Account Hack [merged]
I don’t mind waiting until monday, as long as monday does give us an answer.
But the way this looks so far is like they are just trully waiting for us to get bored of waiting and forget it ever happened..
You should know that we are looking into each case of hacking, including those weird ones that don’t seem to have a proper cause at all. Take heart — the “food-induced coma from Thanksgiving” is all fine and well, but our customers come first and hey, we can eat a turkey sandwich with one hand while pulling data with the other!
The one thing that I want to say is that the Security Team is confident there is no systemic issue (you know, database theft, server hack, that sort of broad issue) but it’s worthwhile to dig down — as much as we are able to do so — to see how personal data is being acquired.
And thank goodness the Account Restoration Service is coming very soon. We’ve been saying that for several weeks, but the emphasis on “very” is well-placed, and I know we all — players and GW2 Team members — will be greatly relieved to be able to roll-back a qualifying account to return it to the owner with characters, items, and wealth intact!
Thank you all for your patience!
Communications Manager
Guild & Fansite Relations; In-Game Events
ArenaNet
(edited by Gaile Gray.6029)
Gaile, that sounds like preety nice news. Though if you will, ask CC Eva for a PM i sent her.
Also, does that imply that God help us the Restoration Service will be available for us that just got hacked?…I mean we did lose quite a really big lot
“And thank goodness the Account Restoration Service is coming very soon. We’ve been saying that for several weeks, but the emphasis on “very” is well-placed, and I know we all — players and GW2 Team members — will be greatly relieved to be able to roll-back qualifying accounts to return it to the owner with characters, items, and wealth intact!”
OMG finally there’s some hOpEs !!!! God bless you !!
Will you be able to make a roll-back to the current hacked account ? Or is there a restriction of time ??
Since it happened to me the november 21st 2012 …
(edited by BSMO.4560)
Hi Gaile, thank you for the update.
Can you confirm if players who want to recover their characters can do so with characters that were deleted / hacked before the tools are available?
If you can recover characters prior to the tools being release I am going to love you forever and give you a cookie..
Like others I wanna know this…
Because here you said we’re screwed anyway: https://forum-en.gw2archive.eu/forum/support/account/Anet-still-don-t-have-a-char-recovery-system
So… I wanna make you realize that if you say ‘service is almost up!!’ and then we still won’t have our accounts rolled back… well, that would be a slap in the face…
Hi Gaile, thank you for the update.
Can you confirm if players who want to recover their characters can do so with characters that were deleted / hacked before the tools are available?
If you can recover characters prior to the tools being release I am going to love you forever and give you a cookie..
Irontodge — I wish I knew the answer to that. It was my understanding that the ARS would be “From this point moving forward” but please don’t take that as an absolute statement of our abilities or of our practices just yet. This question, and the related issues, are at the top of my list for Monday, and in fact I’ve been reviewing and forwarding threads all weekend long, and the Security Team has actively been reviewing, discussing, and investigating this matter, so despite the holiday this is still a priority for all of us.
We want to roll out the ARS tool in its best and more practical (tested, perfected, accurate) form. If that means “from this point forward,” so be it. But certainly it’s easy to see there could be an argument for a broader (i.e., retroactive) use if that would maintain all the desired factors and up to the point that this was possible. For instance, if we had “snapshots” for a week prior to the tool’s implementation, maybe we could use those. Maybe not. (This is a question for the tool developers, QA, etc.)
So, lot of words there to say “I am not quite sure” but please be assured we are sensitive to the issue and will do the most we can for players within the capacity of the tool.
Thank you for your understanding and patience (and for the detailed reports you and others have shared with us).
Communications Manager
Guild & Fansite Relations; In-Game Events
ArenaNet
(edited by Gaile Gray.6029)
They had 11 000 or something like that accounts hacked after release.
Where did you get that figure? It’s absolutely not factual. Let’s don’t engage in rumour mongering.
Like others I wanna know this…
Because here you said we’re screwed anyway: https://forum-en.gw2archive.eu/forum/support/account/Anet-still-don-t-have-a-char-recovery-systemSo… I wanna make you realize that if you say ‘service is almost up!!’ and then we still won’t have our accounts rolled back… well, that would be a slap in the face…
And that is seriously something we do not want to do, you can be sure of it. However, any tool has limitations and practical parameters for operation. Since this is still in development/testing/pre-deployment state, it’s not possible to make a statement about the exact functionality quite yet. I am sorry, and wish there was more to say today but I think there will be more to say very soon.
Communications Manager
Guild & Fansite Relations; In-Game Events
ArenaNet
(edited by Gaile Gray.6029)
Thanks for the quick response Gaile.
I understand and appreciate how the tool may not be backward compatible.
I wont hold high hopes for recovering my deleted characters to save dissapointment, however, if at the time it is possible it would be awesome.
Dawn wasnt cheap and I am going to have a tough time collating the gold for it again!
Thanks for the quick response Gaile.
I understand and appreciate how the tool may not be backward compatible.
I wont hold high hopes for recovering my deleted characters to save dissapointment, however, if at the time it is possible it would be awesome.
Dawn wasnt cheap and I am going to have a tough time collating the gold for it again!
I admire your good attitude, and thank you for it! Believe me, I love my characters and I truly do sympathize with the loss that you’ve gone through. (I won’t go into the whole "The first time someone PKd my Diablo II character, I cried, but I imagine if I did mention that, at least a few people would understand. )
It’s my dream we can reset qualifying accounts and I’m hoping that is what we find we can do!
Communications Manager
Guild & Fansite Relations; In-Game Events
ArenaNet
Don’t get me wrong Gaile, i was hacked in September myself, and i looked up the incident on the internet since it took 3-4 days to get my acc back, and people were stating you had about 10k acc hacked.
