Page 1 of 2 1 2 LastLast
Results 1 to 10 of 11

Hybrid View

  1. #1
    Player
    bloop1564's Avatar
    Join Date
    Jun 2022
    Posts
    3
    Character
    Seline Mendiluze
    World
    Goblin
    Main Class
    Red Mage Lv 90

    Request: Change FC Chest access defaults for new members

    Long story short: my friend got their account hacked recently (who is our FC's leader) and the hacker utilized the group's FC chest to instantly transfer the 50+ million gil in my friend's account to the hacker's alt in one go. (how it worked: FC's membership is closed -> used hacked account to reopen membership --> hacker's alt joins membership --> hacked account puts all the gil in the FC chest --> hacker's alt signs in and takes out all the gil in a singular transaction).

    The request is this: can there please be some sort of implementation that any new members that join an FC is auto-locked out of the FC's company chest for a minimum of 7 days? Regardless of "ranking" or authorization settings? Or even just lock them out of general FC stuff till a grace period passes (e.g. 7 days)?
    I mean of course it's not going to stop hackers from stealing other people's stuff or gil via other ways, but why not just make it harder for them? I mean even if they go through MB at least they lose some of that gil they're stealing via tax. But in its current format, the methodology of theft takes less time than it does to file a "I've been hacked" report and I'm hoping that there might be some sort of remediation to at least try and slow it down.
    (0)

  2. #2
    Player
    Caitlinzulu's Avatar
    Join Date
    Jul 2015
    Location
    Gridania
    Posts
    889
    Character
    Caitlin Seraphim
    World
    Shiva
    Main Class
    Archer Lv 100
    There is, avoid being hacked in the first place.
    Using 2FA makes it a whole lot more difficult.
    Also if something sounds too good to be true it prop is. People simply dont do 300m giveaways.
    Also better to not follow any link given ingame and if you have to, make sure its a valid forum link and NEVER input your credentials if you arent 200% sure that the website adress is correct.

    To close any proposed measure you made would hinder normal players while only slightly inconvenience those swindlers.
    (1)

  3. #3
    Player
    Arazehl's Avatar
    Join Date
    Dec 2015
    Posts
    681
    Character
    Julianna Arrisit
    World
    Jenova
    Main Class
    Dancer Lv 90
    Quote Originally Posted by Caitlinzulu View Post

    To close any proposed measure you made would hinder normal players while only slightly inconvenience those swindlers.
    It would hinder only the players recently joining. Unless RMT decides to join an FC and hang out for 7days until access is lifted. Then hope they get lucky and phish an account that has access to the FC chest from the very same FC they newly joined.
    (0)

  4. #4
    Player
    Arazehl's Avatar
    Join Date
    Dec 2015
    Posts
    681
    Character
    Julianna Arrisit
    World
    Jenova
    Main Class
    Dancer Lv 90
    Quote Originally Posted by bloop1564 View Post
    Long story short: my friend got their account hacked recently (who is our FC's leader) and the hacker utilized the group's FC chest to instantly transfer the 50+ million gil in my friend's account to the hacker's alt in one go. (how it worked: FC's membership is closed -> used hacked account to reopen membership --> hacker's alt joins membership --> hacked account puts all the gil in the FC chest --> hacker's alt signs in and takes out all the gil in a singular transaction).

    The request is this: can there please be some sort of implementation that any new members that join an FC is auto-locked out of the FC's company chest for a minimum of 7 days? Regardless of "ranking" or authorization settings? Or even just lock them out of general FC stuff till a grace period passes (e.g. 7 days)?
    I mean of course it's not going to stop hackers from stealing other people's stuff or gil via other ways, but why not just make it harder for them? I mean even if they go through MB at least they lose some of that gil they're stealing via tax. But in its current format, the methodology of theft takes less time than it does to file a "I've been hacked" report and I'm hoping that there might be some sort of remediation to at least try and slow it down.
    This a pretty good idea, because it's a two man job they do this. One being the phished account and the other account belonging to RMT toon made for gil transfer. SE could lock out any who recently joined from having access to the company chest and 7 days isn't a long wait. It's unfortunate that the account that got phished was an FC leader's who has control of every and all settings. But yeah if they can do a 7 day thing that even the FC leader can't manipulate, it may put a wrench in their little two man scheme for a time, until RMT figures out a work-around to get past even that.
    (1)

  5. #5
    Player Kuroka's Avatar
    Join Date
    Aug 2016
    Location
    Limsa
    Posts
    3,702
    Character
    Ulala Ula
    World
    Shiva
    Main Class
    Reaper Lv 90
    Id love if we could set limits of how much each person can take, but well...

