1,000,000 R$ Dev Account Compromised by Email Swapping

On July 20th, my verified developer account DrKig, secured with two-factor authentication, was compromised. The hacker bypassed security by guessing the original email password and convincing support of their ownership.

Contacting support has been frustrating, as I’ve only encountered bots. They insist that the only way to secure my account is by using the original email from 10 years ago, which was compromised by the hacker.

The hacker hasn’t been able to access the funds yet on the account due to the two factor , but it’s only a mater of time until he’s able to convince support to remove that as well.

How ROBLOX could allow such gross negligence of account safety and give access to an email used 10 years ago is beyond me, has anyone encountered a similar situation to this?

Edit: I managed to get in direct contact with a ROBLOX Staff, the issue has been resolved after two tweeks. I’m leaving this thread hopefully as reference.

11 Likes

In a desperate attempt to reach support , I’ve contacted ROBLOX Staff on LinkedIn & and posted tweets trying to garner public attention in a lowly attempt to connect with a real human support.

3 Likes

did you have authenticator app 2fa or email 2fa?

2 Likes

You can get it back if you purchased something on the account before it was compromised, but you need to have a receipt as proof to get it back, pretty sure there are other ways that can help too

3 Likes

Have you created a support ticket using Roblox Support? This is the best way to directly contact Roblox

2 Likes

That’s terrible, I feel so bad, try contacting Roblox support and see if they can do anything.

2 Likes

How could i protect my Account so it IS difficult for hackers to Hack in to my account?

2 Likes
  1. Have a secure password containing upper- and lowercase letters, numbers and symbols. It is also optimal to change it every 6 months (for added security).

  2. Have a verified email and phone number along with a 2FA autheticator app on your phone.

  3. Don’t click on suspicious links as they can steal your security cookie and thus your account.

2 Likes

Well, as stated in the post, @OP has only gotten bot responses thus far, making the Roblox support pretty much useless at the moment.

1 Like

Do the outgoing transactions in the Transactions tab count as a receipt?

1 Like

It genuinely infuriates me that roblox allows stuff like this to take place, the fact that someone could either hack or roblox delete your account for absolutely no reason.

4 Likes

Haha. “Powering Imagination” is a lie.

2 Likes

Powering imagination more like powering corporation.

3 Likes