Updates on Xbox Security

Updates on Xbox Security

Xbox LIVE General Manager Alex Garden details some improvements

Written by Matrarch on 19 July 12 at 14:48 | Credit to Chad and Jessie

As many of you know, breaches in security on Xbox LIVE seemed commonplace over the last year, especially with the prevalence of the FIFA 12 hack that impacted so many TAers in recent memory. Microsoft was, of course, aware of the problem, and although they have been pretty mum on explaining what causes these issues, they have been busy working behind the scenes to ensure a more secure experience for the nearly 40,000,000 Xbox LIVE users who are out there.

Xbox LIVE General Manager, Alex Garden, took to the forums on Xbox.com to talk about some of the updates that have taken place to help protect your information. In addition to notifying members who may have compromised accounts to "add proofs, update their passwords, and, if necessary, contact Xbox support", the following steps have been taken:

- We’ve taken legal action to pull down online posts of gamertags, usernames and passwords gathered from malware or phishing schemes to help protect our members.
- Our Xbox LIVE Spring update included many behind the scenes improvements that help us build on security enhancements for the near future.
- We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device.
- We’re working to reduce market incentives for criminal activity. Engaging in identity theft, trading in stolen accounts and committing credit card fraud are illegal and violate our Terms of Use. Those involved in these activities risk criminal prosecution, account and console bans. That goes for both sellers and buyers of known stolen accounts and content.
As with anything involving security, it is very important that the individual user take what steps they can to make sure their information stays safe. To that end, it's suggested that you make sure your username and password for Xbox LIVE are used only for that purpose and that you use different usernames and passwords for other services. That way, if one of those other accounts is compromised, you won't have to worry about it impacting your LIVE information. In addition, Garden recommends checking your security information and making sure to update and lost or missing security proofs you may have. One final note is that, if you haven't done so recently, you may want to go ahead and change your password, just to be on the safe side.

Keep in mind that all the above is more-or-less just an FYI so you can stay ahead of the curve in terms of keeping your account secure. There's no major breach or anything of the like, but no one likes an interruption in their Xbox LIVE service, so what's the harm in taking the above steps to make sure your account is safe?
AuthorMessage
Posted on 19 July 12 at 14:50
nice
ei8hty 88 ei8ht - Take two at getting the Wordament leaderboard achievements.
TrueAchievements site super-promoterTA Pro user495 posts
Last post: 17 May at 11:48
Posted on 19 July 12 at 14:55
Always good news, however I'm still annoyed by the GFWL bug. Did you know that you can't sign into GFWL if your password contains special characters? Forcing anyone who wants to play PC games to change their password to a weaker one.
@ei8htyei8ht http://ei8htyei8ht.com
Spilner
285,387
Spilner - Even though i dont enjoy games much anymore i highly recommend far cry 3
9,172 comments541 solutions9,270 posts
Last post: 22 Jan at 09:39
Posted on 19 July 12 at 14:55
We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device. This one i like, BUT i keep having to put the code in as my normal laptop keeps not being recognised :S
Still its a minor inconvience to keep my account and money safe
I create hate in others ;P
CrankyBauer24 - My gaming has died down so much , i mustnt let that happen anymore . Darn Charter is distracting lol
89,525  TrueAchievements points1,494 posts
Last post: 18 May at 17:35
Posted on 19 July 12 at 14:58
Too bad we cant trust everyone to where we dont need passwords for everything
mancide
211,478
mancide - If 5000 people repost this status, Dog of Thunder will join Toddy's completion challenge.
TrueAchievements Community Events OrganizerTrueAchievements Newshound1,572 posts
Last post: 17 May at 20:19
Posted on 19 July 12 at 15:01
I really wish they'd just do a full blown two-step authentication on your WLID since it can be the keys to so many devices now.
TA XBLIG Reporter | TA Dealhound | Xbox Ambassador | @mancide
finallife6
268,554
finallife6 - http://ca.ign.com/articles/2013/05/16/nintendo-enforces-copyright-on-youtube-lets-plays  Wow greedy much?
120 completed games(Includes owned DLC)TrueAchievement Ratio: 1.78321,543 posts
Last post: 07 May at 22:22
Posted on 19 July 12 at 15:04
Woot i can keep points on my account safe again! yay Microsoft now bring back my 1$ month for gold special please :P
liiami
213,647
liiami
132 completed games(Includes owned DLC)213,647  TrueAchievements points536 posts
Last post: 16 May at 12:01
Posted on 19 July 12 at 15:06
Spilner said:We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device. This one i like, BUT i keep having to put the code in as my normal laptop keeps not being recognised :S
Still its a minor inconvience to keep my account and money safe
It needs to be implemented on consoles too.
DBB Klikopedia - Is any of my friends getting GRID2?
Site Helper44 completed games(Includes owned DLC)342 posts
Last post: Yesterday at 15:46
Posted on 19 July 12 at 15:13
I don't use/have creditcard. I buy only MSP on the moment I need it, so they can only steal my Gamerscore and in the end, that is worth nothing.

