Guild Wars Forums - GW Guru
 
 

Go Back   Guild Wars Forums - GW Guru > The Inner Circle > Sardelac Sanitarium

Notices

Poll: Should players have the option to protect their accounts more?
Poll Options
Should players have the option to protect their accounts more?

Reply
 
Thread Tools Display Modes
Old Jan 26, 2008, 09:49 PM // 21:49   #41
Age
Hall Hero
 
Age's Avatar
 
Join Date: Jul 2005
Location: California Canada/BC
Guild: STG Administrator
Profession: Mo/
Advertisement

Disable Ads
Default

/Signed .I don't care as I know someone who had their account hacked twice and had to redo all their char again.I don't want that going through all camps again.
Age is offline   Reply With Quote
Old Jan 26, 2008, 09:54 PM // 21:54   #42
Forge Runner
 
Join Date: Jun 2006
Guild: Guildless, pm me
Profession: R/Mo
Default

Quote:
Originally Posted by Age
/Signed .I don't care as I know someone who had their account hacked twice and had to redo all their char again.I don't want that going through all camps again.
Basically, read what Gaile said, if you are smart with your info, don't do anything against the TOS or EULA, you will be fine with your account.

IMO, if you are dumb enough to get phished or download a sketchy 3rd party program, you deserve to lose your account.
Kanyatta is offline   Reply With Quote
Old Jan 26, 2008, 09:57 PM // 21:57   #43
Emo Goth Italics
 
Join Date: Sep 2006
Default

Quote:
Originally Posted by Kanyatta
IMO, if you are dumb enough to get phished or download a sketchy 3rd party program, you deserve to lose your account.
Agreed, you shouldn't have ANYTHING compensate stupidity.

The only thing that concerns me - is if one of my mates turn into a total divv, or someone guesses my Accname/Pass.
Tyla is offline   Reply With Quote
Old Jan 26, 2008, 10:05 PM // 22:05   #44
Academy Page
 
Join Date: Oct 2007
Profession: Me/
Default

/signed

And I've another suggestion: hide the account name (email) on logging screen. If some badguy install a keylogger on my computer he would be able to do a screen capture and then have both email AND password.
So, just hide our emails, there would be a big security boost.
And plz, dont say things as "the user made a fault because his firewall/antivirus/antirootkit/antispyware/windows update/etc wasnt up to date".
We're talking about Microsoft Windows. We, gw players, arent security professionals, and cant have a hack proof system. Just impossible, security != windows in my humble opinion. Do you have ever heard about 0 day exploit ?
Plz hide the email.

Account: *******************
Password:

Thanx
ManiSan is offline   Reply With Quote
Old Jan 26, 2008, 10:19 PM // 22:19   #45
Age
Hall Hero
 
Age's Avatar
 
Join Date: Jul 2005
Location: California Canada/BC
Guild: STG Administrator
Profession: Mo/
Default

Quote:
Originally Posted by Kanyatta
Basically, read what Gaile said, if you are smart with your info, don't do anything against the TOS or EULA, you will be fine with your account.

IMO, if you are dumb enough to get phished or download a sketchy 3rd party program, you deserve to lose your account.
Gaile got that in before I got to post anyway I always keep my account safe as my pass words are in my head not written down and I am the only one who knows my account info.There isn't sole who does.I scan my system 3 times a week with spybot and keep my fire wall on.It seems like my accounts have been safe since playing from beta.I do know someone who had their account hacked twice.He lost everything.

Last edited by Age; Jan 26, 2008 at 10:35 PM // 22:35..
Age is offline   Reply With Quote
Old Jan 26, 2008, 10:27 PM // 22:27   #46
ArenaNet
 
Gaile Gray's Avatar
 
Join Date: Feb 2005
Default

Nobody can see your password, it's always hashed, like ***************

I don't think it's practical or necessary to hide the user name, because that's a very small part of access. Your unique and complex password is by far the greater measure of security and unlike some password protocols, the one in Guild Wars allows a good number of symbols and numbers so you can make it very unique and very complex.

Consider: Players requested we save (in the log-in screen GUI) the name of the account that was most recently accessed, so that everyone could avoid having to input that user name every time. It was a nice little addition, and I think everyone approves. However, many people have multiple accounts (I have nine) and they need to see which account they're accessing. Therefore, in my opinion, hashed user names would not be practical and, again, I don't think that would be necessary.
__________________
Gaile Gray
Support Liaison
ArenaNet
Gaile Gray is offline   Reply With Quote
Old Jan 26, 2008, 10:33 PM // 22:33   #47
Academy Page
 
Join Date: Oct 2007
Profession: Me/
Default

The password cant be seen. It can be keylogged.
The email cant be keylogged. It can be seen, thus captured by prtscreen (near f12 on my keyboard).
Both tasks can be done easely. Far more easiest than hacking our computers... And every day thousands of computers are infected by different kind of malwares.

