ArenaNet's Mike O'Brien Advises GW2 Players On Account Security


Written by: (Twitter @winterinformal - ) | September 21, 2012 12:23 pm

ArenaNet's Mike O'Brien Advises GW2 Players On Account Security
10 Comments

Mike O’Brien has some advice for security-conscious Guild Wars 2 players: Change your password.

ArenaNet‘s head honcho has that and more to say in a long post about account security, but the primary message is that the best way to keep your account secure is to not use your GW2 password anywhere else.

The basic truth is this: hackers steal game accounts because they already know the account name and password. They know them because they stole them (via security breaches or spyware) from another game or site where the person used the same account name and password.

So unfortunately, if the lesson you’ve learned from security advice through the years is to pick a single complicated password, memorize it, and then use it everywhere, that’s exactly the wrong lesson for today’s security environment. To keep accounts on different sites secure in today’s environment, you need to use a unique password for each account.

Oh, and don’t buy gold online (except via the Trading Post) because it encourages the hackers to hack. You know who you are, so knock it off, bookah.

O’Brien also updated people on the measures ArenaNet is taking or will soon take to increase security, including two-factor authentication using Google Authenticator and a 20-million-strong password blacklist that has dramatically cut the rate of account hacking.

And no, conspiracy theorists, there was no massive password database breach. At least, that’s what the big evil corporation wants you to think…


  • St_Draco

    1…2…3…4…5

    Its also the combination to my luggage

  • http://twitter.com/justQQing Brian Day

    *********

  • http://www.facebook.com/people/Jim-Bergevin-Jr/1393526370 Jim Bergevin Jr

    At least they are finally getting an authenticator. While Mike has the best of intentions, it ultimately makes little difference – if the bad guys want something, they eventually get it. Making it as hard as possible is the only thing we can do – and that includes better (and common sense) security measures not only by players, but by gaming companies as well.

  • http://twitter.com/Mordozan_GW2 Mordozan_GW2

    I just recently starting using https://agilebits.com/onepassword for everything, from financial to games and everything else in between.  Another thing I’ve found works wonderful is don’t use your public email addresses for game accounts, forums, twitter, FB, etc.  This way when you get that admin email from WoW asking for your GW2 account name and password, you will laugh as they sent it to your POP email character_name/handle.RIFT@myemail.com  as an example instead of the real one you use for just game accounts.

    Overkill? Maybe but some of those phishing emails can look very authentic and fool many people everyday.  They got me once too.

  • Bent Harley Lybech

    My pass is MikeBRules! :-D

  • http://twitter.com/OnlyInSaudiArab \.. Wa5eer ..//

    password: MikeBFTW ^_^

  • Ordegar

    I just wanted to note that the GW2 login allows you to paste ( ctrl v ), which means you can use a password manager such as Roboform to generate a randomly generated password; then the password manager will keep the password stored securely for you so you don’t have to remember it to log into your account on the web.  Then, you can ctrl v the password into the launcher which will also remember it so you don’t have to go through the process again until you change it.

    Another thing that’s easy is to get a new free email address from gmail or yahoo mail that you ONLY use for your GW2 account and NEVER use for any fan sites or other games, and use a randomized password for that also that is different from the one used for the game account.

    Doing those two things will make it nearly impossible for hackers to compromise your GW2 account.  No hacker is going to take the time for your one account that it would take to get through that level of security.

    • http://www.facebook.com/people/Jim-Bergevin-Jr/1393526370 Jim Bergevin Jr

      I wouldn’t put too much faith into either roboform or using webbased e-mail accounts to “make it nearly impossible” for hackers to get a GW2 account. They are far from fool- (and hack) proof.

      • Ordegar

        My point is that using an exclusive e-mail account just for the game, and using randomized passwords such as : P@U8Ac^!cTy76CD35Nw2o9X^ will make your account not worth the trouble if it is even found at all.  Accounts that get hacked are almost always compromised because the email address is one they have used to register on other sites or accounts, and/or they use a password that they use in other games or accounts.

        These hackers are lazy; if they weren’t they would be doing legitimate work.  They scan for easy targets and take advantage of those.  Being a less noticed and more difficult target is always the best defense against criminals.Also, I did not say that Roboform will make it almost impossible to hack, I said the randomized password in addition to an exclusive email will.

  • Krzysztof Kotarba

    Would be nice if they make mobile authenticator… 

RECOMMENDED FOR YOU
Monday
6 pst

The Republic

Star Wars The Old Republic

Tuesday
n/a

Monty's Minute

Have Questions? He Has Answers

9 pst

After Dark

Live Call In Show

Wednesday
6 pst

Guildcast

Guild Wars 2

Thursday
7 pst

Conspiracy Craft

World of WarCraft Lore

8 pst

Legendary

World of WarCraft

Friday
3 pst

TWIMMO

This Week In MMO

4 pst

Derpy Dragon

Free to Play Show



TOP GAMES
Guild Wars 2 MMO News
Genre: MMORPG Fantasy
Developer: Arenanet
Metacritic Score: 90
The Elder Scrolls Online MMORPG News
Genre: MMORPG Fantasy
Developer: Zenimax
Metacritic Score: n/a
World of Warcraft MMO News
Genre: MMORPG Fantasy
Developer: Blizzard
Metacritic Score: 82
SWTOR MMO News
Genre: MMORPG SciFi
Developer: Bioware
Metacritic Score: 85
League of Legends News
Genre: MOBA
Developer: Riot
Metacritic Score: 78