Xbox Live user traces account hacker

4.4
An Xbox Live user whose account was compromised and used to purchase thousands of Microsoft Points has identified the hacker involved, and discovered websites where accounts are up for sale. In a lengthy post on Tumblr, the user explains that her account was compromised not once, but twice, despite Microsoft having insisted the account had been locked. When she queried this with Microsoft she was told: "The fraud department was unable to block your account."

Microsoft issued a 30-day Xbox Live Gold code to use on a separate account while the compromised account was investigated, which the company explained would take between three and six weeks. When the user switched on her Xbox 360 to set up the new account she found she was automatically signed in to her existing account; despite it having been compromised twice, Microsoft was still yet to block it.


There was a new user on her friends list, and over a series of messages she ascertained that her account had been sold on a website called Tradetang. At the time of writing the site has 1,916 listings in the "Wholesale Virtual Products" category, the vast majority of which are Xbox Live accounts with large numbers of points attached. One such account comes with 6000 MSP and costs just $20.43; most come with a warranty of just two hours, presumably due to the risk that Microsoft is notified of the breach and promptly locks down the account.


There's no way of knowing for sure if this is the root cause of the recent FIFA hacks - which has seen swathes of Xbox Live users having their accounts compromised, with large amounts of Microsoft Points added using stored credit card data and subsequently spent on virtual goods in FIFA Ultimate Team - and we're still no closer to finding out how accounts are compromised in the first place. It does, however, shed a little light on the hackers' methodology once an account has been stolen.


The first order of business is to recover the stolen account and use stored credit card data to buy an Xbox Live Family Pack, which allows for several accounts to be linked between which Microsoft Points balances can be transferred. Then large amounts of Microsoft Points are purchased and transferred to the thief's normal account; the thief then creates several free Xbox Live accounts, divides the stolen points between them, and sells them on individually.


We're getting closer to understanding why hackers are targeting Xbox Live accounts, but no closer to working out how they're doing it. Microsoft has continually denied that it is a problem with Xbox Live security, and instead implied that users are being hoodwinked into giving up their details through phishing or social engineering. That hasn't rung true from the start, and still doesn't. EA, too, has flatly denied that the problem is caused by a weakness at their end.

Posted:

Source: http://www.next-gen.biz/news/xbox-live-user-traces-account-hacker

Comments

"Xbox Live user traces account hacker" :: Login/Create an Account :: 68 comments

If you would like to post a comment please signin to your account or register for an account.

AdenPosted:

hahaha i use this site all the time when i uploaded nonjtag. i spent over like 150k MS on multiple accounts (total, not 150 per account lol). I eventually got Console banned but it was fun while it lasted. I use to buy like 2k for $5 then charge the CC for more points and end up using like 20k before the account couldn't purchase anymore.

NervicPosted:

ToxicDropz
iJarH3ad
DopestDope_Eva
BzAr_TriiCkzZ And That is Why Im Switching To PS3!!


Yes, [sarcasm]because PS3/Sony never have problems when it comes to account security..[/end-sarcasm]


False. It's sad to hear that because you've not heard any bad news from Sony last year.

Last year, There are few hackers just branch into the Sony accounts security. Hackers had tons of accounts. Sony have to shut the online off for about a month. Many people tried to sued Sony because Hackers have their personal information, credit, and ect.

So watch your mouth :)

I guess you're just retarded because he clearly said he was using sarcasm...
Lol apparently he didn't see that part

ToxicDropzPosted:

iJarH3ad
DopestDope_Eva
BzAr_TriiCkzZ And That is Why Im Switching To PS3!!


Yes, [sarcasm]because PS3/Sony never have problems when it comes to account security..[/end-sarcasm]


False. It's sad to hear that because you've not heard any bad news from Sony last year.

Last year, There are few hackers just branch into the Sony accounts security. Hackers had tons of accounts. Sony have to shut the online off for about a month. Many people tried to sued Sony because Hackers have their personal information, credit, and ect.

So watch your mouth :)

I guess you're just retarded because he clearly said he was using sarcasm...

FortyPhaNTomPosted:

iJarH3ad
DopestDope_Eva
BzAr_TriiCkzZ And That is Why Im Switching To PS3!!


Yes, [sarcasm]because PS3/Sony never have problems when it comes to account security..[/end-sarcasm]


False. It's sad to hear that because you've not heard any bad news from Sony last year.

Last year, There are few hackers just branch into the Sony accounts security. Hackers had tons of accounts. Sony have to shut the online off for about a month. Many people tried to sued Sony because Hackers have their personal information, credit, and ect.

So watch your mouth :)

Ummm... do you even understand sarasm?

XboxPosted:

hahah thats great !

DEL-BOY-TROTTERPosted:

so this means we can pay 6k accounts no more what a bi*tch and fu*k microsft look how much they charge us for xbl and then charges us a pile more for microsft points
also the girl problay signed up to a ea website that was fake my freinds used to make them and steal other peoples players but i took a look at one of thier website and takes a rite old idiot to sign up to a website that the layout is completly difrrent

ANG3L_CHR1SPosted:

Henry0027
ANG3L_CHR1S
aimiami12
Jacob8hockey
ANG3L_CHR1S What happened to us XBL paying for protection? Pff no matter how hard you try, the condom is bound to break. **** XBL now. This is the last year I'm paying for their ****. I've already payed for my year. And that's it.

I think that girl made up that **** about her account not being blocked. She would have had to recover her aaccount if it had been stolen twice. Also its her own fault for getting hacked. 95% of the time its the person getting hacked fault, whether they bought the account or gave out their password.
Microsoft said the account was locked. If microsoft says that the account should be able to get one xbox only, thats my guess.

ohhhh ok, so she was just stupid for giving out her info. Haha, what kind of idiot does that?
Lots of people don't you remember the mw2 days when people where giving stuff for 10th lobby's. She probably thought she would get something from the fifa game and ended up giving her account

smh, if you won't do it on your computer, then don't do it on your xbox. You're in way less control.

galaxyblastPosted:

iJarH3ad
DopestDope_Eva
BzAr_TriiCkzZ And That is Why Im Switching To PS3!!


Yes, [sarcasm]because PS3/Sony never have problems when it comes to account security..[/end-sarcasm]


False. It's sad to hear that because you've not heard any bad news from Sony last year.

Last year, There are few hackers just branch into the Sony accounts security. Hackers had tons of accounts. Sony have to shut the online off for about a month. Many people tried to sued Sony because Hackers have their personal information, credit, and ect.

So watch your mouth :)

What are you talking about? PSN was hacked an shut down for a whole month by Anonymous! Sony just said it was maintenance but even anonymous admitted that they had hacked PSN and brought it down

A69Posted:

This only happens because they give out their info one way or another.

iJarH3adPosted:

DopestDope_Eva
BzAr_TriiCkzZ And That is Why Im Switching To PS3!!


Yes, [sarcasm]because PS3/Sony never have problems when it comes to account security..[/end-sarcasm]


False. It's sad to hear that because you've not heard any bad news from Sony last year.

Last year, There are few hackers just branch into the Sony accounts security. Hackers had tons of accounts. Sony have to shut the online off for about a month. Many people tried to sued Sony because Hackers have their personal information, credit, and ect.

So watch your mouth :)