Account got hijacked, email changed, security information removed. Cannot get access back.

Discus and support Account got hijacked, email changed, security information removed. Cannot get access back. in XBoX Accessibility to solve the problem; Hello, i'm chip and i'm in need of some help. Last night i tried to log into my account with my usual email, only for it to show "An account with the... Discussion in 'XBoX Accessibility' started by d_chipp, Sep 10, 2023.

  1. d_chipp
    d_chipp Guest

    Account got hijacked, email changed, security information removed. Cannot get access back.


    Hello, i'm chip and i'm in need of some help.

    Last night i tried to log into my account with my usual email, only for it to show "An account with the specified username could not be found. Try using another name or creating a new Microsoft account.".

    Thankfully my browser and Windows showed me the email had been changed to " ff7d{random characters}*** Die E-Mail-Adresse wurde aus Datenschutzgründen entfernt. *** ". I also got a message on my phone saying that my phone number had been removed from the account.

    By going to https://account.live.com/acsr i managed to reset my password because i entered my personal information that only I can know, proving im the real account owner.

    So the situation was that i could log into my account by using the changed email address and the password i put upon resetting it.

    I immediately headed over to my account and removed all of my connected devices, even my xbox 360 which i haven't used in so long. I also headed over to the settings to change the security information because i obviously want to receive confermation codes, warnings, on MY email address.

    By compiling the necessary form i get a message saying that due to security reasons my request was going to be pending for 30 days (while still being able to be canceled).

    I was happy and relaxed at this point because it finally felt like i had things in controll again. I changed the password and requested to change security information.

    IMPORTANT NOTE: with my experience i was unable to change directly the account's email WITHOUT that security information set to MY email, as i could not receive any confermation (since they were all being sent to that random email).

    Not long after however, i got another email saying that my request to change security information had been canceled (presumebly by the owner of that gibberish email). And when trying to log in my password had changed too.

    I managed to reset the password once more following what i did on https://account.live.com/acsr, but when trying to update my security information again it shows an error saying that i "can't do that again just yet".

    So i'm currently unable to gain control of my account again, waiting behind microsoft for stupid reasons as it's clearly obvious im the real owner of the account, while some random russian guy has control of my Microsoft account, which i use for my Windows devices.

    I would attatch images related to what's going on, but for some reason it keeps failing the upload, and drag&dropping isn't working. I will instead share this link to provide support for what im saying (i've uploaded my images there).

    Images: https://imgur.com/a/CiXVFBn

    I hope to hear back from someone as soon as possible, thanks in advance.

    :)
     
    d_chipp, Sep 10, 2023
    #1
  2. Klokkwork Win User

    STOP ASKING FOR MORE SECURITY INFORMATION!!!!

    Scenario 1) CookedDanny has one email address on file. The one he logs in with. One day, a ne'er-do-well compromises his email, discovers he has an Xbox account attached to it, and performs a password reset to gain access to his Xbox account and take
    it over. Without any other security information on file, CookedDanny is not notified of the changes, and the stranger takes the account for a joyride, leaving quite a mess to be cleaned up later.

    -

    Scenario 2) CookedDanny has his email address on file, and an additional email as a security proof. One day, a ne'er-do-well compromises his email, discovers he has an Xbox account attached to it, and performs a password reset to gain access to his Xbox
    account and try to take it over. However, when the perpetrator tries to remove the security email, the system tells him that this change will take 30 days, and sends a notification email to the security proof. CookedDanny is notified by this second email
    of the attempt to change. Alerted to the unauthorized access, he secures his primary email with a new password, resets his Xbox password, cancels the request for information change, and neutralizes the stranger's attempts at gaining access to his account.

    -

    Scenario 3) CookedDanny has his email address on file, and an additional email as a security proof. One day, a ne'er-do-well compromises the secondary security email. This email is not used as a login for the Xbox account, and does not do anything for
    the stranger who might have had the inclination to try to hijack an Xbox account.

    -

    Additional security proofs = increased security.

    Additional security proofs =/= additional paths to account compromise.

    The likelihood of someone compromising both your Microsoft Account credentials AND your security proof email credentials is extraordinarily slim. For more information about Microsoft Account security proofs, here's a link.

    http://support.xbox.com/en-US/billing-and-subscriptions/account-security/security-proofs-overview
  3. ArminatorX Win User

    "It looks like someone else is using your account"

    I have had my Xbox account setup with my work email and phone number ever since i have had an Xbox. I have recently changed jobs so updated my phone number and email address which is linked to my account to my new email and phone number.

    [...]due to critical safety information being changed on my account (me updating my email and phone number) and i needed to wait 30 days until my new email and phone number would be accepted. Only then would i be able to log into my account.

    Has anyone else had this?

    [...]

    I'm locked out of my account. Turns out Microsoft does that for you anyway. Should of just left it alone.
    This only happens, if you didn't have security info on your account (i.e. a phone number or secondary email), or don't have access to the existing security info to confirm ownership or the change of security info.

    If Microsoft were able to send you the verification code for the change to a working email or phone number that was present on the account before you changed emails and phone numbers, then the change would have been done immediately after you could confirm
    the code.

    For security reasons, if *all* your security proofs are changed, and the old ones aren't confirmed, Microsoft will stall this change for 30 days. Just imagine the following scenario: A hacker got access to your Microsoft Account, but does not have access
    to your phone or secondary email. They add their own phone and email, to be able to recover your account eventually.

    You will get a message to your email informing you of the change. Unless you confirm that change, the hacker is still unable to use his own security information to completely take over your account.

    Since you might be on vacation or other reasons prevent you from immediately reacting on that change, the 30 day waiting period is there to hinder account hijacking. So you'll get a full month of time to act against a hacker taking over your account.

