I want to notice Epic and the community that there are bots trying to hack accounts on the forums. An hour ago I got a contact request on Skype that did not respond, so I blocked it. Short thereafter, someone is trying to log in to my account here on the forums with 5 failed attempts. Searching for the IP results in spam bot reports.
A few hours ago I had someone add me as a contact on Skype as well with no response, but I’m not aware of any attempts to hijack my account. My question is, how could the Skype request be related?
It’s not uncommon to try to get access to additional information to try to guess passwords. A lot of people use stupid passwords that are easy to find.
Did you receive an email about the failed login attempts? If so please don’t delete it just yet in case we need to reference it later. Could you also please send me the IP in a PM? I will post it for Epic to look into tomorrow. Thanks! – EDIT: Nevermind the IP is right there, whoops. I’ll pass on the info!
If anyone else received an email please post here as well, we want to know if this is a one off attempt or something more.
The only reference I can find for this site is here and it isn’t good:
Notes:
I confirmed the using Chrome and Firefox and using a 2nd Dev box that’s normally offline & air-gapped.
The problem only occurs if you directly click on a link. (Right clicking open in new tab will not trigger it)
Can’t confirm if my router is complicit in any way as rather unhelpfully its locked down by the ISP (MITM attack).
Otherwise security looks normal at my end. No other issues with any other sites.
Flash / Java is not installed. No plug-ins are loaded. No javascript is permitted except on trusted sites.
This isn’t an account either as you don’t have to be logged in by the way.
Anyone else seeing this? What email address should I follow to run this past Epic, any suggestions?
We are doing this and we are monitoring as closely as possible. The features you mentioned can only be enabled by Epic and the mods are currently discussing the matter with Epic.