Use a password exclusive to 1 account, add in a one-time password dongle. Security profit.



 
			
			
				Use a password exclusive to 1 account, add in a one-time password dongle. Security profit.

 
			
			
				My security token has "Made in China" on its back, I'm sure RMT will soon figure out how it works hehe.



 
			
			
				The maker of the security tokens had a security breach about a year ago. They would need two pieces to make that work though.
The serial number of your token.
And the technology used to generate that one-time password.
And unless they grab more dataR bases linking up your username with your serial number, they probably won't find that out anytime soons.
Identity theft is still serus bizness tho.
I digress, we don't know the specifics of what the infiltrators were looking for. Until SE sends us the warning e-mail, we should try to remain calm...
*gets compromised... in compromising positions*
*takes an arrow to the knee*
*lalafell steals my sweet roll*
*mustard jar...*
Last edited by Fiosha_Maureiba; 12-15-2011 at 12:42 AM.



 
			
			
				Why people are talking about security tokens in this thread is beyond me. If you hacked into the server, your dongle is as useless as a slang dongle..



 
			
			
				In terms of logging into an SE account and hijacking a character (deletion, selling everything they own and trading the gil to third-party, etc.)



 
			
			
				But if I hacked the account server, I would just edit the database to have no SE token linked, so I wouldnt need your token, or care, because i just directly removed it..... See what I mean?
Then I edit your password to 123456789, login, have fun.
Its like trying to laugh at a burglar because he broke into your house through the window, but doesnt have the keys so he cant do anything when hes in there........



 
			
			
				Ah! I see your point. Although if they get that far, then stealing a character account would seem like the least of their worries.But if I hacked the account server, I would just edit the database to have no SE token linked, so I wouldnt need your token, or care, because i just directly removed it..... See what I mean?
Then I edit your password to 123456789, login, have fun.
Its like trying to laugh at a burglar because he broke into your house through the window, but doesnt have the keys so he cant do anything when hes in there........
On the Sony situation, I didn't think they got to the credit cards. But they did get to all the passwords that were stored in plain text instead of being encrypted.


And how?
The Square Enix Account management system is completely different from the Square Enix MEMBERS site.
Now even if the Square Enix Account management system was hacked, off course token would be useless, but all the damn Square Enix services would be suspended anyway, so it's not like you would be even able to log on in the first place.
Customers are in a better stance if EVERYONE is "compromised", because SE would simply fix the hole, re-issue a password to everyone (or have them confirm their ID by contacting the Support Center or w/e), rollback characters data if character data were affected. And beside service suspension for couple of days (weeks at worse), there wouldn't be much damage to individuals.
Payment information, passwords, and such are (supposed) to be encrypted.
Biometry been used for a while, even for the average end-user. Fingerprint reader have been implemented on laptops, USB drives or available as external devices for over 10 years. And it never was expensive for the most basic ones ($40-50).My company actually has a finger print scanner lol, so they're made, I don't think they're for retail use yet though.
Antipika.
Deathsmiles II-X - Difficulty Lv.2+ (1CC/2LC ALL clear) : http://youtu.be/pjRuwv_-MlI?hd=1
Touhou 13 - Ten Desires (all clear) : http://www.youtube.com/view_play_list?p=PL194872B2BBA7CA67
Touhou 12.5 - Double Spoiler (all clear) : http://www.youtube.com/view_play_list?p=BD180E7054F3C1A2
Touhou 9.5 - Shoot the Bullet (all clear) : http://www.youtube.com/view_play_list?p=53B01AAE8A03BDD1
Touhou 8 - Imperishable Night (all clear) : http://www.youtube.com/view_play_list?p=7A5C1FF6BDAD1C1B
|  |  |  |  | 
|  | 
Cookie Policy
This website uses cookies. If you do not wish us to set cookies on your device, please do not use the website. Please read the Square Enix cookies policy for more information. Your use of the website is also subject to the terms in the Square Enix website terms of use and privacy policy and by using the website you are accepting those terms. The Square Enix terms of use, privacy policy and cookies policy can also be found through links at the bottom of the page.

 Reply With Quote
  Reply With Quote 
			 Originally Posted by Holy_Dragoon
 Originally Posted by Holy_Dragoon
					
 
						
 
			