Post by Breakingchains on Dec 12, 2023 16:16:55 GMT -5
Hey all. I'm noticing an influx of lost Neopets accounts being reported on the help chat. As such, time for another one of these.
Preventing a breach:
Additional tips you may have are helpful and appreciated. Stay safe!
Preventing a breach:
- Are your passwords secure? Are they random keysmashes and/or strings of unrelated words? A password manager like Bitwarden can help with this. Please note that Lastpass had a security breach towards the end of 2022.
- Do you have PINs turned on?
- Do you have the birthday log-in prompt turned on?
- Do you have two-factor authentication turned on for EVERY account you have? I previously only had it on my main, until a side with a UC on it recently got cracked. Thankfully due to otherwise good security practices I managed to get right back in, but I'm not turning 2FA back off anytime soon.
- Is your e-mail locked down? Do you have 2FA on it? Ever since my main was cracked and almost lost in 2011, I've had a dedicated Neopets-only email with a pretty random username, with no obvious ties to any other account on the web.
- Do your accounts look like targets that won't be missed? Do they look abandoned, or is it clear they've been active? Do you regularly log into your sides? Are your pets fed? Images broken?
In case of a breach:
- Do you have a dedicated place to store information about your accounts? This can be a spreadsheet, a folder full of screenshots, etc. Consider backing it up in at least three places, one of which should be on the cloud.
- Is all the information on your account up-to-date? Birthday? Zip code? (There are instances of people successfully presenting their ID to TNT to get back into their account!)
- Do you record large purchases, such as hidden tower items?
- Do you screenshot your NC records?
- Do you have some odd hidden information somewhere on the account? Consider reading books to your pet that spell out an acronym, keeping a specific series of unpriced junk items in your shop, leaving exactly 333 NP in the shop till at all times, creating an invite-only guild with a screed on the main page about how My Little Pony was created by our alien overlords... The goal is to hide identifying information somewhere nobody else is ever going to look.
- Do any screenshots you keep show a visible time and date?
- Have you generated emergency backup codes? Do you know where they are?
Additional tips you may have are helpful and appreciated. Stay safe!