Backstage - OOC Forums

Please login or register.

Login with username, password and session length
Advanced search  

News:

Ishukone corporation manufactures the mind altering Transcranial Microcontroller?

Author Topic: Restarting your Account  (Read 4165 times)

Zuzanna Alondra

  • Omelette
  • Offline Offline
  • Posts: 306
Restarting your Account
« on: 19 Feb 2012, 21:47 »

I'm going to feel like one hell of a noob here - but CCP completely rearranged their site.

I try to log into account management with my old username and password to add game time and it says my account is expired.  So - how the flip do you resub if you can't log into your old account to add game time?!

I'm guessing the answer is right in front of me and I'll find it and feel dumb - but some help would be lovely.
Logged

Zuzanna Alondra

  • Omelette
  • Offline Offline
  • Posts: 306
Re: Restarting your Account
« Reply #1 on: 19 Feb 2012, 21:50 »

Yeap - called it - the moment I said FML - I remembered my old password combo used to be all lowercase and the passwords are case sensitive. 
Logged

Ghost Hunter

  • Sansha's True Citizen ; TS-F Overseer
  • The Mods
  • Veteran
  • Offline Offline
  • Posts: 1374
  • True Power without limit!
Re: Restarting your Account
« Reply #2 on: 19 Feb 2012, 23:05 »

might want to hack off that last bit there for security reasons
Logged
Ghost > So yes, she was Ghost's husband-
Ashar > So Ghost was a gay Caldari and she went through tranny surgery
Ghost > Wait what?
Ashar > Ghosts husband.
Ghost > No she was - Oh god damnit.

He ate all of them
We Form Moderation
For Nation

Myrhial Arkenath

  • Omelette
  • Offline Offline
  • Posts: 313
  • One does not simply walk into Curse.
    • Diary of a Pod Pilot
Re: Restarting your Account
« Reply #3 on: 20 Feb 2012, 06:05 »

Or just practice better password security. DO NOT use only lowercase, use mixed case and put numbers and special signs into it. ABSOLUTELY DO NOT use dictionary words or names or whatever. A trick that is easy to remember and hard to guess is for example have a phrase and use the third letter of each word and replace letters by numbers like it were leetspeak. Also putting in something uniquely for each website, or have different phrases based on use (a game phrase for all MMO accounts, a long phrase for sensitive stuff like online banking ect.) will further enhance security.

And if you have difficulty remembering all this, consider using something like KeePass. Helps you keep track of all your logins too so in case one gets compromised you can easily go everywhere and implement new passwords :)
Logged

CEO of Ghost Festival :: Executor of Naraka.
Diary of a Pod Pilot

Mizhara

  • Prophet of New Eden
  • Demigod
  • Offline Offline
  • Posts: 2545
  • The Truth will make ye Fret.
Re: Restarting your Account
« Reply #4 on: 20 Feb 2012, 06:34 »

Just an example of something Myrh here talked about that works wonders. Pick any mnemonic or phrase you're likely to remember, like "Miz is a very sexy devil.". The site is.. well, let's use Backstage which is easily shortened to BS. Now I take the first two letters (where possible, one in one letter words) from each word and craft "miisavesede" from it. Add BS to the beginning since that's the site I'm logging into. "bsmiisavesede" is pretty much impossible to guess already, but let's make it even harder. Let's turn it into leetspeak. "b$m11$4v3$3d3". Hell, we can turn every other remaining letter into a CAP. "b$M11$4v3$3D3".

Of course, this has now become a fucking pain in the ass to type and remember even with the very easily remembered phrase, so we've overdone it somewhat. This is just an example of how to craft a unique and ridiculously hard to crack password while keeping it easy to remember and in just a few short steps. Let's see how quickly we went from plain text to gibberish:

"Miz is a very sexy devil"
"miisavesede"
"bsmiisavesede"
"b$m11$4v3$3d3"
"b$M11$4v3$3D3"

The last two look very similar, but suddenly forcing any brute-force attempt to find your password to have to deal with twice as many possibilities wherever there's letters has a rather impressive impact. So, five steps and we have a unique password. Change the steps to your taste, picking just one letter from each word, be it the second, first, last or whatever. Add caps in a different pattern maybe. You can keep the initial phrase though, very easy to remember.

