Forums

Massive account security issue

Quick find code: 408-409-932-66277237

norgebball
Apr Member 2022

norgebball

Posts: 1,387 Mithril Posts by user Forum Profile RuneMetrics Profile
I'm posting this on behalf of my hacked account. Yes this account was hijacked. How am I doing this? Linked accounts. The hijacker was able to change email. Attach my email to a random noob account. Get past 2FA. But they forgot the linked accounts.

I'm on my 10 plus account recovery request and being denied. Note I had stopped playing around 2012 and came back last year. I had forgotten my password but was able to get it back last year. This time no. Why would I be able to recover my account last year and this time with same info denied? What happened? The hijackers know the system. I provided transaction details from over 10 years ago. I've had the same email then as I do now.

A few days ago I was able to get into account. I saw immediately they started the bank pin reset. I stopped it. But today I see they enabled 2FA. So I can no longer get into the game. But 2FA doesn't stop you from using your linked account to sign into account settings.

1) If theres a removal of 2FA please in game message us. I dont want to click any emails incase of phishing.
2) If we have linked accounts let us us that to authenticate our accounts.
3) If you see billing email is same as account email why would you account email recover be changed?

I think I've given up on trying to recover this guy. We had a good run RS. Game on.

UPDATE: I'm back! With the support tickets where I was able to share all details I was able to get my account back! So excited. I log in and I was on last day for pin disable. So lucky. I saw they went to deaths office using my reapers and some TH keys. But that's it. They weren't able to trade so I'm left with uncut hydrix in inv lol.

What happened is while I stopped playing 10 years ago my account was being shared/ sold or something. So the hijacker used that info to take control of account. I had no idea. I thought when the rs3 merger happened I had a random username assigned.

27-Mar-2023 07:01:29 - Last edited on 27-Mar-2023 15:09:51 by norgebball

Malua
May Member 2006

Malua

Posts: 43,113 Sapphire Posts by user Forum Profile RuneMetrics Profile
Hi there
norgebball


If the hijacker has managed to put through a change of email, it means they have access to your email.
Secure your email right away. Change its password and set up a 2-step verification on it.

Do not recover your account to that email. Jagex would consider it compromised and would reject account recoveries to it.

1) the only way to disable the hijackers 2FA is to recover the account, then put through a disable request.
2) Linked accounts are a known security weak point. Your hijacker currently controls your RS account and they can't keep you out! Why not? because of the linked account!
3) a player can change the registered email of their account to whatever they want.

Don't give up so easily. The best revenge you can do is to lock that hijacker out of your account.
Post back and tell us how quickly the deny reply arrives back after you submit your recovery.
If we know the answer to this, we can tell how far into the process you are getting stuck.
Forum Community Helper -
Information about Moderators and Community Helpers

27-Mar-2023 07:58:40

norgebball
Apr Member 2022

norgebball

Posts: 1,387 Mithril Posts by user Forum Profile RuneMetrics Profile
Thank you. It looks like while I stopped playing 10 years ago my account was stolen/ sold/ shared ownership or something. Which made it look confusing when trying to unlock from RS side of things. Seems like that person tried to get back into account, did the account recovery had it unlocked for them and was able to then remove 2FA/ etc.

27-Mar-2023 15:02:40

2_Tron

2_Tron

Posts: 23,025 Opal Posts by user Forum Profile RuneMetrics Profile
If you fail to upgrade/update your security after a recovery it basically means that the other person is able to use the same credentials to get into that account thus getting hijacked for a second time.
A new recovery does mean a more difficult, more information requiring to successfully pass through a new recovery.

27-Mar-2023 15:29:21

Ladyolake
Jan Member 2008

Ladyolake

Posts: 7,111 Rune Posts by user Forum Profile RuneMetrics Profile
The only way to remove the 2FA is by clicking a link in the registered email. Even account recovery doesnt remove 2FA. only by requesting the 2FA removal email and actually clicking the link in the email. The richest person is not who has the most. It is who Needs the least.

27-Mar-2023 22:20:37

Quick find code: 408-409-932-66277237 Back to Top