Unauthorized Intrusion at Trion Worlds (Makers of Rift)

Heads up. Just saw this press release by Trion Worlds.

Will quote it in full for those who are blocked access to their website.

We recently discovered that unauthorized intruders gained access to a Trion Worlds account database.

The database in question contained information including user names, encrypted passwords, dates of birth, email addresses, billing addresses, and the first and last four digits and expiration dates of customer credit cards.

There is no evidence, and we have no reason to believe, that full credit card information was accessed or compromised in any way. We have already taken further action to strengthen our systems, even as we, with external security experts, continue to research the extent of the unauthorized access.

You will notice on your next log in to our website that you will be required to change your password, and existing Mobile Authenticator users will also need to reconnect their Authenticator. When you log in, you will be prompted to provide a new password, security questions and answers, and be given the option to connect your account to our Mobile Authenticator to enhance your account’s security.

If you have used your username and password for other accounts, especially financial accounts or accounts with personal information, we suggest you change your passwords on those accounts as well. We recommend that you carefully review your statements, account activity, and credit reports to help protect the security of those accounts. If you need information on how to obtain your credit report or believe any such accounts have been breached, please see below for more information.

You should have continued, uninterrupted access to RIFT, and we do not anticipate any disruptions to your playing time.

Nevertheless, if you own the RIFT game, you will be granted three (3) days of complimentary RIFT game time once you update your password and security questions.

Additionally, once you update your account and set a new password, your account will be granted a Moneybags’ Purse, which increases your looted coin by 10%, even if you have not yet purchased RIFT.

Please log in to https://rift.trionworlds.com (and we recommend that you copy and paste this link into your browser to access the site) to update your password, security questions and Authenticator.

We apologize for any inconvenience this may have caused you. If you have further questions, please visit our website, www.trionworlds.com/AccountNotificat....

Bolded as from the original press release.

I've already done the needed and Trion Worlds is really pulling out all the stops: Up to 512 characters, full allowance of pass-phases including spaces, special characters required, two security questions need to be set up and the re-setup of all mobile authenticators.

That being said, I'll be keeping a close eye on my credit card statements anyway. Blast it, first Steam now this.

A reminder that you can use an android emulator combined with the free mobile authenticator to increase your security as well. It can be a pain to set up and get used to using it but it may increase your peace of mind. That said I still wouldn't leave my credit card on there, nor any other online store/subscription service these days.

Meanwhile I don't get it, why don't the people doing this stuff go after some bigger fish like paypal?

krev82 wrote:

Meanwhile I don't get it, why don't the people doing this stuff go after some bigger fish like paypal?

Why go after something that might be able to bite back? The way I see it is a bit like extortion, you only go after targets you know are going to pay off with the least amount of hassle.

People are actually still playing Rift?

Bear wrote:

People are actually still playing Rift?

Sure. It's a good game by a good company. Still remains to be seen if I will give up my sub for SWTOR once my physical box reaches here and I enter in my product code. But till then it's still entertaining and a extremely smooth and polished gaming MMO experience.

But that's not really the main point.

The main point is that if you once played Rift that you data might be affected. And it's interesting to note how aggressive Trion Worlds is being in implementing new security policies to prevent another occurrence, although some may say that it's already too late.

Also interesting how Trion is giving all former, current and future customers some perks as an apology.