Forums

Email & Social Media Safety Thread is sticky

Quick find code: 14-15-718-66078080

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
.....
(¨ˆ*°•.¸ . ¸•°*°•¸
..............................................
¸•°*°•¸ . ¸.•°*ˆ¨)

......
`·.,¸¸¸,.·´ ¸·´',¸,'
....
Email & Social Media
...
',¸,'`·¸ `·.,¸¸¸,.·´

........
`·.,¸¸,.·´ ,··,
....................
Safety
.....................
,··, `·.,¸¸,.·´

................
`·.,¸¸,'
.......................................................
',¸¸,.·´



I am writing this thread after finding out many people I know have been hijacked lately. For a lot of you, you’d already know about this information, but just as a reminder to everyone about the risks and dangers. I have always tried to be careful with anything I do online, however there’s always something you may not know or it simply doesn’t cross your mind.

With this thread, I’ll go through a majority of different social media sites & email providers used today and try to explain how to remain secure – in regards to hijackers. Some may not be used for RuneScape, but your personal life, it is still recommended to go by the settings shown in this thread. Hijackers will use anything to get ahold of the smallest information about you to get your items and account! This is also known as Social Engineering.


I'd like to give thanks to
Loki
, who assisted me in writing this thread, and spent countless hours testing things with me. :)


More will be added to the threadwhen necessary.
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:03 - Last edited on 16-Mar-2018 09:57:10 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Thread Contents



Page 1:
1.1 Opening post
1.2 Thread Contents
1.3 RuneScape safety
1.4 E-mails – 2-step verification
1.5 E-mails – RWT/Phishing Emails
1.6 Emails - RWT Emails (Continued)
1.7 Twitter
1.8 Discord
1.9 Discord (Continued)
2.0 Reddit

Page 2:
2.1 Skype
2.2 Skype (Continued)
2.3 TeamSpeak
2.4 Reserved
2.5 Reserved
2.6 Reserved
2.7 Reserved
2.8 Reserved
2.9 Reserved
3.0 Reserved
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:14 - Last edited on 16-Mar-2018 11:20:28 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
RuneScape Safety


There’s already a load of helpful existing topics in the Support Center and player made threads, which are already fantastically written, so I’ll just use this post to provide links to each.

Official Guides:

¤
Support Center - Your Account
¤
Authenticator
¤
Scamming Prevention Guide

Player Made Guides:

¤
Account Security for Dummies
¤
Comprehensive Account Security
¤
Boot/Lock Your Account [GUIDE]
¤
How NOT to Be Scammed Guide
¤
How To: Authenticator on PC

I may add some more information to this post later on if there’s suggestions by other players.
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:22 - Last edited on 16-Mar-2018 10:00:21 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Emails – 2-Step Verification


I cannot stress enough how important it is to keep security at maximum when it comes to your email, due to the fact your email is a major factor to protecting your RuneScape account. There’s more security available to emails than just a password, such as 2-Step verification, recovery questions, backup email (not recommended), etc.

Firstly, it’s highly recommended to use Gmail as their security is far more advanced to other email providers. As there’s no point to repeat what’s already been done by Salubrious (new version recreated by Iceberg), check out her thread Comprehensive Account Security: Email Security here .


Setting up 2-Step Verification:


Gmail:

¤
My account > Sign-in and Security > Signing in to Google
¤
Once there, set 2-Step with either Athenticator and/or text messages
¤
Save changes
¤
Under account recovery, set a phone number to recover with.
Never
put a recovery email there, as it’ll be just as easy for a hijacker to get access!





In my opinion, it would be better to use authenticator on a smartphone so it’s harder for a hijacker to get to, however, if you don’t own a smartphone, then you could just use authenticator on your PC.

Hotmail:

¤
Profile > View account > Security and Privacy (top right)
¤
Add in phone number recovery and 2-step verification

»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:29 - Last edited on 16-Mar-2018 09:47:53 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Emails - RWT/Phishing Emails


A lot of the time, if your email is known to hijackers, you’ll be sent an email stating your account has received an infraction, and you’ll be banned if you don’t take immediate action. Although they may look legitimate, these emails are
FAKE
, so don’t click any links on them. There are various different formats of these fake emails, the one shown in the image is only an example, however there are still ways you can check to see if the email is legitimate or not.



¤
Is the email addressed to your in-game username? Jagex will always send emails to you addressed as ‘Hi [in-game username]’
¤
Has the fraud detection on your email failed for this?

Remember, Jagex will never email you about bans, lawsuits, Pmod/Fmod status, or personal information. These messages will only be sent to you via the message center.



If you’re ever unsure, please:


- Provide an example of the email by posting on the Phishing Report Centre forum thread, so that Jagex can investigate it, and then delete the email.
- Do note, that the email is no longer in use, and you should refer to the forum thread listed above.

More information on phishing emails can be found on the Support Center here .
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:38 - Last edited on 15-Feb-2020 09:42:56 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Emails - RWT/Phishing Emails (Continued)




An example legitimate email sent from Jagex.



