Jump to content
Sign in to follow this  
Sophet

Hacked with 2 factor auth

Recommended Posts

Hi,

 

I don't know if i've been hacked or if it's a bug, but last time i reconnect to my account, i lost almost all my money.

I was 1st hacked month ago (lost money and stuff in my bags), so i changed my password and activated the 2 factor authentification.

So i thought i was secured... and seeing that when i connect is really boring...

COuld someone help me plz ?

Share this post


Link to post
Share on other sites

Unless you gave someone access to your phone its impossible to get hacked with it.  That code changed every 20 seconds.  

 

And what do you mean by the third line of really boring?

Share this post


Link to post
Share on other sites

Do you have to input the random generated numbers into the authentication keypad on login?  How many numbers are generated?  How does the keypad look?

Share this post


Link to post
Share on other sites

If he gots his e-mail account compromised with the QR-code in the mailbox that would probably "get you past" 2FA. But that's a problem on his part rather than 2FA itself.

 

TLDR: Probalby not 2FA hacked. OP got a shitty password to his mail.

Edited by Storfan

Share this post


Link to post
Share on other sites

Yes, i'm sure i activated the 2FA, i have the keypad asking me for a 6 digits PIN code after i typed my password : https://ibb.co/keywBF

I don't think my mail was compromised, coz the hacker would have things more importants than a WoW private server account to steal...

I have 2 questions :

- I use the app "DUO mobile" to get the PIN code, do you know if this app is secured ?

- I received mails from gold sellers in game, with an arrow in it. I found that weird, but i took the arrow in my stuff one time. Couldn't the hacker use this mail to steal my money ? (i know it's a weird question, but i wanna know...)

 

@Brisies I mean, i play for fun, and seeing my money gone on login... 2 times... Is boring. I understand some people make real money with this gold on a private server, but for me, it's just a game i'd like to play without this shit.

Share this post


Link to post
Share on other sites

If 2fa really was active you could be a victim of what is called "rare server error" or something in the ToU. I suspect this happend on one of my alts when it was in it's early teens, one day I logged on and no gold or items in the bags, still had all equipped items and bank. The total loss was < 2 gold so I didn't bother really, and I haven't seen it happen again.

There's also been rumors on sneaky addons that can email gold automatically as you interact with mailboxes, not sure if that includes items though.

Share this post


Link to post
Share on other sites
37 minutes ago, Sophet said:

Yes, i'm sure i activated the 2FA, i have the keypad asking me for a 6 digits PIN code after i typed my password : https://ibb.co/keywBF

I don't think my mail was compromised, coz the hacker would have things more importants than a WoW private server account to steal...

I have 2 questions :

- I use the app "DUO mobile" to get the PIN code, do you know if this app is secured ?

- I received mails from gold sellers in game, with an arrow in it. I found that weird, but i took the arrow in my stuff one time. Couldn't the hacker use this mail to steal my money ? (i know it's a weird question, but i wanna know...)

 

@Brisies I mean, i play for fun, and seeing my money gone on login... 2 times... Is boring. I understand some people make real money with this gold on a private server, but for me, it's just a game i'd like to play without this shit.

Never heard of "DUO mobile" before. No idea if they are legit or not. Even if they are, I wouldnt trust a small startup to secure their shit over a big titan like google.

 

inb4: lol u tust google. - Yes, when it comes to 2FA for a vidya yes I do.

Share this post


Link to post
Share on other sites

Oooooh shit... I made another big mistake... I removed my account from "Duo mobile" to take the google 2FA app, and now, i can't connect anymore to my control panel... I think i'm cursed, or dumb...

Someone has an idea to get a 2FA mail without connecting to my control panel ? :'(

Share this post


Link to post
Share on other sites
On 31/03/2017 at 7:36 AM, Rumpelstiltskin said:

If 2fa really was active you could be a victim of what is called "rare server error" or something in the ToU. I suspect this happend on one of my alts when it was in it's early teens, one day I logged on and no gold or items in the bags, still had all equipped items and bank. The total loss was < 2 gold so I didn't bother really, and I haven't seen it happen again.

There's also been rumors on sneaky addons that can email gold automatically as you interact with mailboxes, not sure if that includes items though.

The amouns of gold i lost is not so big (1st time 3g and 2nd time 6g), but it's almos all i have each time...

Maybe it's an addon yeah... But to know which one, it's hard. Does someone know the name of the functions used to send mails, or mails with gold ? So i can search in the source code of the addons.

Share this post


Link to post
Share on other sites

i can't go ingame untill i get the 2FA QR code by mail to configure Google authentificator... I deleted my account on the other 2FA app i add, and can't connect anymore to the game or the contol panel... :(

Share this post


Link to post
Share on other sites

I have the same problem i deleted my 2Fa and deleted 2FA email and i can not enter via control panel. Is there anyway for someone to resend QR code to my email ?

Share this post


Link to post
Share on other sites
2 hours ago, Paytime said:

You can only do this via the 2FA app OR you can also restore your deleted email address. Other than that, we can't and won't (for security reasons) help you with this issue.

 

Best regards!

If you send the mail to the address configured on the account, what is the security problem ?

Coz now i'm fucked, i tried restoring all my deleted mails from Elysium, and couldn't find the one with the security code. So I'm unable to connect to my account...

Share this post


Link to post
Share on other sites

If remember well, Elysium send a mail with a QR code or a security code, so you can link your Elysium account on the 2FA app.

Share this post


Link to post
Share on other sites
Quote

I received mails from gold sellers in game, with an arrow in it. I found that weird, but i took the arrow in my stuff one time. Couldn't the hacker use this mail to steal my money ? (i know it's a weird question, but i wanna know...)

I would hope taking the arrow in order to facilitate deleting the email isn't a security breach, b/c that's what I do.

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this  

×