Improved security

Discussion in 'General Archive' started by ultimatux, Jan 2, 2017.

Dear forum reader,

if you’d like to actively participate on the forum by joining discussions or starting your own threads or topics, please log into the game first. If you do not have a game account, you will need to register for one. We look forward to your next visit! CLICK HERE
Thread Status:
Not open for further replies.
  1. ultimatux

    ultimatux Forum Greenhorn

    Hello all, first of all I want to say that from a game that receives so much money from players the company that runs it doesn't do a thing to protect its users. The webpage from which you log in is unecrypted so it sends data as plain text so for a hacker is a piece of cake (starting Wireshark and letting it run sniffing your ip adress or website's). My request is that Bigpoint will install an encryption system for the webpage( I don't know about the client if it has any) plus aditional security for the in-game process. What I reccomend is creating a 2 factor auth that runs either via a fix password or a program like Authie or Google auth (Protonmail, a great encrypted e-mail uses that plus tons of other apps), notifications via e-mail for logins on different ip adress than normal and a password for deleting characters would be greatly appreciated (you can use 2 factor authentification for this) and an 5 hour ip ban for any ip who is detected to try to crack an account using any kind of password quessing method which is applied if the user tries to login too fast in a short period of time or it has too many failed attempts (6-8).
    My ideas would greatly improve the security and it would improve alot of issues. The fact that my card information are protected only by the login password haunts me. Any hacker can crack my account and go and buy andermand or anything else with my money from the wallet without him need to worry as there is no security, press and pay.
    Thank you for your time and I hope Bigpoint will begin to respect the security of its clients.
     
    xXxTroublexXx likes this.
  2. TwiliShadow

    TwiliShadow Count Count

    This is exactly why I always uncheck the "Remember my PayPal info".

    I don't use a password management program that auto enters passwords, I don't let the web browser save passwords, I don't click on "remember this computer" check boxes. All of these items give anyone that manages to get past one password, or go to your computer while it is unlocked and reek havoc with ones finances. Any way it goes, it's essentially legalized identity theft.
     
Thread Status:
Not open for further replies.