Heroes of Newerth hacked
A naughty hacker has busted into the database of S2's Heroes of Newerth, gaining access to account login information. If you've played the DotA 'em up and use a password shared with any other online account, you'll want to get changing those passwords and, honestly, start using individual passwords for each account.
A naughty hacker has busted into the database of S2's Heroes of Newerth, gaining access to account login information. If you've played the DotA 'em up and use a password shared with any other online account, you'll want to get to changing those passwords and, honestly, start using individual passwords for each account.
"At 2:30 PM EST we became aware that a Heroes of Newerth password security breach had occurred," S2 Games says in an announcement on the in-game login screen. "We encourage everyone to change any passwords that were shared with your Heroes of Newerth account. Do not change your Heroes of Newerth account password at this time."
S2 has brought the servers down in response, so for now you can't get your HoN on.
Over on Reddit, a chap claiming to be behind the hack says he found several security holes but is keeping them secret until S2 has plugged them.
If the rash of gaming hacks over recent years hasn't convinced you to start using individual passwords and a password manager like KeePass, well, you really should.
-
Alice O'Connor posted a new article, Heroes of Newerth hacked.
A naughty hacker has busted into the database of S2's Heroes of Newerth, gaining access to account login information. If you've played the DotA 'em up and use a password shared with any other online account, you'll want to get changing those passwords and, honestly, start using individual passwords for each account.-
-
-
So let's say, theoretically, that I've been using the same 2-3 passwords in a lot of places and the number of stories like this have finally convinced me to change that. Is there a good strategy for changing this up?
Namely:
- How hard is it to go and use LastPass/KeepPass to change everything up?
- Is there any way to find out where all I might be registered? I mean obviously I use my banking credentials regularly but who knows how many obscure-ass sites I've signed up for over the years and forgotten about. Some of which might not be around anymore.-
As a lastpass user, I'll try to answer your q's:
1. No way to automate it that I know of. I assume it would be manually knowing which sites to go to and changing credentials.
2. I assume not, aside from looking through account registration emails. However, if said obscure sites no longer exist and/ or your old insecure passwords are not in use anyways, why does it matter?-
As I just did #1 a few months ago, the #1 thing is,
If your PWs are all stored in Firefox/IE/Chrome, LastPass automatically shows you the full list of every site stored in those caches.
I then went through, one-by-one, and changed every single password on every single website. I then went through my email and updated any that were missed that way. LastPass automatically catches password changes and will auto-generate new passwords for you, so this was a quick effort, if not automatic. -
-
-
-
-
-
-
-
-
obligatory https://agilebits.com/onepassword
yeah it costs money
-