Plz consider my suggestion farther.

ps: for multiple account users, generic hidden names "account 1", "account 2".., could be used. Many solutions to solve this problem. Ive heard so many stories about hacked account (especially in pvp, while you must join Vent/Ts servers and give away your IP to unknown administrators). Every time somthing unusual happends on my comp I ask myself "Will my account be still there ?".
With hidden accounts, it would be much more difficult to steal an account that way.

Last edited by ManiSan; Jan 26, 2008 at 10:42 PM // 22:42..
ManiSan is offline   Reply With Quote
Old Jan 26, 2008, 10:35 PM // 22:35   #48
ArenaNet
 
Gaile Gray's Avatar
 
Join Date: Feb 2005
Default

Quote:
Originally Posted by ManiSan
The password cant be seen. It can be keylogged.
The email cant be keylogged. It can be seen, thus captured by prtscreen (near f12 on my keyboard).
Both tasks can be done easely. Far more easiest than hacking our computers... And every day thousands of computers are infected by different kind of malwares.

Plz consider my suggestion farther.
You're asking us to protect you from third party programs? That is not feasible, reasonable, or possible. Each player needs to protect himself or herself from malware, including downloading or attempting to use third-party programs that may contain trojans or keyloggers.
__________________
Gaile Gray
Support Liaison
ArenaNet
Gaile Gray is offline   Reply With Quote
Old Jan 26, 2008, 10:47 PM // 22:47   #49
Age
Hall Hero
 
Age's Avatar
 
Join Date: Jul 2005
Location: California Canada/BC
Guild: STG Administrator
Profession: Mo/
Default

Quote:
Originally Posted by ManiSan
The password cant be seen. It can be keylogged.
The email cant be keylogged. It can be seen, thus captured by prtscreen (near f12 on my keyboard).
Both tasks can be done easely. Far more easiest than hacking our computers... And every day thousands of computers are infected by different kind of malwares.

Plz consider my suggestion farther.

ps: for multiple account users, generic hidden names "account 1", "account 2".., could be used. Many solutions to solve this problem. Ive heard so many stories about hacked account (especially in pvp, while you must join Vent/Ts servers and give away your IP to unknown administrators). Every time somthing unusual happends on my comp I ask myself "Will my account be still there ?".
With hidden accounts, it would be much more difficult to steal an account that way.
You do not need to give out your IP to any TS or Vent server admin all you need is the addy and or password to access the server.I wouldn't give out my IP to any one on the net especially in a game.
Age is offline   Reply With Quote
Old Jan 26, 2008, 11:16 PM // 23:16   #50
Academy Page
 
Join Date: Oct 2007
Profession: Me/
Default

"all you need is the addy and or password to access the server"

When i launch my Ts server i can use Etheral to know other players IP... Every admin can read the log files, thats common sense..

@Gaile: no, I, and most of us, dont use third party programs. Im talking about worms, like Blaster. It infected millions up-to-date computer by exploiting an OS vulnerability, in a few hours. Other worms still exists, and smart hijackers wouldnt send them "nowhere", but only to interesting targets (computer no owned by Symantec, with a GW player speaking on a Vent server...). Thats what I would do if I had a unknown worm and wanted to make money with... and keep it still unknown.
By the way, you arent bored to type and retype an email address each time you log another account ? A menu like the district choice wouldnt fit better ? Im sure you would love that update

Last edited by ManiSan; Jan 26, 2008 at 11:20 PM // 23:20..
ManiSan is offline   Reply With Quote
Old Jan 26, 2008, 11:42 PM // 23:42   #51
Age
Hall Hero
 
Age's Avatar
 
Join Date: Jul 2005
Location: California Canada/BC
Guild: STG Administrator
Profession: Mo/
Default

Quote:
"all you need is the addy and or password to access the server"

When i launch my Ts server i can use Etheral to know other players IP... Every admin can read the log files, thats common sense..
That is only the admin but it can't do anything about hacking into a computer and i can see everyones IP on the board I Administrate and can trace it to their ISP.That is as far as it goes and the same applies to you.You can't trace it though I believe and ISP have safety protocols put in place.
Age is offline   Reply With Quote
Old Jan 27, 2008, 12:20 AM // 00:20   #52
Krytan Explorer
 
Kendar Muert's Avatar
 
Join Date: Aug 2006
Location: Texas
Profession: E/
Default

Quote:
Originally Posted by Mangione

About attention, I hope this will gain some, but:
does Anet ever looks in Sardelac, home of the wackiest ideas?
There is an old "we want more catacombs" thread, and Anet took some of those ideas directly from the thread and put them in EoTN. So yes, they do. posted above this- that should be plenty of evidence :P


/signed x3
Kendar Muert is offline   Reply With Quote
Old Jan 27, 2008, 12:22 AM // 00:22   #53
Jungle Guide
 
Biostem's Avatar
 
Join Date: Oct 2007
Default

I can't understand why people are trying to place responsibility for their own computer's security on ANet's shoulders. If your computer has a virus/worm/trojan, whatever, and it gets a hold of your logon info, it's the user's fault for not having appropriate security in place. If there's a vulnerability in Windows, then you should be complaining to MS and/or making sure to have all the updates.

