Compromised PoE Accounts: Stolen Items and Hacked Accounts - Discussion and Leads

"
lucasbtu#4299 wrote:
"
Thuse#4258 wrote:
most likely ur 2 factor wont help.
im betting on that this is the issue : https://www.reddit.com/r/PathOfExile2/comments/1htp7nc/always_reset_your_session_id_on_trade_site_and/

probably an old issue that resurfaced and their "we have no security issues on our end" post is pure bs.


if they steal my items i don't really care, i just care about the games i payed for, i haven't played poe for one week and i logged in right now and my items are there so no one used my acc, my windows is new since i reinstalled 2 weeks ago, the only thing that i used was the poe overlay, but it feels more like a security issue with the site since no one tried to login in my email and this is happening only with poe players



I somehow also think that it has something to do with poe trades. Everyone affected there appears to have acted. And they also hacked a lot of people who were trading large assets there
Got hit today for 200+ div. Left everything but divs and my 25+ selling tab with temporalis ingenuity etc. Stay safe fellas, been playing the same way for 10+years so it must be an issue with the EA.
Here’s a clear and understandable English translation of your text:

---

Hello,
I recently saw news about hacks and "loot" theft, but I didn’t pay much attention to it until it affected some of my acquaintances.
Here’s what I’ve discovered:
1. GGG is not to blame for this. Their database, which could have enabled such actions, was not compromised.
2. I identified the vulnerabilities hackers are exploiting to gain access. These include Steam, Discord, and Xbox (Xbox Store).
3. The REAL addresses of some hackers have been identified, but they are mostly located in business centers:
[removed by Support]
In the USA, cybercrime enforcement agencies are already working on this.
(With citizens residing in the territory of the United States)

In Düsseldorf, amusingly enough, the hackers are using "free" Wi-Fi in cafes to carry out their activities.(Cybercrime enforcement in the process of Identification)
There are also operations in China and India, but the situation there is so chaotic it’s almost nerve-wracking.

We’re still tracking down the others!

Once again, these are the real addresses from which they are operating. *Path of Exile 2* is just one of the many games they are targeting!

This information is confirmed, but I can’t disclose the details of how they were identified.
Last edited by Edmund_GGG#4844 on Jan 6, 2025, 12:50:46 AM
"
ZETey#4631 wrote:
Here’s a clear and understandable English translation of your text:

---

Hello,
I recently saw news about hacks and "loot" theft, but I didn’t pay much attention to it until it affected some of my acquaintances.
Here’s what I’ve discovered:
1. GGG is not to blame for this. Their database, which could have enabled such actions, was not compromised.
2. I identified the vulnerabilities hackers are exploiting to gain access. These include Steam, Discord, and Xbox (Xbox Store).
3. The REAL addresses of some hackers have been identified, but they are mostly located in business centers:
[removed by Support]
In the USA, cybercrime enforcement agencies are already working on this.
(With citizens residing in the territory of the United States)

In Düsseldorf, amusingly enough, the hackers are using "free" Wi-Fi in cafes to carry out their activities.(Cybercrime enforcement in the process of Identification)
There are also operations in China and India, but the situation there is so chaotic it’s almost nerve-wracking.

We’re still tracking down the others!

Once again, these are the real addresses from which they are operating. *Path of Exile 2* is just one of the many games they are targeting!

This information is confirmed, but I can’t disclose the details of how they were identified.


of what text ? mine ?
Last edited by Edmund_GGG#4844 on Jan 6, 2025, 1:00:13 AM
"
ZETey#4631 wrote:
Here’s a clear and understandable English translation of your text:

---

Hello,
I recently saw news about hacks and "loot" theft, but I didn’t pay much attention to it until it affected some of my acquaintances.
Here’s what I’ve discovered:
1. GGG is not to blame for this. Their database, which could have enabled such actions, was not compromised.
2. I identified the vulnerabilities hackers are exploiting to gain access. These include Steam, Discord, and Xbox (Xbox Store).
3. The REAL addresses of some hackers have been identified, but they are mostly located in business centers:
[removed by Support]
In the USA, cybercrime enforcement agencies are already working on this.
(With citizens residing in the territory of the United States)

In Düsseldorf, amusingly enough, the hackers are using "free" Wi-Fi in cafes to carry out their activities.(Cybercrime enforcement in the process of Identification)
There are also operations in China and India, but the situation there is so chaotic it’s almost nerve-wracking.

