My Splinterlands account has been hacked :(

Hi all.

Sad news today. My Splinterlands account was hacked and all cards and Dec are gone.
All that was left are Galdius cards.

IMG_20220217_065945.jpg

Second bad news is that using Splinterlands hacker has also stolen my HIVE together with other tokens.

All that Hive was gathered thanks to your upvotes and I was suppose to donate it to charity this month...

Thief is called xnitro. Below screen from Hive-Engine block explorer.

IMG_20220217_070441.jpg

The only positive fact is that I was able to recover my account.

How this happened? No idea. I kept my keys only in physical form. Never shared them to anyone. Hive Keychain was suppose to be safe but it looks like their security can be broken.
Other interesting thing is that only my Splinterlands account and my Wallet was affected. My Rising Star account was untouched.
So it looks like Splinterlands was the target and thanks to the connection between Hive Wallet and account hacker had easy access to my tokens.
Taking this into consideration I'm ending my adventure with Splinterlands.

Next thing is that I have checked this xnitro guy history and he is hacking account for months... How is that possible? I'm sure people who got hacked sent tickets or informed someone from Hive security... Why this guy account is still active?

I think Hive Keychain Developers should add some additional authentication method while transfering tokens from account to account. This could prevent situations like this.

I would like to thank you all who has joined my giveaways. Shame that this journey ended like that.

@zallin @iceman23 @stekene @deimargd @andy-plays @princessj190 @kerrislravenhill @alan369 @dangler @rubelynmacion @xunematic @draicor @darkluigi @rascal11 @balbaabart @legnare @jmehta @prxhunter @mezume @sihay @kisoliver98 @beelmukjj @summoner-cha @pavz @filuris @clawed
@luffyplays @oadissin @wackenlord @half-fast @jsynnthagr8 @ctulhudesu @totsoftate @cryptoph0823 @theacks @mcgilli @lucas-qz @migas @ozymnds @szpb @zenitsu12 @khaleesii @bhoa @evo69 @bakuoni @isaacjai @drias @doraado @diochen @limxinhai @xykorlz @jxalvar @olimaltar @quasarborn @lucasqz @spryquasar @no30dy @davideownzall @liquid-miracle @loire0013 @relf87 @highhaschdi
@jdike @litrydow @technocrypton @jhuleader @txracer @daethical
@matt23797 @lifey @madarchod @oniichaa @tnaflix @squishna @amaillo-m
@sideswipe81 @kursen @eman13088 @amaari
@henruc @memiliano @flr25 @luckbound @megawolf @angelinafia22 @imfarhad @myeong @tedus @dubble @divinecore @monku @kyo-gaming @master.splinter @lokirokiroll @openit @redeculous @megaulti11 @lovefallen @filuris @tebowlicious @vjekich @utama11 @gondek @driedbanana @nezumiyarouya @jin-7 @seantr0n @vrezyy @oleg326756 @ruthf @j-fy @atlasshrugged91 @diddydoms @agentesprisc @luckbound @driedbanana @rondonshneezy @zero-exp @blitzzzz @brojustaverage @lurick @kraaaaa @noctury @chaosmagic23 @rondonshneezy @renora @marleyroots @corbeaunoir @emanginasal @lipe100dedos @luffypaulo @yadood @bonobogologolo @bananofarmer @nploader @tjnanda @nopalshahab @americas-f1nest @kojiri
@gregory-f

Now I will focus on Rising Star as I still have cards and Starbits there. Hopefully after some time I will be able to start giveaways there. So if you play Rising Star stay tuned!

If you can share with some other great games on Hive please let me know in comment.

Stay safe and keep your keys hidden.

See you soon.



0
0
0.000
36 comments
avatar
(Edited)

That sounds so bad. I'm sorry.
!PIZZA
She got hacked too but it was her fault since she posted the key in the memo. Everyone can see the memo on the blockchain.
https://ecency.com/hive-124452/@queenstarr/ladies-of-hive-community-contest-64-restoration

0
0
0.000
avatar

Yep sad thing is that you are not aware that someone logged into your acc.

0
0
0.000
avatar

Can you please tell me if this beemengine is legit? I see you are one of the curator there.

0
0
0.000
avatar

What do you mean? I use it for a while now and you just vote on other people posts and vice versa. You get a few extra votes. I think it's not bad but I heard that some people don't like the auto vote or auto curation.

0
0
0.000
avatar
(Edited)

This Is sad news...i know a guy Who had the same issue, he lost 5/8k$ cards and started again from scratch, but cant blame you if u are going to stop....did you use keychain on mobile or pc? logged with keychain in some unusual site? They should add two factors autentication tbh

If u like football manager, try rabona.io, its a chill game, and if u use my ref u get extra currency

!PIZZA

0
0
0.000
avatar

I'm using it on mobile but I work only on Hive Keychain Browser. Never actually copy paste my keys... I have some suspicions but I don't want to do bad marketing so I will keep it for myself.
I already have rabona acc but thanks for info :)

YEP two factor authentication should be added

0
0
0.000
avatar

If you dont mind telling in DM your suspicious i can contact u on discord...