    And such feature would be nice too, but yeah not gettin hacked would be best... but also the system is a trap as you cant change the default rank ppl join with, itll always the same one, so you have to set that one as the entry level one... Ive had to move like 100 members around for that lol

    I wonder, GMs cant do anything about it? at least ban the hacker?
    (0)

  6. #6
    Player
    Caitlinzulu's Avatar
    Join Date
    Jul 2015
    Location
    Gridania
    Posts
    889
    Character
    Caitlin Seraphim
    World
    Shiva
    Main Class
    Archer Lv 100
    The phisher can just transfer the gil directly to the mule and i bet they have bot programs to do the clicking so it would be a minor inconvenience.
    (0)

  7. #7
    Player
    bloop1564's Avatar
    Join Date
    Jun 2022
    Posts
    3
    Character
    Seline Mendiluze
    World
    Goblin
    Main Class
    Red Mage Lv 90
    Quote Originally Posted by Caitlinzulu View Post
    To close any proposed measure you made would hinder normal players while only slightly inconvenience those swindlers.
    Quote Originally Posted by Caitlinzulu View Post
    The phisher can just transfer the gil directly to the mule and i bet they have bot programs to do the clicking so it would be a minor inconvenience.
    I would rather minor inconvenience the phisher than have them go through no obstacles at all. lol. Plus my suggestions would only hinder normal players for 7 days, so a short time. Besides, if it was something they reallyyyyyy needed to transfer within 7 days, 1:1 trade is still a thing.

    Quote Originally Posted by Caitlinzulu View Post
    There is, avoid being hacked in the first place.
    Using 2FA makes it a whole lot more difficult.
    100000% agree. My friend has learned their lesson and implemented 2FA immediately after getting their account back. Maybe if anything, SE needs to implement mandatory 2FA for new/existing accounts. Of course social engineering will still make people get hacked, but at least it'll be harder... ish.
    (0)

  8. #8
    Player
    MilkieTea's Avatar
    Join Date
    Dec 2020
    Location
    Interdimensionality
    Posts
    2,134
    Character
    C'erise Vanesse
    World
    Maduin
    Main Class
    Red Mage Lv 90
    Quote Originally Posted by bloop1564 View Post
    1:1 trade is still a thing.
    Which is why this would literally change nothing.
    The hacker isn't just one man on one computer, y'know they can just... log in to multiple accounts at once right? It would take like an extra 30 secs to drain the FC bank and meet up with the mule instead.
    (0)
    Off-Topic Discussion Megathread: https://forum.square-enix.com/ffxiv/threads/434886-Off-Topic-Discussion-Megathread
    Quote Originally Posted by Stormpeaks View Post
    No thanks. Housing is fine as it is

  9. #9
    Player
    bloop1564's Avatar
    Join Date
    Jun 2022
    Posts
    3
    Character
    Seline Mendiluze
    World
    Goblin
    Main Class
    Red Mage Lv 90
    Quote Originally Posted by MilkieTea View Post
    Which is why this would literally change nothing.
    The hacker isn't just one man on one computer, y'know they can just... log in to multiple accounts at once right? It would take like an extra 30 secs to drain the FC bank and meet up with the mule instead.
    But in a 1:1 transfer, you can only transfer up to 1M at a time. So if you had 100M, instead of doing a one-time transfer of 100M via FC chest, they'd have to do 100 1M transfers instead. As someone previously mentioned, yes of course they can have bots to do this instead, but still, it'll take longer than a singular 100M transfer. It's not much more time (depending on how much is being transferred), but at least there's a smoolll increase of a chance that you'll manage to freeze your account before you lose everything.
    (0)
    Last edited by bloop1564; 06-29-2022 at 06:51 AM.

  10. #10
    Player
    MilkieTea's Avatar
    Join Date
    Dec 2020
    Location
    Interdimensionality
    Posts
    2,134
    Character
    C'erise Vanesse
    World
    Maduin
    Main Class
    Red Mage Lv 90
    Quote Originally Posted by bloop1564 View Post
    But in a 1:1 transfer, you can only transfer up to 1M at a time. So if you had 100M, instead of doing a one-time transfer of 100M via FC chest, they'd have to do 100 1M transfers instead. As someone previously mentioned, yes of course they can have bots to do this instead, but still, it'll take longer than a singular 100M transfer. It's not much more time (depending on how much is being transferred), but at least there's a smoolll increase of a chance that you'll manage to freeze your account before you lose everything.
    Considering I've done mass gil transfers before (upwards of 100m, facilitating between friends so twice that amount in theory) it only took 20 minutes. If someone's doing it 1:1 rather than 1:1:1, it'll take even less time. Draining the FC chest takes like 30 secs and considering bots don't have to account for human speed and minor errors, the whole process would probably take 10 minutes.

    This wouldn't be a boon, and infact would probably screw over people who use alt-FCs for things like storage, etc.
    (1)
    Off-Topic Discussion Megathread: https://forum.square-enix.com/ffxiv/threads/434886-Off-Topic-Discussion-Megathread
    Quote Originally Posted by Stormpeaks View Post
    No thanks. Housing is fine as it is

Page 1 of 2 1 2 LastLast