test content
What is the Arc Client?
Install Arc

we recently detected evidence of an unauthorized access to one of our user databases

SystemSystem Member, NoReporting Posts: 178,019 Arc User
I received the below email twice today. The first time I changed my password via the STO site. The second time I attempted to login with the most recent password, and it worked.

Was this email sent completely in error or just the second time was a mistake? Have others received this today? Complete (munged) email below.




Delivered-To: {munged}
Return-Path: <bounce-lists@crypticstudios.com>
Received: from Luna.cryptic.loc (universe.crypticstudios.com. [208.95.187.69])
by mx.google.com with ESMTPS id t9si26160752pbv.55.2012.03.06.15.40.30
(version=TLSv1/SSLv3 cipher=OTHER);
Tue, 06 Mar 2012 15:40:30 -0800 (PST)
Received-SPF: pass (google.com: domain of bounce-lists@crypticstudios.com designates 208.95.187.69 as permitted sender) client-ip=208.95.187.69;
Authentication-Results: mx.google.com; spf=pass (google.com: domain of bounce-lists@crypticstudios.com designates 208.95.187.69 as permitted sender) smtp.mail=bounce-lists@crypticstudios.com
Received: from 172.31.97.55 (172.31.97.55) by universe.crypticstudios.com
(208.95.187.69) with Microsoft SMTP Server id 8.3.83.0; Tue, 6 Mar 2012
15:41:01 -0800
Date: Tue, 6 Mar 2012 15:26:28 -0800
Return-Path: bounce-lists@crypticstudios.com
To: <{munged}>
From: Cryptic Studios <noreply@crypticstudios.com>
Subject: Cryptic Studios Account Status Notification
Message-ID: <7ea9364b110e0b8b1c4bed302af0d058@172.31.97.55>
X-Priority: 3
X-Mailer: PHPMailer [version 1.73]
X-Mailer: phplist v2.10.14
X-MessageID: 14
X-ListMember: {munged}
Errors-To: bounce-lists@crypticstudios.com
MIME-Version: 1.0
Content-Type: multipart/related; type="text/html";
boundary="b1_7ea9364b110e0b8b1c4bed302af0d058"
Received-SPF: TempError (Luna.cryptic.loc: error in processing during lookup
of noreply@crypticstudios.com: DNS timeout)

--b1_7ea9364b110e0b8b1c4bed302af0d058
Content-Type: multipart/alternative;
boundary="b2_7ea9364b110e0b8b1c4bed302af0d058"

--b2_7ea9364b110e0b8b1c4bed302af0d058
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 8bit


Hello {munged}

During routine checks, our security services and systems have
monitored abnormal activity on your account. As your privacy and
account security are of paramount importance to us, we've reset the
password on your account. You can recover your password via the
“forgot password” link on the official Star Trek Online or
Champions Online websites.

www.startrekonline.com/user/password
<https://www.startrekonline.com/user/password&gt;

www.champions-online.com/user/password
<https://www.champions-online.com/user/password&gt;

As a precautionary measure, you might consider changing your password
on other services where you use the same user name and password.






--
powered by phpList, www.phplist.com --



--b2_7ea9364b110e0b8b1c4bed302af0d058
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: 8bit


<html><head>
<meta content="text/html;charset=UTF-8"
http-equiv="Content-Type">

<title></title></head><body><table width="100%"
cellspacing="0" class="backgroundTable"
style="background-color: #000
;">
<tbody>
<tr>
<td valign="top" align="center">
<table width="600" cellspacing="0"
cellpadding="0" id="contentTable" style="border: 0px none
#000000;margin-top: 0px;">
<tbody>
<tr>
<td>
<table width="600" cellspacing="0"
cellpadding="0">
<tbody>
<tr>
<td class="headerBar"
style="background-color: #000000;border-top: 0px none
#333333;border-bottom: 0px none #FFFFFF;padding: 0px;"><br
/>
<div
class="headerBarText" style="color: #333333;font-size:
30px;font-family: Arial;font-weight: normal;text-align:
left;">
<div style="text-align:
center;"><a href="http://www.crypticstudios.com/&quot;
style="color: #000000;text-decoration: none;font-weight:
normal;"><img border="0"
src="http://files.atari.com.s3.amazonaws.com/crypticstudios/email/cryptic_email_header.jpg&quot;
alt="Cryptic Studios" style="margin: 0; padding: 0;"
/></a></div>
</div>
</td>
</tr>
</tbody>
</table>
<table width="600" cellspacing="0"
cellpadding="20" class="bodyTable">
<tbody>
<tr>
<td valign="top"
align="left" class="defaultText" style="font-size:
12px;color: #333333;line-height: 150%;font-family:
Verdana;background-color: #000000;padding: 0px;border: 0px
none #FFFFFF;">
<table width="500"
align="center">
<tbody>
<tr>
<td><span
style="font-size: 13px; color: #bbbbbb; font-family: arial,
helvetica, sans-serif"> <p>Hello {munged}</p>

