As someone who has been on the receiving end of multiple scams, lures, and account hijackings over the years, I have first hand experience of how deeply frustrating and distressing it can be to find oneself in such a situation, and how it completely ruins the game for the victim involved.
It is definitely encouraging to see the ever increasing amount of updates Jagex have rolled out over the years that address account security and keeping players safe, the most recent being the Jagex account upgrade.
However, just as I'm sure the Jagex team are continually improving the set of tools and systems available to protect players, the nefarious actors in the space are also improving upon ways around such systems, and historically speaking (I say this with no intent to criticize) Jagex have not been (in my opinion) ahead of the curve.
As someone who is passionate about keeping my account safe, after falling victim so many times. I have some thoughts/concerns and ideas, which I hope members of the community and team will take the time to read and discuss.
1. Account security
From my conversations about Jagex accounts, it seems there is a single point of failure, which is relying on the player keeping their email accounts secure. However my understanding is that with most account hijackings, it is likely the player's device was compromised or some sort of phishing occurred which likely means the player's email account is also compromised. Does this not mean that players are actually more likely to irrevocably lose their account with no recourse?
Suggestion: Allow players the option to add KYC or a hardware authenticator to their account which CANNOT be removed and which can be used to recover their account in the event they lose control or are unable to access their account.
25-Jun-2023 11:03:17