  4. #4
    Player

    Join Date
    Aug 2013
    Posts
    284
    Quote Originally Posted by DiceMan View Post
    Here's a fyi for you. If a hacker wanted to hack the most secure nuclear programs in the world they can. Someone's PW on FF 14 or wow or whatever it is can be hacked at any time.
    A real hacker wouldn't waste his time trying to hijack a random guy's videogame account for no reason.

    Also, cool story. Needs more aliens, but cool story.
    (2)

  5. #5
    Player
    RyuujinZERO's Avatar
    Join Date
    Aug 2013
    Posts
    377
    Character
    K'hali Thalen
    World
    Goblin
    Main Class
    Scholar Lv 71
    Quote Originally Posted by DiceMan View Post
    Here's a fyi for you. If a hacker wanted to hack the most secure nuclear programs in the world they can. Someone's PW on FF 14 or wow or whatever it is can be hacked at any time.
    Your FF14 account isn't a government agency, or a nuclear weapons facility - you don't have Mossad or the CIA or some black hat hacker collective trying to steal your gil. It'll be a low budget quasi-illegal RMT organisation using a simply dragnet of techniques - phishing e-mails, trojans, dictionary attacks - and seeing what bites.

    Your reasoning is akin to saying that a grocery store robbery might be conducted with a nuclear bomb; afterall such devices exist. But the reality is that organisations who own nuclear weapons usually have bigger plans than holding up a grocery store...
    (2)

  6. #6
    Player
    Lunavi's Avatar
    Join Date
    Sep 2013
    Location
    Sweden
    Posts
    834
    Character
    Luna Nattvind
    World
    Omega
    Main Class
    Black Mage Lv 80
    Quote Originally Posted by RyuujinZERO View Post
    Your FF14 account isn't a government agency, or a nuclear weapons facility - you don't have Mossad or the CIA or some black hat hacker collective trying to steal your gil. It'll be a low budget quasi-illegal RMT organisation using a simply dragnet of techniques - phishing e-mails, trojans, dictionary attacks - and seeing what bites.

    Your reasoning is akin to saying that a grocery store robbery might be conducted with a nuclear bomb; afterall such devices exist. But the reality is that organisations who own nuclear weapons usually have bigger plans than holding up a grocery store...
    Who knows, he maybe has like 1,000,000,000,000,000,000,000,000,000,000,000,000k gil on his account... That is alot of IRL money and I would not like to lose those...
    (2)

  7. #7
    Player
    Zaiken's Avatar
    Join Date
    Dec 2011
    Posts
    405
    Character
    Celestia Raine
    World
    Sargatanas
    Main Class
    Pugilist Lv 50
    I'm surprised they didn't change your password when they hack your account, usually it is the 1st thing they do when they got access to your Account. I guess you got lucky this time they didn't do that and you have enough time to add in a Security Token.

    I'm also surprised how they can just pull randomly username and unique password out of thin air. They may have a hacking software, but they have to start somewhere and know some hint and which one to target.
    (0)

  8. #8
    Player
    Kobolt's Avatar
    Join Date
    Sep 2013
    Posts
    69
    Character
    Kobolt Caerulos
    World
    Leviathan
    Main Class
    Conjurer Lv 50
    you should also check your email password aswell. they could have just requested it and delete the email. happened to me in WoW where I went back and forth with someone who found out my email password, and would keep sending the request emails. i ended up winning the battle, with all my bags stacked with titanium ore and around 50 K gold in my purse.
    (2)

  9. #9
    Player
    Catrim's Avatar
    Join Date
    Mar 2011
    Posts
    9
    Character
    Catrim Boudain
    World
    Balmung
    Main Class
    Weaver Lv 50
    I got an authenticator for D3... I was hacked 15 mins later.

    Lucky for me... D3 is a horrible game and I didn't really care.

    Hoping the FF one works a lot better.
    (0)

  10. #10
    Player
    GabrielK's Avatar
    Join Date
    Aug 2013
    Location
    Eorzea
    Posts
    183
    Character
    Vyndel Farstrider
    World
    Odin
    Main Class
    Summoner Lv 70
    Sad to hear this.
    And if they steal your game account it doesn't mean they can reset your password since they don't have access to your email account too .
    Unless they stole access to that too, which they don't seem to have.
    (0)

Page 1 of 4 1 2 3 ... LastLast