Forums

Account hijacked!!! Help!!!

Quick find code: 408-409-461-66284789

Mizzd

Mizzd

Posts: 1 Bronze Posts by user Forum Profile RuneMetrics Profile
Hello, sorry if this is not the proper way to reach out but i am currently in the middle of getting hacked. They moved my account over to a jagex account, i just put in an appeal but i dont want to log off because theyll wipe my bank. Any chance someone can look at my case?

The name is wavechange

06-Aug-2023 22:39:32

Malua
May Member 2006

Malua

Posts: 43,113 Sapphire Posts by user Forum Profile RuneMetrics Profile
Hi there
Mizzd


How do you know the account has been upgraded into a Jagex Account?
If it was, a recovery appeal would not work as you would be told there is no such login (your original login wouldn't work anymore).

While you still have access to the account, check the 'Linked Accounts' tab in account management. Unlink any linked accounts you see. Click on 'Manage Steam' to check for a linked Steam account.
Forum Community Helper -
Information about Moderators and Community Helpers

07-Aug-2023 00:49:27

Skidrpirdiss
Mar Member 2024

Skidrpirdiss

Posts: 5 Bronze Posts by user Forum Profile RuneMetrics Profile
Hi, i just logged into my account for the first time in couple of months, and i have a notice that account was banned and ban has expired. Now when i look into my acc, all my bank is sold and my character was standing in The Corrupted Gauntlet and by the looks someone was using and bot for that place, i have never used any bot system or script and i have no friends so there is literally no one that could have gotten my password. I have a authentificator and bank PIN. i have NOT been to any OSRS or RS3 related websites, because been playing DOTA2 and steam is not connected to account. Same goes for other devices, none of them are connected, so how can some dumb little trash hacker bypass that all?? keep in mind i have 00 friends to share any information to. Now 7+ years of gameplay gone, all gold gone only left with stupid bonds that bot have bought or was selling idk, i really enjoy this game but now that all is lost idk what to do. 000 chances for rebuild thanks a lot!!!!!

12-Sep-2023 14:51:47 - Last edited on 12-Sep-2023 14:59:13 by Skidrpirdiss

Malua
May Member 2006

Malua

Posts: 43,113 Sapphire Posts by user Forum Profile RuneMetrics Profile
Hi there
NotedDeath


Are your Authenticator and Bank PIN still active or have they been removed?

If they are still active , you should check the 'Linked Accounts' tab in account management and unlink any accounts you see linked (including your own). Click on 'Manage Steam' to check for a linked Steam account.
The most common explanation for a hijack that has bypassed an active Auth and Bank PIN is access through a linked account.
If there are no linked accounts, the next most common explanation is that your computer has malware installed.

If your Authenticator and Bank PIN have been removed , you need to suspect that your email is insecure. Change its password and set up 2-step verification on it.

Not having friends in-game or going to RS fan sites doesn't mean that your account would always stay secure (though it does reduce the chance of a hijack).
If you use the same login/password combo on any other web logins, the information could have been found out that way.

I recommend you review your security thoroughly through these instructions: Security tips
I also recommend you consider upgrading your account/s to a Jagex Account as they are much more secure than the old RuneScape account.
Information and FAQs: Jagex Accounts FAQ
Forum Community Helper -
Information about Moderators and Community Helpers

13-Sep-2023 00:46:55

Skidrpirdiss
Mar Member 2024

Skidrpirdiss

Posts: 5 Bronze Posts by user Forum Profile RuneMetrics Profile
Hello, no i have never linked anything to my account, it is unlinked since day one. Authenticator was still on, but my phone was at repair centre for 2 days and they reboosted all phone so maybe 2 days without authenticator did that, but BANK PIN was off so i dont know how they got info about that, i literally have no friends IRL as well, so makes no sense. I know i am not going to get any items or gold back from jagex, but please, at least take BOT BUSTING moderated (ban) off of my account and all Kill count of Corrupted Gauntlet , because i NEVER did that!

14-Sep-2023 09:32:04

Malua
May Member 2006

Malua

Posts: 43,113 Sapphire Posts by user Forum Profile RuneMetrics Profile
It sounds like your hijacker knew your login/password and was just waiting for you to disable your Authenticator one day. An unknown Bank PIN can be removed after waiting 3 days and you didn't log in for a couple of months so the Bank PIN removal would have been no trouble.

As I said before, if you are using the same login combo (email/password) on other websites, your login information could have been found out through another website. Always set a different password if you are using the same login email on different web logins.

The offence will always stay in the account history.
Offences are linked to accounts, not to players. It doesn't matter that you didn't commit the offence. What matters is that it happened on your account. The record will always remain.

Jagex also will not remove account activity that was done by a hijacker.
A player has to accept that damage has been done or changes made by the hijacker and move forward from there.
It is important to make sure a hijack can never happen again. I recommend you review your security thoroughly through these instructions: Security tips
I also recommend you consider upgrading your account/s to a Jagex Account as they are much more secure than the old RuneScape account.
Information and FAQs: Jagex Accounts FAQ
Forum Community Helper -
Information about Moderators and Community Helpers

14-Sep-2023 10:01:05

Skidrpirdiss
Mar Member 2024

Skidrpirdiss

Posts: 5 Bronze Posts by user Forum Profile RuneMetrics Profile
There are no people who could have known my username, literally i hide it even from my wife, and 0 chances to guess my password, did not even get any notification that someone was trying to hack into any of my acc. I have jagex account , its almost as old as OSRS when it came back finally, and i have 2 emails secured, with 2 different email providers, 2 step authenticator for all 3 accounts (osrs account, 2 email account) with different recovery questions, still makes no sense witch brings me to my question:

1) is it possible to raise a poll for bank PIN upgrade from 4 digit PIN to at least 6 digit, nowadays there are programs and PC that can calculate ALL those 4 digit combinations in less than a day and try to use all off them in about 2 days.

2) why is there such a poor Bank protection? YOU CAN SWITCH OFF BANK PIN IN 3-7 DAYS??!?! majority of players take breaks from this game, like myself i finally got a free summer for the first time in years. now in 3 months i lost 7y+ of progress easy!!!
maybe it could be possible to increase the day limit to 30 at least, because 3-7 days is NOTHING!

3) regarding 1st question, maybe a poll for a Security question for bank pin, ( player hand written and answered question ) or ( game designed question and player hand written answer ) So only the real account owner knows the bank pin.
(imagine bank safety with 6 digit pin, 30 days to recover just in case, and a security question before you can change any bank settings) that would make your account at least 50% safer

well i don't know where to put this post, and i don't know if jagex really take player thoughts seriously, but i know i am not the only one thinking this, by the looks of forums and videos a lot of players have lost all their progress due to lack of bank security.

15-Sep-2023 07:24:34

Quick find code: 408-409-461-66284789 Back to Top