<p>During routine checks, our security services and systems
have monitored abnormal activity on your account. As your
privacy and account security are of paramount importance to
us, we've reset the password on your account. You can
recover your password via the “forgot password”
link on the official Star Trek Online or Champions Online
websites.<br />
<a
href="https://www.startrekonline.com/user/password">www.startrekonline.com/user/password</a><br
/>
<a
href="https://www.champions-online.com/user/password">www.champions-online.com/user/password</a></p&gt;
<p>As a precautionary measure, you might consider changing
your password on other services where you use the same user
name and password.</p>
<p
align="right">Thanks for playing!<br />
<br />
Cryptic
Studios</p>
</span></td>
</tr>
</tbody>
</table>
</td>
</tr>
<tr>
<td valign="top"
align="left" class="footerRow" style="background-color:
#000000;border-top: 0px none #FFFFFF;padding: 20px;">
<div class="footerText"
style="font-size: 10px;color: #666666;line-height:
100%;font-family: Verdana;">
<p align="center"
style="margin-bottom: 12pt; text-align: center;"><img alt=""
src="http://files.atari.com.s3.amazonaws.com/crypticstudios/email/cryptic_email_footer.jpg&quot;
/><span style="font-size: 7.5pt;">This is an automated
informational email from Cryptic Studios.</span></p>
<p
align="center"><em>Copyright © 2011 Cryptic Studios All
rights reserved.</em></p>
</div>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>

</table><br /><br /><div class="emailfooter"> </div>
<p
align=left><a href="http://www.phplist.com"><img
src="cid:62c341ab7ea01aea7bd5753e3e0cc0a9" width=70 height=30 title="powered by
phpList version 2.10.14, © phpList ltd" alt="powered by
phpList2.10.14, &copy phpList ltd"
border="0"></a></p></body></html>
Post edited by Unknown User on
«13

Comments

  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited March 2012
    I got the same message (once not twice) about a pasword reset. I ignored it and logged in normally without incident. I've already changed paswords twice since the hacking incident, so I didn't see the need. But it was nice of them to inform me about the suspicous activity 2 day after I reported the compromise...:cool:
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    I just got the same email...

    I have not played this game in a long time, so I am patching. My old password still works, and this was sent to a different email address then what I gave Cryptic. I think it is a phishing attempt.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    I just received this email myself... looked a little suspicious so I decided to simply come here and reset them manually.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    I got teh same thing for an account I didnt own, 1 hour later I got it for an account I did own. What scared me is that I changed the password on my account the minute I got the first email, (the one I do not own) and shortly afterwards I got an email for the account I do own.

    So is it fake or what ?
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    I just changed my password like 2 weeks ago and now because the password reset isnt working I cannot get into my account, you just locked me out by doing this.

    I am quite angry right now....

    Luckily my cookies are still working or I wouldnt even be able to post on the forums.

    EDIT-

    Problem solved, seems killing the cookies solved the issue, now I am back in.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Just make them kind as Spam Cryptic has a Black Logo on the Back side of the message i got one of them too.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    i haven't gotten any emails but I had to reset my password twice yesterday and today after the account maintenance thing.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Note Edit.

    The other night I was lucky enough to get a Ferengi Marauder. I was immediately set upon by tells asking to buy the ship from me. Honestly, I had put the ship in my ship inventory without thinking of trying to make a profit off of it (I guess I wouldn't make a very good Ferengi). The next morning I had password issues and spent 15 minutes trying to log on. The next day I get an email from Cryptic saying that I might have been TRIBBLE.