When trying to determine if an email sent by Jagex is legitimate or not, go through these steps:

Email personalisation
– Jagex will always include personalisation in our emails to you, usually your display name. Phishers are unlikely to have this personalised information in the email (check above screenshot).

From name
– Jagex use both & as from name however, this isn’t always reliable as it can be spoofed by phishers relatively easily.

Mailed-by (Gmail)
– As you can see here, the mail will always come from
bluehornet.com
(check above screenshot).

Hover over links before clicking them
– I know this might seem a little tedious, but if you’re ever in doubt about the legitimacy of one of our emails, hover over the link to check the URL is what you’d expect it to be.

Check for spelling mistakes
– Legitimate messages usually do not have major spelling mistakes or poor grammar. Read your emails carefully and report anything that seems suspicious

Attachments
- Jagex emails will
never
include an attachment – All the information we need to provide you will be in the email itself, never an external file.


Note: Some of this post was written in reference to Mod Mikeyy's forum post in the General forums.
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:51 - Last edited on 16-Mar-2018 10:36:22 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Twitter


Much like Discord and Reddit, Twitter doesn’t have many hazards to worry about as others cannot easily access your IP address, however, it’s more of a profile for yourself. This means, do not include personal information such as your date of birth, Facebook, Skype, etc account information, as hijackers can use all this information to slowly piece together enough data to recover your account and hack.

Below are a few good examples of how much information is appropriate on your Twitter profile. Not too much information that a hijacker can gain information off you. Having your country is fine, but nothing more such as state/city/etc. If you do use an image of yourself, remember that people could potentially use that to cross reference pictures on Google which look visually similar to yours. For example, if your Twitter and Facebook both have the same picture, it’s possible that a Google search could come up with both accounts. (Credit from 'Silently’ for the information on picture cross referencing)

Example 1:
Great example. Not too much information, just country. (Permission was gained from Silently before posting this)



Example 2:
Alright example. Still doesn’t show much information, but still shows part of his birthday. (Permission was gained from Gucci before posting this)




Fake Jagex Mod Twitter Accounts


Twitter is very popular for scammers/philshers to target due to players use of @JagexSupport to report issues. Be careful for certain accounts contacting you. Keep an eye out on Stevie5646's " Twitter Impersonators thread.
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:45:57 - Last edited on 18-Oct-2018 12:23:31 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Discord


Used for -
Instant messaging (single person or group of people), voice and video calls (single person or group of people), file sharing, status updating.
Public Profile -
No (People need to know your username to add you)
Other –


There really isn’t anything to post about Discord. While it’s not like other forms of social media, it can still be used to communicate with different groups and it’s currently one of the most secure social media resources around! Even the server owner or admins of a Discord channel cannot see your IP addresses or any personal information about you.




As can be seen in the above picture - I do not have that person added, however, as they have allowed people who don't have them added to view their other social media, this poses a risk to your security. It is highly recommended to have this feature turned off, or not to connect any social media to Discord.



Remember though, files can still be sent through Discord (capped at 20MB), so be aware of what you choose to open and view!





Setting up 2-Step Verification on Discord:


¤
Once in Discord > User Settings > Security > Enable Two-Factor Auth



Links on Discord:


Always be cautious on what you click on Discord. Discord will always provide a warning that you're heading to an external site. Always watch the links you're about to click, as they might be dangerous.
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:46:06 - Last edited on 15-Feb-2020 09:45:17 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Discord (Continued)




When on very large servers (example above - Minigames server has 647 members), they can be prone to possible scammers/philshers joining, and then messaging you directly with harmful links. To prevent this, go to Settings > Privacy & Safety > Turn off "Allow direct messages from server members" (shown below). This then means someone has to add you before they can send you a message.

»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:46:13 - Last edited on 18-Oct-2018 12:23:56 by Minigames

Minigames

Minigames

Posts: 4,630 Adamant Posts by user Forum Profile RuneMetrics Profile
..............
¸•°*°•¸

`·.,¸¸¸,.·´
Reddit


Used for -
Gathering information, responding to threads and posts, private messaging (single person).
Public Profile –
No, there are no profiles of users.
Other -


There really isn’t anything to post about Reddit. You’re pretty much fine when using it, but as always, be wary of any links posted there.

RuneScape related subreddits:

¤
RuneScape: /r/runescape
¤
Old School RuneScape: /r/2007scape
¤
RuneScape Chronicle: /r/RSChronicle
¤
RuneScape Idle Adventures: /r/RSIdleAdv
»
»
»
Minigames
| AFK Thalers, Goebiebands and Chat Lounge FC: Minigames
» » » Join the Minigames / D&Ds Community Discord Server!
https://discord.gg/WERrVuE

24-Dec-2016 12:46:22 - Last edited on 18-Oct-2018 12:24:05 by Minigames

Quick find code: 14-15-718-66078080 Back to Top