Pages:
Author

Topic: Email security notifications - page 3. (Read 3433 times)

sr. member
Activity: 462
Merit: 254
October 18, 2017, 11:35:11 AM
#14
admin must unlock.
and hacker can not use the account (with the new email).

Ban and Lock is not the same feature.
Ban invalidate the email, you can not use this email.

So, it's good ... Ip & email can be blacklist after.
So its still the same procedure (signed message) to get the account back (unlocked) with old email address?
legendary
Activity: 1512
Merit: 1012
October 18, 2017, 11:19:44 AM
#13
admin must unlock.
and hacker can not use the account (with the new email).

Ban and Lock is not the same feature.
Ban invalidate the email, you can not use this email.

So, it's good ... Ip & email can be blacklist after.
sr. member
Activity: 462
Merit: 254
October 18, 2017, 11:12:25 AM
#12
I added email notifications for some security events:

Whenever your password is changed (except by an administrator), you will get an email about it.

Whenever your email is changed (except by an administrator), your old email will get an email about it with a link to lock your account. The link is valid for 14 days.

Let me know if you find any bugs.
Hooray! This was a MUCH needed feature. Hope I can recover my hacked account in the coming days...

PS Would it be possible to send this notification to accounts which changed password in the last, say 14 days or so? So we can recover them by ourselves?

Thanks again!

That brings me a question in mind and I don't want to try out:
What will happen, if I locked my account? Can I then reset the password via email or must admin unlock?
member
Activity: 99
Merit: 10
October 18, 2017, 11:07:28 AM
#11
I added email notifications for some security events:

Whenever your password is changed (except by an administrator), you will get an email about it.

Whenever your email is changed (except by an administrator), your old email will get an email about it with a link to lock your account. The link is valid for 14 days.

Let me know if you find any bugs.
Hooray! This was a MUCH needed feature. Hope I can recover my hacked account in the coming days...

PS Would it be possible to send this notification to accounts which changed password in the last, say 14 days or so? So we can recover them by ourselves?

Thanks again!
legendary
Activity: 3318
Merit: 4606
diamond-handed zealot
October 18, 2017, 10:44:00 AM
#10
thanks theymos
sr. member
Activity: 462
Merit: 254
October 18, 2017, 10:32:12 AM
#9
Many thanks, theymos, for this new security feature. It is also good, that for changing email address no confirmation but locking link will be sent, because for some reasons it could be, that email is lost or a change for other reasons necessary.
sr. member
Activity: 336
Merit: 250
October 18, 2017, 10:10:07 AM
#8
This is a great addition to the security features of our accounts.

It will also prevent or at least lessen the number of members selling their bitcointalk account.
member
Activity: 444
Merit: 31
Still a manic miner
October 18, 2017, 09:48:06 AM
#7
i wish this was applied some days ago.. my hero account was stolen, it was "_javi_"

i pm´ed theymos but no response yet.
I cant sign a msg cause i didnt have a linked btc address. But i have a huge list of emails for the PM i got since 2014.. doesnt it prove ownership??

 if you look at _javi_ latest post, its SO obvious that it was stolen.. or i learned to write in a weird language i cant even recognize.. changed my email.. and changed avatar for "eidoo whatsoever" (get ready for the scam)
https://bitcointalksearch.org/user/javi-144120
(my last post was October 13, 2017, 04:52:58 PM)

theymos, Cyrus.. if you still read this thread.. plz take a look at my case.
full member
Activity: 308
Merit: 100
October 18, 2017, 07:31:26 AM
#6
Great thing to improve security! I hope there won't be so much hacks now. Thanks for your work!

P.S.
I've just tried it. No bugs have been spotted.
legendary
Activity: 2702
Merit: 2053
Free spirit
October 18, 2017, 07:27:56 AM
#5
Thanks Theymos this great news since we seem to be under attack a lot.




legendary
Activity: 1512
Merit: 1012
October 18, 2017, 06:54:19 AM
#4
Whenever your email is changed (except by an administrator), your old email will get an email about it with a link to lock your account.
The link is valid for 14 days.

Verified, no problem.

email with LOCK command work great for my temporary account already banned after the successful recovery.


legendary
Activity: 1512
Merit: 1012
October 18, 2017, 06:31:13 AM
#3
Whenever your password is changed (except by an administrator), you will get an email about it.

Verified , no problem, email received if password is changed.

+logout
+login to test changed password
= no problem.

+forgot password link
+email received to reset password
+change password
= no problem.
member
Activity: 420
Merit: 13
October 17, 2017, 10:09:52 PM
#2
You should have implemented this long ago.

Too bad for me, you implement this only after my account got hacked.
My hacked Dorky account underwent both password and email change less than 14 days ago.
And the last time I check my old email inbox, I don't see any notification there.
I suppose it is now 100% gone.

Update:
So I received notification to this "Dorkie"
But I received no notification to "Dorky" when I try to recover password for this username.
The old email address used by "Dorky" is the same as I used it with this account.

Update #2:
Pissed that my Dorky account lost to this.
Nevertheless let's hope this added security notification will help to significantly reduce (if not totally eliminate) all account hacking.
It may not be able to save my "Dorky", but at least it may save many other accounts from now onward.
administrator
Activity: 5222
Merit: 13032
October 17, 2017, 09:47:10 PM
#1
I added email notifications for some security events:

Whenever your password is changed (except by an administrator), you will get an email about it.

Whenever your email is changed (except by an administrator), your old email will get an email about it with a link to lock your account. The link is valid for 14 days.

Let me know if you find any bugs.
Pages:
Jump to: