Nabutso wrote:
Nas already implemented a brute force fix for the account login page, which was the only place on the site missing it. Someone seems to have been getting in with a script that was brute forcing passwords. So if you had a weak, short password, it was easily guessed and they got in. If you have a weak, or short password, change it. My password is over 20 characters long!
Check his fb/twitter! He's even looking into getting stuff back for players, but there are no promises since it seems to have been widespread and may take some time, have complications etc.
Adding some form of 2fa is not as easy as it sounds, so that might only come later.
I know it's a long shot and I understand the position it puts Nas in having to make that sort of call to give a person's belongings back or not. I just really hope so because one of the people I know who were hit by this was basically the LS bank holding items and gil for the entire ls, so it wasn't simply just one person - in this case - affected by this hack. Said person lost upwards of 20 mil in gil and likely around another 30-40 mil more in item value. They're contemplating quitting the server altogether or taking a break at this point.