How long had it been since you changed the info on those accounts?
Printable View
I admit to not changing my password as often as I probably should, but it was within the past two or three months at least.
In any case though, no one else knew my login id, let alone my password or PIN.
Hm because so far it seems like everyone being hacked hasn't changed their passwords often. Thus back to my theory, people with passwords who did not change them at all, back when the breach happened, are the ones getting hacked. That's not to say you can't just get hacked because it happens. A bout 3 months ago before I changed my password someone was trying to get into my e-mail. I'm happy gmail enabled the double log in thing though. Anyway so far the only ones I see getting hacked around here, my bl, and my guild are the ones who've been gone for a while and haven't changed their passwords. That's just my theory from the evidence here.
This does seem reasonable to explain some of the hackings, especially those where the player has found their account hacked after a long break.
Nexon's admitted leak in April (and maybe later undisclosed or unknown leaks) plus advanced password hash cracking techniques:
http://www.pcpro.co.uk/blogs/2011/06...nder-a-second/
are making people with previously good-enough passwords who rarely change them vulnerable.
yeah found out they hacked my email. Found the change password request in the trash dated december 13th. which i did I did make one (there were 2 though) then but also a PIC one which I did NOT make....
Mule account just got an email change request.
So did they got rid of the weird symbol thing for account lock? I can't seem to do it anymore and now I'm scare to log off. and I keep getting disconnect ( the site) when I try to change my password ( with that weird symbol)
EDIT: Nvm they did really removed it :'(
they could also make it so that you don't use the PIC for absolutely everything. Like deleting characters, logging in to characters, gifting in the CS, etc.
Just happened to me as well, not a main account, haven't touched it in months. Still it's pineappleing pissing me off, I shouldn't have to worry about this pomegranate unless I'm being stupid and sharing my account, if my main gets hacked again, honestly I'm quitting.
Still waiting on a response from a ticket I sent after my main got hacked, 2 months later still a bunch of auto, we didn't forget about youshiz.
Ok so as far as I can tell from reading this and getting 1st hand accounts of people hacked that i know in Khaini, it seems there is atleast 2 very different methods going on. One method, requires them to change your information and them hack your password to your email, which means they got your USER ID somehow. The second and much more scary method is them getting into accounts while changing NO INFORMATION.It seems most people havent changed their information in awhile who get hacked via the second method. My question is has anyone been attacked, received an email requesting password change, after REMOVING their USER ID and changing to EMAIL log in?
what about the idea of changing pass TOO much haha gets you hacked more often (: in my 6 years i've only changed pass 3 times, 2 forced pass change 1 maplestory/1 DFO, and one after MTS crap, never been hacked
Hi, I registered to reply to this thread.
I was hacked just yesterday; the hacker went on my account and bought some crossbow arrows for 30k NX in the MTS. I received an email in my inbox saying that someone wanted to change my account's email address. Luckily for me, I use different passwords for anything I sign up to on the internet (which means my Maple password is strictly unique to Nexon only), so the Hacker was unable to log on to my email and successfully change my account's linked email address. Neither my password nor my PIC were changed when I logged on. Apart from the missing NX, I don't believe anything else is missing—which is weird because taking my items/money would have been a piece of cake.
And as you've stated, I haven't changed my password/PIC in quite a while, or otherwise, pretty much never.
Hurr ducking fur.
http://i.imgur.com/a3ZiX.png
None of them are for my main accounts yet but it's pretty obnoxious (yes that's 8 different mule accounts, all presently inactive. Of note: the emails and account IDs are sequential)
On Nov. 15th, 5 of these accounts got reactivation emails as well.