Compromised PoE Accounts: Stolen Items and Hacked Accounts - Discussion and Leads

Seems to me that different people with different 3rd party (Overlay, Sidekick, Exile Exchange2) or no 3rd party are hit with hacking incidents.

Which either suggests all 3rd party are compromising the security or something is wrong with GGG's side of security, hence why there's currently no response, because they have to sort out how they going to fix/explain this, IF it is from their side.

Just speculation nothing proven of course. But the silence is pretty confusing and worrying.
No Overlay anything here, but all my divines in Settlers and normal League have disspeared even my chaos orb was over 5k chaos orbv in normal league and they gone

Cmon as somonestated its almost 2025 and we still have no normal 2fA
"
Dranzy#2112 wrote:
My case:

Bought mirror like 2-3 days ago, was about to take few days break.
Got hacked yesterday late eu hours (my friend told me "I" logged in for 3mins and didn't respond him then logged out).

Also i've had one expensive item listed (100+d) and got like 2 or 3 strange messages for it... sus, because only that item, mirror and about 30 divines were stolen, all the other stuff wasn't touched.

My password was changed, no single notification came on my mail, there were no logins into mail.

I wonder how in the world, in pretty much 2025 year, game that has HUGE rmt business going around, there is no 2FA... or atleast extra request for code when new location tries to login.


Standalone client, no single extra extension was used/downloaded since poe 2 start.

Feel a little sad knowing there is no real chance that ggg will help at all, and if i want to try new changes etc. again in next months, i have to grind all again

few ppl already reporting strange messages. what did they say?
Am back!
"
Crainus#7059 wrote:
"
karnaij#7052 wrote:
what about me who only lost 12 exalts one chance orb and was not even at the end game when i got hacked....


That might seem a bit unusual, but if you think about it, it’s likely that only the wealthiest or most invested players would take the time to comment on the official forums about the situation. This could explain why the results appear skewed. most likely way more people got hacked and either just left the game or started over


rosky5471 for discord, couldn't PM for some uknown reason i can only PM support. (lovely) here for anyone that wants to chat.
"
Best advice for anyone is to change your password. Also remove any 3rd party stuff you are using for POE2.

People are reporting the hackers go trough MFA (steam) and supposedly atp steals your steam token or something similar. (since the end user doesn't even get notified of the new access) also instances of the password that got changed on the site by itself.
But as far as i saw this website DOES NOT have MFA which is huge security issue under nis2 EU.
edit: https://www.nis-2-directive.com/NIS_2_Directive_Articles.html
for anyone intrested. regulations that are effective as of today.
Last edited by Rosky#1061 on Dec 29, 2024, 5:01:13 PM
atleast write when this hack issue will be solved :)
Last edited by ramunasV#3674 on Dec 29, 2024, 6:38:30 PM
the worst of the worst is that they lock our accounts WAY after we've secured them and then refuse to unlock them in a timely manner!
Woke up today struggling to log in my account and assumed it was ExitLag, turned it off and was told to re-input my password as I was in a different location (ok weird) and finally be able to log in and to find all my stuff gone, they were nice enough to leave the exalts though but so far have taken everything I was using.

Had someone buy something off of me in one of my 1 exalts tab, didn't think nothing of it at the time but after the trade he just stayed in my hideout, did a map came back he was still there. Not sure if this was him but so far this is the list of what I've lost:

Spoiler

9 Divines - Had 6 in my currency and 3 in guild storage
2 pillars of the caged god - 1 with 15 attack speed, 1 with 90 elem dmg
2 morior invictus - 1 with 15 elem and 14 chaos res, 1 with empty sockets (the empty sockets was in my currency stash tab as I was still farming for soul cores to input into them)
2 breach rings - budget breach rings 1 with strength 1 with intellect for stat stacking
1 hand of wisdom and action
1 ingenuity
1 astramentis
1 ES / Eva helm and a 35 ms boots

I don't know how I feel about this, I've sent an email to support but so far things are looking pretty grim. I've changed my password and removed Sidekick, I doubt they will but here's hoping for a roll back.
First of all, I have to admit that the hacking incident was due to my own mistake for not thoroughly securing my email, such as not enabling multi-factor authentication (MFA) T^T. This allowed the hacker to compromise my email and extend the attack to my POE and group chat application accounts simultaneously. However, I immediately contacted the support teams for both services.

I’m really happy that I managed to recover my group chat application account in just over a day. As for POE, it might take longer since there are probably many cases in the queue, but at this time, no response has been received yet.
Last edited by bestmaster1996#5421 on Dec 30, 2024, 1:22:18 AM
Since GGG is unwilling to do something, it might maybe help if this gets spread. Mentioning it on different discussion platforms. As far as I know and read, this has been a longtime issue, which GGG never addressed. The top review currently on Steam also mentiona this, which might throw some attention. Adding more visibility could move something. Or just provoke another ban on the forums.

Report Forum Post

Report Account:

Report Type

Additional Info