Hacked.

"
Sarez a écrit :


I've used d2jsp since 2005 without any problems whatsoever. I highly doubt this problem came from d2jsp. I don't believe they use the same passwords, although it's possible since I can't remember what my PoE password even was.


I actually didn't even log into it this morning, it's auto logged in. I guess my login/password is saved in chrome memory somewhere?


These are called cookies, and yes browsers can save your passwords to auto-login. I'm not going to jump to the conclusion that you were conducting game-rule-breaking transactions on this website, but just an FYI anyone caught trading PoE items on the site is subject to account ban.
"
Sarez a écrit :
"
Elynole a écrit :
"
Sarez a écrit :

I did mean d2jsp.org haha


A website based around illegal transactions probably wouldn't be the safest place to log into with any account credentials. Just saying.


I've used d2jsp since 2005 without any problems whatsoever. I highly doubt this problem came from d2jsp. I don't believe they use the same passwords, although it's possible since I can't remember what my PoE password even was.


I actually didn't even log into it this morning, it's auto logged in. I guess my login/password is saved in chrome memory somewhere?

I store all my passwords in a text file and then I encrypt it using TrueCrypt. That is my recommendation for you. This makes it so even if you open the file in a text editor, all they see is random characters. If you want to see whats in the file, you open the file with TrueCrypt, which prompts you for a password you previously selected to do so.
FAQ: http://www.pathofexile.com/forum/view-thread/36608
GGG Posttracker: http://www.gggtracker.com/
Dernière édition par FSM#0485, le 19 févr. 2013 à 11:37:08
"
Elynole a écrit :
"
Sarez a écrit :


I've used d2jsp since 2005 without any problems whatsoever. I highly doubt this problem came from d2jsp. I don't believe they use the same passwords, although it's possible since I can't remember what my PoE password even was.


I actually didn't even log into it this morning, it's auto logged in. I guess my login/password is saved in chrome memory somewhere?


These are called cookies, and yes browsers can save your passwords to auto-login. I'm not going to jump to the conclusion that you were conducting game-rule-breaking transactions on this website, but just an FYI anyone caught trading PoE items on the site is subject to account ban.


At this point, I don't really care if my account was banned. I'm more interested in how this occured. ( THey're still on my account atm, I expect them to start deleting characters soon).
IGN: TastyTime
"
FSM a écrit :

I store all my passwords in a text file and then I encrypt it using TrueCrypt. That is my recommendation for you. This makes it so even if you open the file in a text editor, all they see is random characters. If you want to see whats in the file, you open the file with TrueCrypt, which prompts you for a password you previously selected to do so.


It's all just speculation, on my part, that the saved passwords were even part of the cause of my account being compromised. I'm familiar with TrueCrypt, but I've never had any problems of this kind in the past. I'm usually pretty good at dodging anything of this sort. That's why I'm surprised I actually got hacked this time around.
IGN: TastyTime
"
Sarez a écrit :
"
FSM a écrit :

I store all my passwords in a text file and then I encrypt it using TrueCrypt. That is my recommendation for you. This makes it so even if you open the file in a text editor, all they see is random characters. If you want to see whats in the file, you open the file with TrueCrypt, which prompts you for a password you previously selected to do so.


It's all just speculation, on my part, that the saved passwords were even part of the cause of my account being compromised. I'm familiar with TrueCrypt, but I've never had any problems of this kind in the past. I'm usually pretty good at dodging anything of this sort. That's why I'm surprised I actually got hacked this time around.

Did your virus scan return any results yet? What software are you using? I would do at least malware bytes + superantispyware. Make sure they have their definitions updated.
FAQ: http://www.pathofexile.com/forum/view-thread/36608
GGG Posttracker: http://www.gggtracker.com/
"
Elynole a écrit :
"
Sarez a écrit :
At this point, the only websites I visited this morning are poe.com and d2jsp.com.

welltheresyourproblem.jpg

I died.


To everyone, please steer the thread away from d2jsp conversation.
We can talk about potential safety concerns without also talking about secondary (and banworthy) markets and/or economies.
.
Dernière édition par skinnay#1438, le 30 janv. 2015 à 09:29:21
This thread made me nervous! I was one of those guys who use the same 3 or so passwords for everything, then shortly after Planetside 2 launch I had some chinese ip log in to my station account, luckily I was playing at the time so managed to kick them out and change password quickly. Ever since that day I use a different randomized 15 or so digit password for everything and store it in a KeePass (great password manager) encrypted database.

Point is this thread reminded me I still use one of my old passwords here (been a member for a long time to be in the closed beta lottery) so now I've changed it and all my stuff is still in the stash, so *phew*!
Dernière édition par aplsin#2487, le 19 févr. 2013 à 11:55:19
"
aplsin a écrit :
This thread made me nervous! I was one of those guys who use the same 3 or so passwords for everything, then shortly after Planetside 2 launch I had some chinese ip log in to my station account, luckily I was playing at the time so managed to kick them out and change password quickly. Ever since that day I use a different randomized 15 or so digit password for everything and store it in a KeePass (great password manager) encrypted database.

Point is this thread reminded me I still use one of my old passwords here (been a member for a long time to be in the closed beta lottery) so now I've changed it and all my stuff is still in the stash, so *phew*!


At least something good came of this. :)
IGN: TastyTime
Sarez should be banned for admitting he visits 3rd party trading sites and this thread should be locked

Signaler

Compte à signaler :

Type de signalement

Infos supplémentaires