2010-02-14, 11:43 PM
y0y0y0y0shi0 Wrote:Well, this doesn't really seem like a very controlled test. Assuming we're doing this to see just how fast an account can get hacked, that is.
If the above is true, we're usually only talking about 1~2 people knowing the account information of a character. If we have hundreds of people trying to get into this account, then it can't exactly "prove" anything, no?
Well, the test can only destroy the creditability of PICs. The E-Mail is completely secure. Aside from that little hiccup with GMail and Google Accounts, there are no other holes. We just want anyone to get in. Then it shows PICs are unsecure, since some kind of bot that inputs every combination it possibly can won't finish in 14 days. They'll need to know the PIC going in to get in. They won't change it through support tickets, they need the E-Mail. They can't change the E-Mail without SQs and Birthday. Support staff would probably be reluctant to serve an account less than a day old anyway.