    Since this is all automatic, the only way the computer system can differentiate you from a hacker is by confirming your old security info. Also, in the past the support agents were (ab-)used by account hijackers that wanted to speed up the take over, so
    the support can't help you speeding up the change, otherwise they might also be helping a hacker to hijack your account.

    So for future changes: Make sure that you still have access to your "old" security information,
    before you add new security info. That way your changes will be immediate.

    Additionally, I'd recommend you enable Two Step Verification and set up the free Authenticator App on your smartphone.

    That way you have a third way to authenticate yourself to the service and make security changes on your account more immediate.

    You can set up and change the Two Step Verification setting at
    https://account.live.com/Proofs/Manage
  4. CubicDinosaur10 Win User

    Security lock on account because of information change.

    Hello!

    The message you are seeing is normal since you no longer had access to any of the security information on your account. This security measure prevents others from taking over your account by changing the security information. The wait time is indeed 30
    days, and your new security information will automatically apply to your account at that time. You'll receive an email when the change is complete.

    If you do have access to the prior security info, you can cancel the change and that will allow you access to your account again. Otherwise, you will need to wait the full 30 days as that cannot be overridden by anyone.

    For more information, please see:
    www.xbox.com/.../Account-Security
  5. ArminatorX Win User

    Cancel a request

    Are you still able to sign in on your account security page at
    https://account.live.com/Proofs/Manage
    ? If not, follow the instructions for a compromised account here: https://support.xbox.com/my-account/security/compromised-account-solution

    If you were able to get to the Proofs Managing page, you can remove the alternative address. Then change your password to something very secure. I recommend thinking of a sentence you can easily remember. Like for example "This sentence is my password. I
    can remember it well!" Then take the first letter of each word and the punctuation and you get "Tsimp.Icriw!" which would be a complex password that you can still easily remember.

    Then, after changing your password, scroll down on the page and enable Two Step Verification and set up the free Authenticator App on your phone.

    After you've done that, add your own phone number and alternative email addresses at the top, so you can recover your account with that information.

    And remember to keep that information up to date, BEFORE you change phone numbers or emails! You will have to confirm a code that is being sent to the email or phone number. If you change that security information without access to your email or phone number
    there, changing the security info takes 30 days, to prevent account hijacking.
  6. steeledwand7664 Win User

    If I have to wait 30 days just to stream, I'm going back to Sony

    The problem was that you did not have access to the security proof that was on the account when you originally started this process.

    All you had access to was the email and password.

    Therefore Microsoft to make sure people are not just getting peoples emails and passwords for their accounts and going in and changing information on the accounts and stealing the accounts they require a verification of ownership by sending out a code to
    the security proof on the account.

    They do realize that some people no longer have access to the security proof on the accounts so that is why they do put this 30 day hold on accounts if you can remember the email and password for the account.

    The ONLY way to get past this 30 day hold would be to gain access back to the previous security proof that was on the account.

    If you gain access back to the security proof on the account and try and do something it will give you the choice to cancel the proof change and send a code to one of the old security proofs.

    Otherwise you will need to wait the 30 days.
Thema:

Account got hijacked, email changed, security information removed. Cannot get access back.

Loading...
  1. Account got hijacked, email changed, security information removed. Cannot get access back. - Similar Threads - Account got hijacked

  2. My minecraft account got hacked and hacker changed the email

    in XBoX Accessibility
    My minecraft account got hacked and hacker changed the email: So i was trying to verify my account on discord to join a server and inputted my email and IGN of my minecraft account into the verification form. I was then kicked from the game 5 minutes later...
  3. My account got suspended for my profile picture and I want to submit a appeal for it...

    in XBoX Accessibility
    My account got suspended for my profile picture and I want to submit a appeal for it...: My account got suspended for my profile picture and I want to submit a appeal for it because it’s a pie with a face carved into it 94528221-8ebf-4033-a12e-1a665751476d
  4. Account got Compromised by a scam

    in XBoX Accessibility
    Account got Compromised by a scam: My account was hacked and the compromiser has changed my information that I can't do recoveries with many kind: Account Reinstatement...
  5. My microsoft account got hacked and deleted.

    in XBoX Accessibility
    My microsoft account got hacked and deleted.: So my microsoft account got hacked with minecraft java with it and when I logged in my account got deleted and there was another email attached with it this happened 2 years ago and i'm still...
  6. My account got suspended for no reason

    in XBoX Accessibility
    My account got suspended for no reason: Hello!I’ve uploaded a new profile pic and my account became suspended almost immediately,but my picture didn’t have anything in it that should of gotten me suspended. No drugs,no...
  7. my account got hacked and now I'm permanently banned on it what should I do?

    in XBoX Accessibility
    my account got hacked and now I'm permanently banned on it what should I do?: my account got hacked and now I'm permanently banned 5e204e9e-918a-4dda-8168-00f9e1678725
  8. Microsoft account got hacked and I didn't notice because I have had no trouble logging into...

    in XBoX Accessibility
    Microsoft account got hacked and I didn't notice because I have had no trouble logging into...: Howdy, I went to log on to my minecraft account to play with my friends for the first time in over a year when I realized that I was unable to login and it claimed that my account no longer...
  9. My account got hacked

    in XBoX Games and Apps
    My account got hacked: So my account got hacked, cant i transfer my minecraft to another account? e78adcb5-f46e-4402-811d-d45320df2e76
  10. Can someone unban my xbox account? I think i got hacked.

    in XBoX Accessibility
    Can someone unban my xbox account? I think i got hacked.: I played peacefully on my PC at some xbox games then some gamerscore notification popped up and i was wondering if someone is hacking with my xbox account. Now some days after by account got...