Guild Wars 2 ArenaNet worst account security EVER.

Guild Wars 2 ArenaNet worst account security EVER.

in Account & Technical Support

Posted by: Facehooks.9012

Facehooks.9012

Hey;
A guild mate of mine (names will not be named at the moment) has had his account stolen. So i decided to look into it.

To hack an account on guild wars 2
step 1. Login on GuildWars2.com
step 2. Change email + input password
step 3. Press enter

Absoloutely NO confirmation needs to be done to have the email changed and i literally just tested this; confirmation emails are sent but you dont even need to look at them because I just changed my email address and logged straight in on the one i changed it to.

My mate has also proof of purchase and it has taken ANet over 2 days to get back to him about the complete inability to access ANYTHING to do with the account.
(yet to get back to him)

Lesson: Get a super mega hyper amazing password and just hope they dont get it; because if so your DONE.

ANet has ALSO taken down the Reset Password function (which i have also confirmed).

This is completely stupid and needs to be fixed

Sincerely

LordChuckles

Guild Wars 2 ArenaNet worst account security EVER.

in Account & Technical Support

Posted by: Halmo.8619

Halmo.8619

Correction: The confirmation goes to the new email address which seems pointless and to the old email address you get an email that says we hope it was actually you who changed the email address. I already made a post about this but it got locked. I hope this gets changed in the future

(edited by Halmo.8619)

Guild Wars 2 ArenaNet worst account security EVER.

in Account & Technical Support

Posted by: CassiusNez.2395

CassiusNez.2395

I also think you and others with the same problem should get compensated.. why not? You paid for a game and you have been unable to play it due to a security breach? or what ever technical problems Areanet is having. I recommend you fight for some sort of compensation. All we’ve been getting as a response is
no offense to Gaile …
‘’ we appreciate that your still waiting for us to fix are mistake, please wait longer we don’t know how long but thank you for waiting"

Guild Wars 2 ArenaNet worst account security EVER.

in Account & Technical Support

Posted by: Alexixiv.4582

Alexixiv.4582

Hey;
A guild mate of mine (names will not be named at the moment) has had his account stolen. So i decided to look into it.

To hack an account on guild wars 2
step 1. Login on GuildWars2.com
step 2. Change email + input password
step 3. Press enter

Absoloutely NO confirmation needs to be done to have the email changed and i literally just tested this; confirmation emails are sent but you dont even need to look at them because I just changed my email address and logged straight in on the one i changed it to.

My mate has also proof of purchase and it has taken ANet over 2 days to get back to him about the complete inability to access ANYTHING to do with the account.
(yet to get back to him)

Lesson: Get a super mega hyper amazing password and just hope they dont get it; because if so your DONE.

ANet has ALSO taken down the Reset Password function (which i have also confirmed).

This is completely stupid and needs to be fixed

Sincerely

LordChuckles

I think sony may have been just as bad or possibly worse… These guys have a little more experience in the MMO industry so not sure if that makes them better or worse… entitled to your opinion I suppose

120901-018012 – Serial Key Issue

Guild Wars 2 ArenaNet worst account security EVER.

in Account & Technical Support

Posted by: Gaile Gray

Gaile Gray

ArenaNet Communications Manager

I have news for you: If someone gets your password on any system, there’s a pretty big likelihood you’re going to be in trouble. And that is why we say — often and very firmly — that account security begins and ends with you. We’ll help, but your security is in your hands.

Use a strong, unique, hard-to-guess password for Guild Wars only.
Do not share your account.

The title of this thread is misleading. Our database has not been hacked. People are not waltzing in and getting players’ credentials. The incursions are coming from external sources, over which we have no control.

More information is available in our recent article about security.

Gaile Gray
Communications Manager
Guild & Fansite Relations; In-Game Events
ArenaNet