Announcement

Collapse

Forum Rules [Updated 12/21/2016]

MAIN RULES OF THE FORUMS

Please respect your community. Respect each other as you all enjoy the same thing – The Game.

We encourage open and friendly discussion of the game and the Community. Moderators and Staff have final decisions on all matters, and are here to make sure that the Community remains a friendly, fun place appropriate for players of all backgrounds, ages and groups.

It is the forum member's responsibility to stay up to date on forum rules and to honor the behavior outlined.

PURPOSE OF THE FORUMS

These forums provide an area for constructive player discussions of the game. It also allows players to
help each other identify bugs and issues, and help each other reproduce and resolve them.

These forums are not the most direct way to contact support. If you’re having an issue with your game and you need direct assistance, please tap on the FAQ/Support tab within the game.

CHANGES OR IMPROVEMENT

Please make sure to stay updated on these rules by reviewing this page from time to time.

SET RULES

This is a private board. As such, decisions made are final.
We reserve the right to remove any message board content without notice for any reason.


Rule 1: Responses to rule violations
Violating these rules will result in warnings, either formal or informal, suspensions, banning, or other sanctions.

Rule 2: Respect other users on the forums
- Do not make attacks or insult other users, either in the forums or through private messages. Disagreements and debates are fine, but don’t make it personal.
- Do not attack groups. This includes professions, races, religions, sexual orientations, genders, incomes, or even vague groups like “you people.”
- Do not use ill terms which are offensive to groups, do not “flame”, “troll.” or “haze”.

Rule 3: Respect the forum purpose and structure
- Make your posts in the appropriate forum.
- Please use the Search function. If a relevant thread already exists, please post there instead of creating a new thread about the same topic. Duplicate threads will be closed to keep the forums orderly and easy to navigate.
- Keep off-topic posts in the off-topic forum.
- Don’t start discussions about games that are not ours.
- Do not cross-link to other message boards or websites unless approved by a moderator.

Rule 4: Respect the law
- Do not post anything illegal under U.S. law, or encourage other users to break the laws of the U.S. or their country of residence.
- Do not encourage users to break terms of service. This includes giving information about how to find scripts, exploits, or cheats, as well as arranging to buy or sell accounts or virtual goods.

Rule 5: Respect the audience
Think about who you're talking to. Users may be as young as 13 on these message boards, and may be male or female, and from countries across the globe.
- Keep your language civil. Profanity is frowned on.
- Do not post Adult Material, inappropriate graphic sexual content in any format, or links to sexually explicit sites.
- Do not post graphic images or explicit descriptions of violent acts.
- Do not use an avatar or signature that could offend other users. They have to look at it a lot.

Rule 6: Respect privacy
- Do not post any private emails or private messages unless you have the explicit permission of each person involved in the exchange.
- Do not post private communication between customer support, members, moderators, or administrators on these forums, or anywhere else. (This include support ticket responses)
- Do not post any information covered by a non-disclosure agreement or beta testing agreement. Even if you somehow have inside information about our competitors, for legal reasons we don’t want to hear it.
- Do not post Facebook information about other forum users.
- Do not post any private information about other users.
- Do not post in-game information in an attempt to have other players attack your target. Be careful to not cross the line into bullying.

Rule 7: Do not spam
- Do not post repeatedly about the same topic.
- Do not spam users on the forums or through private messages.
- Do not start a thread without actual purpose.
- Do not start a thread about a news story or article unless you make it clear what the story is about, and offer your own opinion to start a discussion.

Rule 8: Respect your account
- Do not share your account information with other individuals. You will be held responsible for any rules violations that occur under your account.
- Do not create new accounts or use other tricks to avoid suspensions or bans.
- Do not create ‘sock puppet’ accounts – multiple accounts created just so that you can agree with yourself and make it seem like your ideas have more support than they do.
- Never include your e-mail address or any other personal information in posts.

Rule 9: Respect the Moderators
- Do not post using the color red. This color is reserved for moderators.
- Do not impersonate moderators. Do not claim to speak for the moderators.

Rule 10: Respect the decisions of the moderators
- The moderation teams reserves the right to warn, suspend, or permanently ban users judged to be acting against the spirit of the rules, even if the user is following the letter of the rules.
- Do not argue with moderators about moderator decisions. You can disagree with a moderator’s opinions, just like any other poster, but when they post moderator actions in red text, it is considered final.
- Moderators have no access to your game account. If you have an issue you must contact customer service.