There's never an excuse for having a normal word or name as a password, definitely not if it's all lower case. Another important thing to remember is to use unique passwords on different sites if possible, because you never know when a site derps up the security and your password turns out to be floating free out there on the intarwebz. If Backstage loses my password, the baddies only get access to that PM history. If I used the password elsewhere, they'd gain access to everything else.

Edit: Of course, a keylogger will sniff out any password you design once you use it, so all of the above is worthless if you don't also keep everything else under control. Virus scan and firewall, all that jazz. Using your browser's "remember this password" feature is actually quite handy in that respect, since it will then fill it in for you without the possible keylogger ever seeing it.
« Last Edit: 20 Feb 2012, 06:37 by Mizhara »
Logged


Morwen Lagann

  • Pretty Chewtoy
  • The Mods
  • Demigod
  • Offline Offline
  • Posts: 3427
    • Lagging Behind
Re: Restarting your Account
« Reply #5 on: 20 Feb 2012, 10:12 »



Enough said. :u
Logged
Lagging Behind

Morwen's Law:
1) The number of capsuleer women who are bisexual is greater than the number who are lesbian.
2) Most of the former group appear lesbian due to a lack of suitable male partners to go around.
3) The lack of suitable male partners can be summed up in most cases thusly: interested, worth the air they breathe, available; pick two.

Mizhara

  • Prophet of New Eden
  • Demigod
  • Offline Offline
  • Posts: 2545
  • The Truth will make ye Fret.
Re: Restarting your Account
« Reply #6 on: 20 Feb 2012, 10:16 »

The bit that kills the entire joke is that no remote web service will allow a thousand guesses per second for three days, really...
Logged


Zuzanna Alondra

  • Omelette
  • Offline Offline
  • Posts: 306
Re: Restarting your Account
« Reply #7 on: 20 Feb 2012, 12:53 »

That actually was my problem... since the divorce I changed all my passwords to new passwords mixing things up.  I forgot that I had shut down Zuzu's account before I did the password changes for Defias and Celiwyn.  Zuzu had the old too simple password and I forgot it.

I was disappointed with myself that I hadn't changed her password before I shut down the account.

However, once I finally cracked it, I decided against resubbing her until next payday as Fox restarted his indy account and I like goofing off with a different set of skills.  She can build a lot cool stuff then Defias can.
Logged

Myrhial Arkenath

  • Omelette
  • Offline Offline
  • Posts: 313
  • One does not simply walk into Curse.
    • Diary of a Pod Pilot
Re: Restarting your Account
« Reply #8 on: 21 Feb 2012, 07:14 »

Just want to add that KeePass has password obfuscation. It won't work on some things but where it does it types the letters in a random order to confuse (some? most?) keyloggers. Granted, with a logger on your system you're probably damned sooner or later because that means there is a glaring security hole somewhere, but you know, every bit helps.

Note for those using KeePass auto-enter with the EVE client, you need to set a delay or it will go too fast and enter part of your password into the name field because of some kind of GUI lag.
Logged

CEO of Ghost Festival :: Executor of Naraka.
Diary of a Pod Pilot

Medarr

  • Clonejack
  • Offline Offline
  • Posts: 19
Re: Restarting your Account
« Reply #9 on: 07 Jul 2012, 08:42 »

More often then not brute force attacks these days are run on a botnet so they can distribute the load over multiple IPs to twart bruteforce detection, and as for complex passwords.. you have cloud based rainbow table cracking, its a payed for service to! I hope CCP uses salt in their hashes lol
Logged
" If the radiance of a thousand suns were to burst forth at once in the sky, that would be like the splendor of the Mighty One.
I am become Death, the shatterer of worlds ". -- The Bagavad Gita,

Casiella

  • Demigod
  • Offline Offline
  • Posts: 3723
  • Creation is so precious, and greed so destructive.
Re: Restarting your Account
« Reply #10 on: 07 Jul 2012, 08:50 »

Let's hope they do, but has something new happened that would have resulted in the hashes being leaked?
Logged