I am not working for ArenaNet so i did not know that for a fact, i just stated what i read someplace else.
Also, i second Irontodge in what he said, and lets hope you figure out the flaw part aswell.
Even if this was the case, it would just mean that too many people had trojans on their PCs and/or used the same password for everything, including their mail account.
Don’t get me wrong Gaile, i was hacked in September myself, and i looked up the incident on the internet since it took 3-4 days to get my acc back, and people were stating you had about 10k acc hacked.
I am not working for ArenaNet so i did not know that for a fact, i just stated what i read someplace else.
Also, i second Irontodge in what he said, and lets hope you figure out the flaw part aswell.
Ah, I understand. Yeah, someone says something in passing, an exaggeration, and then it becomes adopted as fact. I’m confident that the number is just way wrong so I felt it was appropriate to do a “say what?” there.
Even if this was the case, it would just mean that too many people had trojans on their PCs and/or used the same password for everything, including their mail account.
A lot of people do use common passwords. I did a personal investigation of a small (<100) social engineering hack incident a few years ago, and I was amazed how many people admitted “Yeah, I’ve used the same password for everything since I got a computer.”
I’m not saying that everyone does, but the number was pretty startling!
Communications Manager
Guild & Fansite Relations; In-Game Events
ArenaNet
Rule number 1 is to use a different password for your email and game.. I made this error on WoW. Now i use drastically different passwords ! Though that didnt make a difference in this case
Well your reaction to my reaction is understandable xD
Out of sheer curiosity though, do you check your PMs? As in: is it of any use to send you a PM in a certain case? (no affront intended there, just a serious question)
P.S: If you type “Guild Wars 2 accounts hacked” on google, this is the first result that pops up (the title):
“More than 11,000 Guild Wars 2 accounts hacked” ^^
(edited by Karpuz.5409)
There was a saying once … “You get the game and play – It’s that easy” ^^ I want to add “You get our stuff back to keep us playing – It’s that easy”. Jokes aside, my ticket was transferred to a senior member of the guild wars support team and he said that there is no way to provide compensations or restorations, bla bla… In other words we are screwed, face it. I don’t know why the information here is “It may be possible or it may be not, I don’t know”, but in my opinion is just something to calm people down so they can face the facts easily. Of course I can’t be sure that this is the reason behind it so don’t trust what I’ve said.
We’ll see what happens with our issue, I won’t be playing the game till we got what we have lost and because we probably wont get anything seems like I’ll be forced to quit.
P.S. It is not a normal thing to not be able to assist people with more than 800 hours in-game. If You think about it, this is 8+ hours/day, which is like a normal work time. Such players make games better and challenging! If there are no dedicated players – games die really fast (lack of competition), but You already know that.
Good luck with the game! I hope that GW2 won’t end like “that game, created for years, just to have a good graphics” ^^ I hope that You’ll be able to make the game more challenging even if I am not playing it anymore.
Hopefully Plesh, they will actually do the right thing and get us back and going.
Lets not give up just yet. Give it a bit of time… If not, i fully feel you
Indeed they say it is not possible for them. They cannot say it is not possible YET. It is not their place to say it. That is why you see Gaile say it’ll be possible in future. It is HIS place to say that.
On other topic: Taken from BBC explains enough. Who still reads/watches BBC and think it is a real fact without any proof?
My account was hacked 11/23/12 according to the email I received saying that the email address for the account had changed. I haven’t been playing since about the 2nd week the game was released, but I still don’t want someone using my account. I received access to my account again today. My toon was low level, so I doubt anything was really taken, and another was created with a random name like njhgtsf. Seems like it could be a farming toon. I’m fairly certain my computer and email are secure. I guess we’ll see as time goes on.
I’ve actually been impressed by this article, not only because I like numbers, but also because it mentions things, like keeping a blacklist of compromised known passwords, that are just well-thought-out.
There was one day when a colleague told me his WoW account had been hacked and he didn’t know how. He asked me for help, so we checked his PC with some popular tools and it seemed fine. I setup a blank PC with just the AV scanner he has been using and went through every site he had visited in his browser history, feeding the traffic to an additional AV scanner with advanced heuristics and our corporate IDS. I finally stumpled upon a site that looked pretty unsuspicious, but not only used an exploit to execute binary code, but also managed to actually bypass both AV scanners. With so much effort and criminal energy put into spying out passwords, there’s hardly a chance of being completely secure. Two-factor authentication already helps a lot, but being able to restore accounts after a hack would be a must have.
I totally think ANets security is above average though.
Thanks for the quick response Gaile.
I understand and appreciate how the tool may not be backward compatible.
I wont hold high hopes for recovering my deleted characters to save dissapointment, however, if at the time it is possible it would be awesome.
Dawn wasnt cheap and I am going to have a tough time collating the gold for it again!
I admire your good attitude, and thank you for it! Believe me, I love my characters and I truly do sympathize with the loss that you’ve gone through. (I won’t go into the whole "The first time someone PKd my Diablo II character, I cried, but I imagine if I did mention that, at least a few people would understand.
)
It’s my dream we can reset qualifying accounts and I’m hoping that is what we find we can do!
Please do forgive me if I’m wrong but wasn’t PKing in D2 more or less consensual? You didn’t have to play it online, whereas if these people have lost their accounts without actually doing something wrong (which only Arenanet will be able to find out) it’s a little different, even if it is the same grade of loss!
It’s definitely awful to lose a character either way but imagine if you’d been pked by someone while playing in singleplayer, somehow :/
(edited by Toothy.8640)
Got my account hacked and lost some gold and items but the most annoying part is that I got moved to “Ruins of Surmia” from Piken Square" where my guild is.