If they want to steal my money, they first need to find my sock.
Game On!
Cringer85
242,285
Cringer85
Achievement Completion Percentage: 95.18% (Includes owned DLC) - 63 more achievements required to reach 96%335 completed games(Includes owned DLC)217 posts
Last post: 02 May at 16:20
Posted on 19 July 12 at 15:13
I can't believe how often I get questions by concerned parents about hundreds of dollars spend on the kid's xbox account on the ambassador program. kids just shouldn't give out their profile information to tools that promise free microsoft points in return for the profile information. it's unbelievable how often the small ones fall for that...
MachineAres - Done with TrueAchievements, guys, see you later.
87 posts
Last post: 26 Mar at 07:37
Posted on 19 July 12 at 15:21
Its about damn time. My Xbox account AND identity were stolen by someone getting into my Xbox account a few months ago, and it really just made me re-consider even being a part of the Xbox community anymore, and its why I've been removed from TrueAchievements
RuukuSukotto
177,201
RuukuSukotto - Burnout Paradise - Big Surf Island is sitting at 560MSP, to buy or not to buy?
54 solutions2,494 comments2,359 posts
Last post: 14 May at 00:13
Posted on 19 July 12 at 15:29
I don't like the code thing, having to go to into my emails and switch to my linked account just to get a code to quickly buy MS points is very annoying.

I can see how it would help in terms of security, but still.
No matter how bad things get, we'll never stop planting the flowers.
Spilner
285,387
Spilner - Even though i dont enjoy games much anymore i highly recommend far cry 3
9,172 comments541 solutions9,270 posts
Last post: 22 Jan at 09:39
Posted on 19 July 12 at 15:30
liiami said:Spilner said:We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device. This one i like, BUT i keep having to put the code in as my normal laptop keeps not being recognised :S
Still its a minor inconvience to keep my account and money safe
It needs to be implemented on consoles too.
I imagine it will be.
I create hate in others ;P
S k y C h a t
195,488
S k y C h a t - Defiance - to buy or not to buy.
225 votesTA Pro user369 posts
Last post: 07 May at 13:44
Posted on 19 July 12 at 15:45
Extremely annoying though.
munchmagic86
322,354
munchmagic86 - Laters [wave]
322,354  TrueAchievements pointsTA Pro user1,160 posts
Last post: 20 Oct 12 at 19:28
Posted on 19 July 12 at 15:50
Spilner said:We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device. This one i like, BUT i keep having to put the code in as my normal laptop keeps not being recognised :S
Still its a minor inconvience to keep my account and money safe
Yeah I keep getting that and it is rather annoying, at least I know why it's doing that now though
ScuzzyBunny
473,330
ScuzzyBunny - Star Trek was awesome...even referenced an event from the video game!
205 completed games(Includes owned DLC)TA Pro user687 posts
Last post: 16 May at 19:11
Posted on 19 July 12 at 15:53
Spilner said:liiami said:Spilner said:We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device. This one i like, BUT i keep having to put the code in as my normal laptop keeps not being recognised :S
Still its a minor inconvience to keep my account and money safe
It needs to be implemented on consoles too.
I imagine it will be.
One addition on console purchases is that if you use a credit card it is no longer "automatic"...I think the first time a day you use it, you have to enter the number from the back of your card. That alone will stop the majority of the problems, as the odds of someone who hacks your xbox account having info on your physical card is pretty slim.

The windows live security is nice, but like others, I am finding that I have to re-enter the re-emailed code almost every day! Since I only access xbox.com/ zune from one pc it's got some inital issues!
Killer Punks...all that needs to be said.
Snow Brigade
65,540
Snow Brigade
65,540  TrueAchievements points426 posts
Last post: 16 May at 13:34
Posted on 19 July 12 at 15:56
munchmagic86 said:Spilner said:We’re sending unique codes to the security phone numbers and secondary email addresses provided by members to verify authorization for Xbox.com purchases or account change attempts not stemming from a member’s trusted device. This one i like, BUT i keep having to put the code in as my normal laptop keeps not being recognised :S
Still its a minor inconvience to keep my account and money safe
Yeah I keep getting that and it is rather annoying, at least I know why it's doing that now though
Same here, I'm hesitant to give my phone number to any site these days. Just updated all of my security settings, thanks for posting this helpful news!
Before you mock, remember we're on a gaming forum
WookieKiller247 - Binging on the unexpected greatness of Defiance.
46,771  TrueAchievements points118 posts
Last post: 15 May at 18:50
Posted on 19 July 12 at 16:05
" Those involved in these activities risk criminal prosecution, account and console bans."

Risk? As someone who was hacked a few months back and had to dispute cc charges, why aren't people responsible automatically banned and charged? WTF Microsoft?
RYN16
200,023
RYN16 - Anyone completed or have any 007 games other than quantum i.e bloodstone?
200,023  TrueAchievements points218 posts
Last post: 08 Mar at 08:42
Posted on 19 July 12 at 16:14
WookieKiller247 said:" Those involved in these activities risk criminal prosecution, account and console bans."

Risk? As someone who was hacked a few months back and had to dispute cc charges, why aren't people responsible automatically banned and charged? WTF Microsoft?
They are but only if caught
Master Krane
101,480
Master Krane
101,480  TrueAchievements points278 posts
Last post: Yesterday at 19:37
Posted on 19 July 12 at 16:24
ei8hty 88 ei8ht said:Always good news, however I'm still annoyed by the GFWL bug. Did you know that you can't sign into GFWL if your password contains special characters? Forcing anyone who wants to play PC games to change their password to a weaker one.Are you sure? I logged in like a month ago and mine contains several non-alphanumeric characters.
http://sinisteralternative.blogspot.com/