The *only* suggestion I could make would be to have the game use a virtual keyboard, on-screen, to enter the pw with, thereby eliminating the ability of a keylogger to to grab it. I've seen some bank websites use this, and it seems to help. Either way, if someone can get into your account, regardless of whether they can delete your characters or not, they can still sell your items and transfer the gold...
Biostem is offline   Reply With Quote
Old Jan 27, 2008, 12:23 AM // 00:23   #54
Wilds Pathfinder
 
Join Date: Dec 2006
Profession: E/Me
Default

Id love this, i would kill myself if anything happened to my ele
Lawliet Kira is offline   Reply With Quote
Old Jan 27, 2008, 12:37 AM // 00:37   #55
Krytan Explorer
 
nbajammer's Avatar
 
Join Date: Jun 2005
Location: Iowa
Guild: Blade And Rose [BaR]
Profession: Mo/
Default

Another thing people fail to realize is that if you don't use the remember my e-mail, you have to type it in every time and then it is in fact vulnerable to keyloggers.

Sadly, I'm with Gaile - take the necessary precautions to protect your account and nothing will happen.

/notsigned
nbajammer is offline   Reply With Quote
Old Jan 27, 2008, 01:40 AM // 01:40   #56
Lion's Arch Merchant
 
Jamison0071's Avatar
 
Join Date: Feb 2006
Location: Melbourne, Australia
Guild: Morporkian Mercenaries
Profession: N/Me
Default

/signed

This feature would be very much appreciated, even if purely for peace of mind.
Jamison0071 is offline   Reply With Quote
Old Jan 27, 2008, 02:14 AM // 02:14   #57
Krytan Explorer
 
mmmkay i am bad's Avatar
 
Join Date: Oct 2006
Location: hiding in ur basement =o
Profession: W/Rt
Default

/signed this would prevent my friend from deleting my chars to make pvp chars. =.=
mmmkay i am bad is offline   Reply With Quote
Old Jan 27, 2008, 02:24 AM // 02:24   #58
Krytan Explorer
 
Reason's Avatar
 
Join Date: Nov 2006
Location: California
Profession: E/
Default

This would be a cool add on and I am sure people would use it since it is better to be safe then sorry. You could always just not share your account info or use and 3rd party programs.
Reason is offline   Reply With Quote
Old Jan 27, 2008, 02:25 AM // 02:25   #59
Frost Gate Guardian
 
Join Date: Nov 2007
Location: STALKER!
Guild: Not in One
Profession: N/A
Default

im 50/50 on this.

It would be good since then I won't go back on my word. (My brain is normally on its dark side)

But if a person hacked ur account and just locked all ur chars ,then what would you really do?
Splitisoda is offline   Reply With Quote
Old Jan 27, 2008, 02:27 AM // 02:27   #60
Forge Runner
 
pamelf's Avatar
 
Join Date: Aug 2006
Location: Australia
Guild: Lost Templars [LoTe]
Profession: Me/Mo
Default

/signed. bla bla bla 12 chars etc.
pamelf is offline   Reply With Quote
Reply

Share This Forum!  
 
 
           

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
PC on some items <pics included> Loci Price Check 2 Jun 27, 2006 02:30 PM // 14:30
pc on pronged rod (pics included) Xalkie Price Check 5 Jun 05, 2006 05:15 AM // 05:15
PC on a few Rares (pics included) Xalkie Price Check 4 Jun 05, 2006 05:13 AM // 05:13
WTS: Lot of Runes! (Pics Included) Black Forsaken Sell 0 Jul 02, 2005 04:26 AM // 04:26
WTS: 9 items...pics included gabe99 Sell 1 Jun 30, 2005 06:21 PM // 18:21


All times are GMT. The time now is 11:42 AM // 11:42.


Powered by: vBulletin
Copyright ©2000 - 2016, Jelsoft Enterprises Ltd.
jQuery(document).ready(checkAds()); function checkAds(){if (document.getElementById('adsense')!=undefined){document.write("_gaq.push(['_trackEvent', 'Adblock', 'Unblocked', 'false',,true]);");}else{document.write("