    Really? Then perhaps it's best not to tell everyone in game that I have something they want. I was made a target the minute I got the ship. I understand wanting to promote stuff in order to make money, but not at the risk my privacy. I've been playing since BETA and despite all the bugs and issued I played through, I never had to worry about the security of my account. Now I do.

    Cryptic, word will spread of people getting these special ships. We see them flying around all the time. Please honor our privacy and not paint targets on our backs.

    Thank You and Live Long and Prosper.

    EDIT: After talking with my gaming friends, it seems to be a server wide issue. Apparently hacking was a problem before and a lot of people are finding that they can't log on. CHECK YOUR EMAIL! It may be unrelated to me getting the Marauder, but my point still stands on not telling everyone when I get something nice. I hope whatever the issue is gets fixed soon because these password resets are really aggravating people.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    I received this message in my mail today:

    As a result of routine security checks and upgrades, we have discovered that certain of your account information, including your password, may have been accessed by an unauthorized party.

    For your security, we've reset the password on your account. You can recover your password via the "forgot password" link on the official Star Trek Online or Champions Online web sites:

    Link1
    Link2

    If you have used your account name and password for other accounts, especially financial accounts or accounts with personal information, you should consider changing your password on other services as well.

    For full details on the unauthorized access, please read the notification here.

    Apologies for the inconvenience.

    Customer Service
    Cryptic Studios


    Before I do anything , I have tested if what the mail is saying was correct but I can log into the game and on this forum so please be careful what messages you open and/or click, follow links from.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Not phishing

    http://www.crypticstudios.com/securitynotice

    If I am reading it correctly, if you can still log in, your password wasnt one of the accounts that got changed by Cryptic. If someone else can confirm if this is correct?

    Andrew
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Sad truth is it's not fishing. official Cryptic linky concerning on going since 2010 security breach.

    If you did not have to change you password that implies you were lucky. If like me you had to change your password then you might not be as lucky.

    What is screwy though is why you got the email when you did not have to change your password and I did not get an email when I did have to change my freaking password.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    When I tried to log in STO launcher today, it said Invalid username or password.
    I tried several times but all failed. Then, I checked my email and I got the same email like yours.
    Changed my password the link above(actually it was reset link), then with new password I had no problem with log in.

    I think it wasnt a phising, but I need confirmation about this password changing email.

    Did you send this email to users, Cryptic?
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    I cant log in to my account, neither email I use gets me anywhere for forgot password. It says my pw is invalid anyone have this issue??
    _________________________________________________________________________________

    I have these two emails in my inbox-

    Dear jesushc,

    You have requested that your password be reset. Please click the following link to do so.

    If you did not request this, just ignore it. Nothing will be changed.


    All the best,
    -Perfect World Entertainment, Inc.

    I do not and have never registered a PW account. Let alone 'jesushc'
    ___________________________________________________________________________________

    Then this one-

    Password reset request for ghandisays at Cryptic Support

    This is an automated notification regarding the password reset request made for your account.

    A request to reset the password on this account was made at Thu, 04/26/2012 - 00:29 via the Account Management page at Cryptic Support.

    To reset your password, navigate to the following URL:
    Please note that this password reset request will expire four hours from the time it was requested.

    If you are not able to log in after resetting your password via the above link, you may need to recover your account name as well. You can recover your account name at https://support.crypticstudios.com/user/accountname

    ****If you do not want to reset your password, disregard this email - no action needs to be taken.
    Remember, you may find answers to Frequently Asked Questions at


    Additionally, you may contact the Account & Billing Support Team by emailing customerservice@perfectworld.com.

    Sincerely,
    Cryptic Studios Account & Billing Support Team
    --This is an automated message, please do not reply to this email address.--

    Sincerely,

    Cryptic Studio

    Never created an account by this name either
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Look at first post
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Look at first post
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    you may want to read this if not already, and follow the links provided (if the link they provide redirects you to the front page then you need to log off the forums for it to work).

    http://forums.startrekonline.com/showthread.php?t=268025

    no idea why they would send you a mail with a name you have never used before though?
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Yesterday, I played successfully, but today when I try to log in, it says that my password is incorrect. I also have a mail from cryptic that says my account may have been compromissed, and that I should press "Forgot my password".