We’re still tracking down the others!

Once again, these are the real addresses from which they are operating. *Path of Exile 2* is just one of the many games they are targeting!

This information is confirmed, but I can’t disclose the details of how they were identified.


amazing news!
Hi GGG,

Is it possible to list the possible preventive measures that we can take for client side ?
"
ZETey#4631 wrote:

2. I identified the vulnerabilities hackers are exploiting to gain access. These include Steam, Discord, and Xbox (Xbox Store).

So what are the vulnerabilities and how can we prevent them from being exploited?
Kitty's Guide On Post Formatting - view-thread/1913874
"
Crainus#7059 wrote:

of what text ? mine ?


I believe the person used translation service or AI to translate their post. Hence why you see "Here is a clear and understandable English translation of your text:"

And it looks like its mostly false, I searched for the news but there is no reports.

You are all just way too happy to believe anything as long as it conforms with what you think is happening.

Nobody is getting their items back. It's never been done before, it won't be done now.

"
Hi GGG,

Is it possible to list the possible preventive measures that we can take for client side ?


1. Don't install cracked things on your windows.
2. Don't use 3th party tools.
3. Regularly update your password.

You need to understand that even cracking a thing like Office can leave a virus in your computer that is exempt from scans, and can be activated whenever a trade game releases. Then they don't need passwords. They will just hijack your session, login from their end, and trade themselves the items.

If there is one pet peeve I have with GGG regarding this entire situation is, why can't they just collect the names of everyone here who got hacked, and look with whom they traded in game with. Then compare the login IP's of both people, and if they're the same, or the "hacked" one is different from the one that previously logged in to play the game, just straight up ban the party that received the items.

Furthermore, they need to examine closely the trades done by everyone here. Because I've seen people reporting they lost tons of mirrors which is extremely suspicious.

Come on GGG.
"
"
Crainus#7059 wrote:

of what text ? mine ?


I believe the person used translation service or AI to translate their post. Hence why you see "Here is a clear and understandable English translation of your text:"

And it looks like its mostly false, I searched for the news but there is no reports.

You are all just way too happy to believe anything as long as it conforms with what you think is happening.

Nobody is getting their items back. It's never been done before, it won't be done now.

"
Hi GGG,

Is it possible to list the possible preventive measures that we can take for client side ?


1. Don't install cracked things on your windows.
2. Don't use 3th party tools.
3. Regularly update your password.

You need to understand that even cracking a thing like Office can leave a virus in your computer that is exempt from scans, and can be activated whenever a trade game releases. Then they don't need passwords. They will just hijack your session, login from their end, and trade themselves the items.

If there is one pet peeve I have with GGG regarding this entire situation is, why can't they just collect the names of everyone here who got hacked, and look with whom they traded in game with. Then compare the login IP's of both people, and if they're the same, or the "hacked" one is different from the one that previously logged in to play the game, just straight up ban the party that received the items.

Furthermore, they need to examine closely the trades done by everyone here. Because I've seen people reporting they lost tons of mirrors which is extremely suspicious.

Come on GGG.


What are you even saying? Chris literally wrote in a post (years ago):
"So far, we have banned four users (and some associated friends) who stole items from or vandalised accounts they accessed. Because this problem was entirely our fault and not due to poor security by the affected users, we have decided that we will attempt to restore lost items."

Link to the post: https://www.pathofexile.com/forum/view-thread/2253250

If it actually is their fault, they should try to restore lost items for the affected users. But this isn't even what we are worried about. I want GGG to at least TRY TO catch the hackers. Saying there's no problem when hundreds or thousands of people are getting hacked is ridiculous. Who cares about refunds if they're just going to do it again. I won't ever feel safe on my account if they don't fix whatever is causing these hacks.


Last edited by nigelf#2779 on Jan 6, 2025, 6:57:52 AM
"
nigelf#2779 wrote:
hundreds or thousands of people are getting hacked is ridiculous.



I'm sorry what?

Report Forum Post

Report Account:

Report Type

Additional Info