Welcome Guest ( Log In | Register )

 
Reply to this topicStart new topic
> Information security is sad

 
post Jan 13 2013, 16:02
Post #1
virsaladze



Casual Poster
***
Group: Gold Star Club
Posts: 189
Joined: 30-September 10
Level 325 (Godslayer)


Someone hacked my account last week, my password and e-mail was changed and all credits and hath were stolen.
I know that there were many users were hacked recently like me.
An improvement in security system is needed.
There are two serious problems currently:
1. No identifying code when logging in and every one can try the password unlimitedly, so the hacker can just use software to guess the password alphabetically.
2. The register e-mail can be changed too easily. If e-mail address is changed, password recover system will become useless.
(IMG:[invalid] style_emoticons/default/unsure.gif)

This post has been edited by virsaladze: Jan 13 2013, 16:05
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 13 2013, 16:20
Post #2
Tenboro

Admin




The hacks in question isn't caused by lax security on this site. From what I heard, a popular Chinese site had their user database compromised. So the actual problem is people who reuse their passwords on multiple sites, and there's nothing we can do about that.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 13 2013, 16:47
Post #3
virsaladze



Casual Poster
***
Group: Gold Star Club
Posts: 189
Joined: 30-September 10
Level 325 (Godslayer)


QUOTE(Tenboro @ Jan 13 2013, 16:20) *

The hacks in question isn't caused by lax security on this site. From what I heard, a popular Chinese site had their user database compromised. So the actual problem is people who reuse their passwords on multiple sites, and there's nothing we can do about that.


That's true (IMG:[invalid] style_emoticons/default/smile.gif), lots of users' information was robbed that time, but my password is unique on this site. (IMG:[invalid] style_emoticons/default/unsure.gif)
Another serious problem is why my account is suspended now?

This post has been edited by virsaladze: Jan 13 2013, 16:48
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
post Jan 14 2013, 04:00
Post #4
Hobbitmon



Casual Toaster
****
Group: Catgirl Camarilla
Posts: 339
Joined: 22-February 09
Level 458 (Godslayer)


IIRC, you can login to this site through the forums using the https page which should be a bit better than logging in through the other less secure places.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post


Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 


Lo-Fi Version Time is now: 29th January 2025 - 19:49