    What should i do?! I have written a mail to the support, but don´t expect an answer for a few days. PLEASE HELP.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Step 1. Relax
    Step 2. Breath
    Step 3. Go here for information on whats going on (as it relates to you)
    http://forums.startrekonline.com/showthread.php?t=268025
    Step 4. ????
    Step 5. PROFIT!!!
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    nynik wrote:
    Step 1. Relax
    Step 2. Breath
    Step 3. Go here for information on whats going on (as it relates to you)
    http://forums.startrekonline.com/showthread.php?t=268025
    Step 4. ????
    Step 5. PROFIT!!!

    I cannot use the "forgot password" function. The website is just thinking for a while, before it re-directs me to the Main-STO page.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Hope this helps you:

    • Just log out (upper right of your screen as you reading this)
    • go back to the official page
    • use the register/login button on the same place (upper right of your browser)
    • use the password forgotten option
    • type in your e-mail adress, and a new password will be send to you
    • follow the reset link in that mail and choose a new one
    • log back in with the new password
    • play the game
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    nynik wrote:
    Hope this helps you:


    THANKS! It works now. I´m able to log in, and everything seems like it was before. Get really scared when stuff like this happens. Last year, my wow account got TRIBBLE to death, along with my mail by the same person. The game got fixed quite easilly with just a phonecall and then a ticket and I got everything back. But my mail took some more work. I would like to have a phone number that i can just call insted of having to wait for a few days to get a mailresponse.
    Thanks for all the help!
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    CosmosCola wrote:
    THANKS! It works now. I´m able to log in, and everything seems like it was before. Get really scared when stuff like this happens. Last year, my wow account got TRIBBLE to death, along with my mail by the same person. The game got fixed quite easilly with just a phonecall and then a ticket and I got everything back. But my mail took some more work. I would like to have a phone number that i can just call insted of having to wait for a few days to get a mailresponse.
    Thanks for all the help!

    Cancel the Red Alert!
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    CosmosCola wrote:
    Thanks for all the help!

    Happy to help.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Would some one care to tell me why in 2010 some one got in to your system and now what 1 year or so on we are only just finding about about this.
    And how the hell this was not picked up well befor this I mean what a Disgrace.
    And really why was this not picked up ?
    All the other TRIBBLE u lot pull I can deal with but when it comes to personal information
    And I am sure there's a lot of of players out there would like to know the answer.
    How the hell have u not picked this up befor ?

    And befor any one says it put a ticket in well that would be as point less as me expecting to get an answer to this.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Hi Sir, :D

    My friend his account has gotten the message to reset his pasword.

    He has received a message he needed to reset his password, but the link leads to nothing ! :(

    Can somebody please help My friend Richard get his account back ??? :eek:

    Thx a million times for your efforts on his behalf !!!
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    its often impossible to know you have been TRIBBLE until they then start to do malicious things with the information. there are probably quite a few companies that have been TRIBBLE and have not worked it out yet.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Dude way too much personal info. The name and the email should be edited out pronto. Take it from a guy who was nearly banned from the forums for life for posting someone else's no where near as private info.
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    its often impossible to know you have been TRIBBLE until they then start to do malicious things with the information. there are probably quite a few companies that have been TRIBBLE and have not worked it out yet.

    I want to know why the checks that found it are not done more often I mean for god sake
    It took this long to work it out.
    wtf really
  • Archived PostArchived Post Member Posts: 2,264,498 Arc User
    edited April 2012
    Hypothetical situation: Someone has gained access to your e-mail account. You don't know.

    1 month later: That person has been reading your e-mail and marking it unread afterwards without doing anything malicious.

    How do you know if you've been TRIBBLE?

    2 month later: That person has started sending spam from your account and your friends have told you that they've received something from you which is malicious.

    You now realise you may have been TRIBBLE.



    It's often difficult to know when your personal information has been compromised unless someone actually uses it.
This discussion has been closed.