Account hijacking and abuse of resources
Product: Star Wars: Galaxy of Heroes
Platform:Android Tablet
What type of device are you experiencing the issue with? Emulator / Phone
OS Version 7 and 10
Ally Code: (Find it here: http://bit.ly/AllyCode ) 777681168
What type of issue do you have? Other
How often does the bug occur? Every time (100%)
Summarize your bug Account hijacking possible via FB connect and emulators and/or phones
Steps: How can we find the bug ourselves? Not sure as this can be related to an unlucky coincident with the emulator, Phone and FB Connect
Connection Type Wifi
Please select your region Europe
Country Germany
Ladies and Gentlemen,
I would like to raise awareness to an issue with the Facebook connect and using emulators to play the game on your laptop or desktop computer with greater ease.
Yesterday I ran a setup on my laptop and used FB Connect to link a device. Strange enough I followed the steps to find myself linked to a different account that had already progressed a bit (lvl 85 ~650k GP) but obviously wasn’t mine. That account was even part of a guild and I could see members and chat messages.
Knowing this is not my place I disconnected and removed that machine to create a new one. There it worked and no issue was coming up. Several hours later I was closing the day with a few missions I got disconnected (Message like: Your session expired… due to recent login). You can imagine my mental condition at that time. The next hour I was going back and forth trying to prevent login to my account but in the end the other side spent all my crystals on shards which I don’t need. Left my guild robbing me of the TW participation and some loot of the hSTR. The real trouble was than as he continued to do logins and spend my arena fight causing havoc on my shard mates which I value highly.
My question therefore is simply – are you aware of such a thing? Can you help me to have again a guaranteed control over my account (to prevent any more damage like sold mods and stuff like that)? And a topping would be to get my crystals back with all the other changes revert of course (extra splinters removed in the process).
Looking forward to hearing from you on this serious security issue!
Thanks & Regards
Val
p.s.: Contact me please for details – I opened a support ticket already