Maintenance for the week of September 1:
• PC/Mac: No maintenance – September 1
• PC/Mac: NA and EU megaservers for patch maintenance – September 2, 4:00AM EDT (8:00 UTC) - 9:00AM EDT (13:00 UTC)
• Xbox: NA and EU megaservers for patch maintenance – September 3, 4:00AM EDT (8:00 UTC) - 12:00PM EDT (16:00 UTC)
• PlayStation®: NA and EU megaservers for patch maintenance – September 3, 4:00AM EDT (8:00 UTC) - 12:00PM EDT (16:00 UTC)

heartbleed attack - Are our accounts and information safe?

flave
flave
There is a new vulnerability that affects a large portion of the internet. You can read more about it here - http://heartbleed.com/

I want to make sure that we are protected and the ESO servers (account and login) have been patched, assuming that they are using openssl, to the latest release.

Basically with an un-patched vulnerable version of openssl can be attacked and memory can be dumped with private keys, passwords, etc..

Would really appreciate it if someone from ESO could chime in here to to confirm security measures have been taken and that we have nothing to worry about.
  • NeeScrolls
    NeeScrolls
    ✭✭✭✭
    flave wrote: »

    Would really appreciate it if someone from ESO could chime in here to to confirm security measures have been taken and that we have nothing to worry about.

    There's always something to worry about when online the Interwebs B)

    But yeah, i suspect one of the ESO higher-ups representatives will be posting very soon to address the game's Account name in-game security 'flaws'.

    Hopefully.

  • jaschacasadiob16_ESO
    jaschacasadiob16_ESO
    ✭✭✭✭✭
    Well, if you consider that during the early access people reported they were logging into other people's accounts, which means they could steal your gold, delete your items, mess with the guild and delete your chars directly... you should feel pretty much safe.
    "Yesterday while searching a barrel in vVoM I found a lemon. Best drop of the whole run."

    Protect the weak. Heal the sick.
    Treasure the gifts of friendship. Seek joy and inspiration in the mysteries of love.
    Honor the Earth, its creatures, and the spirits. Use Nature's gifts wisely. Respect her power. Fear her fury.
  • Pahebe
    Pahebe
    Thanks, I won't sleep at night now. Make sure to screenshot your whole character every night before going to bed.

    Some things going wrong here. ZOS, please hurry up ;)
  • JD2013
    JD2013
    ✭✭✭✭✭
    ✭✭✭✭✭
    I am honestly worried about this. I am going to go and buy a timecard tomorrow.
    Sweetrolls for all!

    Christophe Mottierre - Breton Templar with his own whole darn estate! Templar Houses are so 2015. EU DC

    PC Beta Tester January 2014

    Elder of The Black
    Order of Sithis
    The Runners

    @TamrielTraverse - For Tamriel related Twitter shenanigans!
    https://tamrieltraveller.wordpress.com/

    Crafting bag OP! ZOS nerf pls!
  • flave
    flave
    Lina wrote: »

    Thanks for posting this Lina. I tested it earlier as well and received the same results. I heard Blizzarrd did rolling restarts early this morning/last night which many suspect were to address this issue. Do the login servers use the same authentication servers as the account management web page?

    If you test accounts.elderscrollsonline.com you get a better result. "http://filippo.io/Heartbleed/#account.elderscrollsonline.com:443"

    Hopefully we have nothing to worry about.
    Edited by flave on April 8, 2014 7:16PM
  • ZOS_MichaelServotte
    ZOS_MichaelServotte
    ✭✭✭✭✭
    Many people learned about this new vulnerability yesterday and we took the issue very seriously. Here at ZOS, we quickly did an evaluation of all our systems and corrected any that had the potential to be affected. Our account systems and authentication systems did not have this potential and therefore were not vulnerable at any time.
    Michaël Servotte
    Community Manager (FR) - Gestionnaire de communauté francophone - The Elder Scrolls Online: Tamriel Unlimited
    Facebook | Twitter | Google+ | Tumblr | Pinterest | YouTube
    Staff Post
  • otomodachi
    otomodachi
    ✭✭✭
    Many people learned about this new vulnerability yesterday and we took the issue very seriously. Here at ZOS, we quickly did an evaluation of all our systems and corrected any that had the potential to be affected. Our account systems and authentication systems did not have this potential and therefore were not vulnerable at any time.

    Thanks for the quick reply on that on, Michael, I think it will really pay off in this case! :)
    What do you gain by criticizing a CSR complaint?
  • Vodkaphile
    Vodkaphile
    ✭✭✭
    Many people learned about this new vulnerability yesterday and we took the issue very seriously. Here at ZOS, we quickly did an evaluation of all our systems and corrected any that had the potential to be affected. Our account systems and authentication systems did not have this potential and therefore were not vulnerable at any time.

    Whabam!
  • calamity
    calamity
    ✭✭
    Thank you for the quick response and great communication.
  • felixgamingx1
    felixgamingx1
    ✭✭✭✭
    Glad I created a separate bank account now. :)
  • savinel
    savinel
    ✭✭
    Awesome. Thanks for jumping right on this.
    Today's main: Hits Like Wet Noodle, Argonian Templar, Ebonheart Pact

    .. and stop calling me "Vestige!"
Sign In or Register to comment.