Generally, BE NICE. There is nothing wrong with being nice to each other.
See more
See less

Google alert about leaked Castle age account information

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Google alert about leaked Castle age account information

    Google just told me to change my password:
    Gehackte Passwörter (Hacked passwords)


    Bitte ändern Sie umgehend die folgenden Passwörter, um Ihr Konto zu schützen: (Please change your password immediately to protect your account)
    webback.castleagegame.com
    accounts email address
    Bei Datenpanne gefunden (Found at data leak)

    Best greetings from Germany
    Olaf

  • #2
    We will look in to this matter.
    * Stealth Moderator *

    Comment


    • #3
      (With Google I meant Google Chrome.)
      OK, another question in this context - where can I change the password for web3/crusader account?

      Comment


      • #4
        Home page, then home tab, 3rd option down crusader ...... web3

        Comment


        • #5
          webback.castleagegame.com
          Is it safe to assume Facebook and web3/web4 logins are not compromised?

          Comment


          • #6
            Same here, thank god for Chrome! I've updated my password

            Comment


            • #7
              Originally posted by OlafE View Post
              Google just told me to change my password:
              Gehackte Passwörter (Hacked passwords)


              Bitte ändern Sie umgehend die folgenden Passwörter, um Ihr Konto zu schützen: (Please change your password immediately to protect your account)
              webback.castleagegame.com
              accounts email address
              Bei Datenpanne gefunden (Found at data leak)

              Best greetings from Germany
              Olaf
              My german is not good, but may it happen you have the same password in castle age as in other different online services. If any of those online services have been hacked and the password made public, chrome will let you know in all and any sites you log in with chrome with such credentials.

              I mean, castle age does not necessarily had been hacked but it could be any other service you used the same e-mail address.

              BR

              Comment


              • #8
                Originally posted by namaxe View Post

                ....you have the same password in castle age as in other different online services.
                Yes, if you use the same password on several sites that GC judges as 'unsafe' then it will flag up as a security breach - it's more a matter of you using unsecure passwords on multiple sites than CA having a security breach

                Comment


                • #9
                  I don't think Google will necessarily flag password reuse between sites as an issue. However, it does have the value of those passwords, and once that password shows up with your e-mail address/user id in a breach dump, it will show any and all accounts that use that password and indicate that you should change it.

                  Comment


                  • #10
                    I do not use this email alias in context with that password very often (but may have in the past for forums which no longer exist).And according to https://haveibeenpwned.com/ there is only one known breach for that email address.

                    But anyway I think it is better to be warned independent from the real source of the leak.

                    Alone the fact, that the password mentioned as hacked does not point to web3.castleagegame.com but to webback.castleagegame.com is a bit strange - could this address difference result from storing the password on a mobile phone?


                    Best greetings from Germany
                    Olaf
                    Last edited by OlafE; 01-04-2021, 05:05 PM.

                    Comment


                    • #11
                      Originally posted by OlafE View Post
                      Alone the fact, that the password mentioned as hacked does not point to web3.castleagegame.com but to webback.castleagegame.com is a bit strange - could this address difference result from storing the password on a mobile phone?
                      webback is iOS app backend server address. It has also been used as emergency backup for web3/web4 at least once in the past.
                      The servers share IP address. They have had separate addresses at least at some point in the past. Shared IP address doesn't tell us much, as it can result from multiple things. They are, however, all in SoftLayer address space, and in same colocation center. Surprisingly this has not changed even when CA has changed hands from one company to another.

                      I checked the email address that has not been used outside gaming accounts at all, and found nothing. Checked another that has been used for more than just gaming, and found two breaches. Both of them old (Dropbox 2012, exploit.ln 2016). castleagegame.com was not on pwndwebsites list.

                      Can't guess what it is about. Sorry.
                      WARNING: THE POST ABOVE MAY OR MAY NOT CONTAIN SARCASM AND/OR IRONY!

                      Elandal [FIN] ΛĢ 8218DD

                      Comment

                      Working...
                      X
                      😀
                      🥰
                      🤢
                      😎
                      😡
                      👍
                      👎