Also, if some day you Will ever want to start splinterlands from scratch again, better lock the cards, you might still lose all the tokens, but at least keep the cards

https://peakd.com/splinterlands/@splinterlands/card-locking-feature-and-dec-updates

0
0
0.000
avatar

That is a good advice. I forgot about this option... Sure you can contact me on discord.

0
0
0.000
avatar

I feel so sad and this is one kind of ridiculous that account hacked, we use hive key chain for easy and smoth operation but if there is something leak like what happened with your account, then we are not safe. We should keep our account more secured by deletion of browser history and cookies as well as never clicked unknown sites or link.

0
0
0.000
avatar

i am sorry to read it man...
i look for some transation and he send much things for honey-swap account.. i dont know if anything can be made but probably the devs can fiind the main account using ip or something like that...
hope someone can stop this hacker you are not the first...

0
0
0.000
avatar

Thakns . I hope someone can get this guy and beat the sh*t out of him.

0
0
0.000
avatar
(Edited)

PIZZA! PIZZA! PIZZA! PIZZA! PIZZA! PIZZA!

PIZZA Holders sent $PIZZA tips in this post's comments:
chaosmagic23 tipped nysster (x1)
davideownzall tipped nysster (x1)
squishna tipped nysster (x1)
kojiri tipped nysster (x1)
theacks tipped nysster (x1)
@amaillo(1/5) tipped @nysster (x1)

Learn more at https://hive.pizza.

0
0
0.000
avatar

Oh man, i´m sorry for that...May be you gave someone the allowance to send tokens from your wallet when you claimed any token from somewhere!? I heard about that from someone else.
I hope you´ll come back to Splinterlands! If so, let me know for a little Giveaway back to you ;)
Thanks for your nice Giveaways!

0
0
0.000
avatar

This is so sad and crazy, that account hacked someone I knew too.

I hope you recover.

0
0
0.000
avatar

I am so sorry Nysster. Horrible news, definitely agree with your points about the keychain adding more security, incredibly scary how that can happen and you have no clue how or why it has.

So sorry again my friend. I wish you the best moving forward.

0
0
0.000
avatar

Don't give up bro.. If the account can be retrieved from the hacker, there's still a possibility to return the items. As long as you stop believing, all hope is then lost. Stay strong! 💪

0
0
0.000
avatar

Sorry to hear about that, have you reported the hacker's account? Also, I don't suppose you have any of your cards locked?

0
0
0.000
avatar

Sorry to hear that :-( Maybe there is a way to get some of your assets back!

Good luck!

0
0
0.000
avatar

Sorry to hear this happened to you.
My guess is that your email was hacked.
Please fill out a support ticket.

0
0
0.000
avatar

Sorry for your loss, but this was not an issue with Hive Keychain (the keys are stored only locally).
What happened is that you posted your private key to the blockchain when withdrawing HIVE from Binance. Please be more careful in the future so this won't happen again.

0
0
0.000
avatar

When I was new I remember I almost posted one of my keys into the memo. Mouse was hovering send and I realized what was about to happen and almost had a heart attack haha!

It's a shame that most people end up not catching that mistake and find out from getting hacked.

0
0
0.000
avatar

Thanks for the giveaways and fun, sorry to hear that man!

Best of luck on your journey going forward.

0
0
0.000
avatar

Sorry to hear it! You’ve been so generous along the way. If you decide to jump back in I’ll totally toss you a card or three. All the best to you. !PIZZA

0
0
0.000
avatar

That's awful. I'm so sorry to hear this. I really enjoyed the giveaways and I do hope you get back on your feet soon. I know it doesn't cover your loss, but have a slice of !PIZZA

0
0
0.000
avatar

Thanks maybe some day when I recover :) thanks for all the pizzas :)

0
0
0.000
avatar

Sorry to hear about the hack. Clicking on suspicious links can lead to attacks as well. There are usually always hackers placing very convincing links to trick unsuspecting users to enter their keys into a clone of legit hive apps like Hive-Signer.

I'll be tossing some Splinterland cards your way and some DEC as well. It will come from the account @rentmoney. Its a shame people have to steal when there is so much opportunity to earn the right way.

Thanks for being apart of our SPT Content Creators List

0
0
0.000
avatar

Thanks but you didn't have to. I lost my card due to my own fault. I should have locked them :/

0
0
0.000
avatar

crap, is so sad read that :/, specially coming of someone with good intentions...hope to at least you recover emotionally for the lost
!Gif hug
!PIZZA
!LOLZ
!LUV

0
0
0.000