Data Breach Notification

It's insane how many people here, are talking like they are experts on the topic, while also thinking that looking for doors that might be breached is just an easy task LOL. It makes me sick, get educated and stop embarrising yourselfs.

Thanks for doing something about it, telling us what happened, and thanks for taking more security meassures in the future GGG.
Last edited by Smurfrixen#2607 on Jan 15, 2025, 7:17:59 AM
The most basic method we use to prevent data breaches in the company I work for is "multifactor authentication", which is known to everyone, with 2FA or MFA. I think its integration will not be very difficult, I am sure it will be integrated into the system as soon as possible to ensure our account security. Best regards.
i appreciate very much so, being upfront with this stuff, instead of hiding it and hoping nothing hits mainstream.
2025 and still no 2fa

Not acceptable. Atleast make us confirm with email when a new login attempt happens from a new location
I've submitted issues about major privacy problems for years and GGG has all but ignored it. I had someone harass me at my real life work because of a trade site interaction.. I ended up changing my account name because of this. This wouldn't have happened if GGG did better about what info they provide publicly. All of this information exposure (by default) leaves potential vectors for attackers to compromise accounts.
Yet another unpaid Path of Exile 2 Alpha Tester.
"
The most basic method we use to prevent data breaches in the company I work for is "multifactor authentication", which is known to everyone, with 2FA or MFA. I think its integration will not be very difficult, I am sure it will be integrated into the system as soon as possible to ensure our account security. Best regards.


I do hope that all of the people in this thread begging for 2FA understand that having 2FA on your account would have done NOTHING to protect against this, not will it protect your accounts from being stolen if your data got leaked during this.
2FA on the admin account would have prevented this, yes, and that's why they said they will make it mandatory for all admin accounts. But if you have 2FA that does not help you in any way if someone with access to your information messages GGG and tells them that they lost access to your password/2FA an need support to reset their login info. That's a completely different class of security risk which cannot be prevented by 2FA.
Also why isn't this linked off the main poe website news? Instead you have 2 old articles announcing an announcement that already happened. This is not typical announcement posting behavior and its clear you want to bury this significant event. Shame on you.
Yet another unpaid Path of Exile 2 Alpha Tester.
"
DoubLL#2809 wrote:
"
The most basic method we use to prevent data breaches in the company I work for is "multifactor authentication", which is known to everyone, with 2FA or MFA. I think its integration will not be very difficult, I am sure it will be integrated into the system as soon as possible to ensure our account security. Best regards.


I do hope that all of the people in this thread begging for 2FA understand that having 2FA on your account would have done NOTHING to protect against this, not will it protect your accounts from being stolen if your data got leaked during this.
2FA on the admin account would have prevented this, yes, and that's why they said they will make it mandatory for all admin accounts. But if you have 2FA that does not help you in any way if someone with access to your information messages GGG and tells them that they lost access to your password/2FA an need support to reset their login info. That's a completely different class of security risk which cannot be prevented by 2FA.


Sorry but you are just factually incorrect here.

2FA does a few things (if setup correctly) it adds another layer of verification even if password is brute forced, it can also be linked to force an account to be notified or locked down if repeated attempts are made and 2FA fails after x number of attempts.

The only time 2FA becomes irrelevant is if they steal the cookie session which usually requires the hacker to have direct access to your PC or you clicked on something dubious and it pulled that information.

2FA should exist and the fact they didnt even announce this is shocking considering the accounts have NO protection against brute forced attempts.

Regardless I wont be supporting a game that has no 2FA feature or any 3rd layer of verification tied to the accounts.
Last edited by Cloop123#0584 on Jan 15, 2025, 7:52:37 AM
People have requested 2FA for a decade and now GGG is saying it takes time to implement the support logistics.

Sorry but you need to do better GGG, this should be an absolute priority.

*also I had 2FA on my WoW/Bnet account nearly TWENTY YEARS AGO
Last edited by nefarious#7969 on Jan 15, 2025, 7:58:29 AM
WHEN NEW LEAGUE IN POE 1????? madge

Report Forum Post

Report Account:

Report Type

Additional Info