I've just changed my password, not risking an attack
"The meaning of victory is not to merely defeat your enemy but to destroy him, to completely eradicate him from living memory, to leave no remnant of his endeavours, to crush utterly his achievement and remove from all record his every trace of existence. From that defeat no enemy can ever recover. That is the meaning of victory."
-Lord Commander Solar Macharius
The same is happening on the Neverwinter forums, a lot of accounts are getting TRIBBLE. I'm still wondering if there is a vulnerability in the system (backdoor) or if it's the clients fault (phishing for example). I use Lastpass, so I doubt I'm vulnerable to a phishing scam (If it refuses to autofill, I know it's not the right website).
nothing is safe from tampering, it happens even to the most secure websites, dont kid yourself thinking your secure because your not and neither am i or anyone else.
ever heard of cross-site scripting. so yes i know what im going on about and that resource is a security risk. the only way information says safe is in my head.
If you're logged in, you're using a cookie, however temporarily.
The same is happening on the Neverwinter forums, a lot of accounts are getting TRIBBLE. I'm still wondering if there is a vulnerability in the system (backdoor) or if it's the clients fault (phishing for example). I use Lastpass, so I doubt I'm vulnerable to a phishing scam (If it refuses to autofill, I know it's not the right website).
Well it was already said that it shows your information in Plain Text from your GET... That is an obvious problem.
Finally got my account back and all my stuff. however the stuff the guy sold on the exchange somehow that money is lsot to me, due to the revert back. At least I got 99% of my stuff back.
Comments
-Lord Commander Solar Macharius
If you're logged in, you're using a cookie, however temporarily.
Well it was already said that it shows your information in Plain Text from your GET... That is an obvious problem.
I have been using it since my account got TRIBBLE in the big raid last year, haven't had a problem since.
-
Mine was on and it still happened, they changed my account's email address without access to mine.
I'm starting to think it might be on PW's end.