Stopping Account Sharing/Selling/Hacking

Anything and everything!
Post Reply
Xeaon
Posts: 1286
Joined: Sat Feb 25, 2006 8:26 am

Stopping Account Sharing/Selling/Hacking

Post by Xeaon »

Account sharing/selling have been a evil since the early days of A3 CLosed beta itself (no personal comments... keep flaming/*censored* outside this thread). Here is a way that i came across while registreing for a internet website recently, which if applied with appropriate modifications can prevent all the abuse of accounts.

At the time of registration, Sify may issue/give a 10 caracters alpha-numeric code or may be 5 such sets so as to make it more secure. Such a verification code set would be a permanent and not changeable by user in normal circumstances. Moreover such a set would not be visible even in the profile. The actual user only gets this verification code set once in his mail box at the time of registration.

First thing that a buyer of account does is to change the password. Now if a person knows that original owner of account can get his account back, he will most probably not buy it. Secondly, when account is hacked, the owner can simply type his verification code and get into profile and regain his account.

So far as hacking of verification code is concerned,its not possible because ,
1.Its sent only once in lifetime of account.
2.Its never used while logging in game/forum/profile etc.

Was wondering whether this is workable or not. If you think no , then please give reason.
Sandeepndedh
Posts: 97
Joined: Thu Jun 23, 2005 8:10 pm
Class: Holy Knight
Town: Quanato

Post by Sandeepndedh »

A perfect way to prevent selling, but sharing and hacking i doubt, will tell u why.
1st thing sharing of account initiated by user itself then how this verification code will prevent?????
For hacking there is way of social engineering to get this verification code. Though this will depends on dumbness of user only but still there is way. Now consider this case a person A found that his account has been hacked he trys to change his password by verification code, boooom machine has key logger etc. stuff ur verification code too got hacked and u lost ur account forever. One obvious way will be ask admin to change verification code but your policy restricts u to do that, now ????
But this is more secure way and I say A3 should implement it as soon as possible.
Nice IC
Xeaon
Posts: 1286
Joined: Sat Feb 25, 2006 8:26 am

Post by Xeaon »

First of all i believe that when a person is hacked, he gets alamred that something is wrong. This itself should prevent him from loggin him from his normal computer access points, be it home or a cafe. So chances of his verification code getting hacked are minimal.
Eos
Posts: 1628
Joined: Tue Sep 20, 2005 6:35 pm
Class: N/A
Town: N/A
Location: Bangalore
Contact:

Post by Eos »

No no..ur assuming that all persons who get hacked have common sense. They don't! so its not necessary they do as u said
Sandeepndedh
Posts: 97
Joined: Thu Jun 23, 2005 8:10 pm
Class: Holy Knight
Town: Quanato

Post by Sandeepndedh »

Only 0.5% of people who get hacked knows how to proceed rest of them 4get it and create new one, this was i have seen in my life. But I agree Chances are minimal. Though verification code is 1st implemented to protect spamming but use of verification code to protect user will also work. hope algo to generate verification code wont be cheep one :wink: Imagine You cracked that algo…….. :twisted: :twisted: :twisted:
Nihalda
Posts: 131
Joined: Fri Mar 10, 2006 8:29 pm

Post by Nihalda »

Well totally agree with IC and sandeep. Something like this have to be implemented by sify.But still there are ways to get past this.The best is to stop sharing of accounts. Nowadays its like every char is played by almost 4-5 people and u never know who is playing.Its like you see someone with whom you partied yesterday or played, and the next day when you talk to them they dont even know you coz there is a different guy playing now :x

Although sharing among family members like your brothers or cousins can be understandable but sharing if necessary should be kept maximum between 2 players.Atleast this will lessen the confusion on who is playing and surely i hope your bros or cousins wont hack your account :twisted: . Hope sify do some serious work towards this.

Also there should be set of guidelines on what to do if your account gets hacked and since not all people read forums so this can be implemented in game only. This will surely help all those who just start playing with new characters on getting hacked. "Good thinking guys." :) :)
Post Reply