Roblox Limited Perfectly Legitimate Business Hat Has multiple hacked accounts sellers daily

Following hat has daily hacked / stolen accounts selling this hat: Perfectly Legitimate Business Hat - Roblox

All these accounts near the red line are from 2009 and are pged, this is a daily thing that happens and it lowers value from people who have gotten this hat through legit means

Expected behavior

All the accounts under the red line banned, and possibly doing some type of update that prevents you from selling / trading if you haven’t logged in for years

3 Likes

This is less of a bug and more of a feature request

3 Likes

Extra insight

Most of these accounts haven’t been utilized in over a decade and have practically no activity on them. It’d make sense to lock many of these really old accounts down as the owners clearly don’t care about them anymore (or lost the information; unrecoverable). Due to previous incidents with moderators overseas, Roblox keeps an eye on old accounts like YeahBoii11 and TE0C when transfers like these happened. TE0C was compromised with the “unterm method” about a month ago, and had its EST & Bobbie hoard get sold off. Roblox took action on these before they could get transfered again.

They’ve been killing the resale price of this item because of the tens of thousands of copies being taken from these old accounts and resold, being put into circulation. This makes it unfair to the users who purchased the hat for much higher in previous years, when the releases weren’t to this scale.

The limited economy always fluctuates and overall always gets higher each year, but this is a forced circulation increase.

image

Other smalls without such copies like Adurite Antlers are hardly affected by this, and instead fluctuate depending on the season.

4 Likes

I understand what this post is saying, though I do believe prevention starts with the improvement of account security. This isn’t the only item affected by compromised accounts bombing resale prices.

3 Likes

I also wanna note that some of the accounts will dress differently to possibly not look pged


1 Like

I’m not sure how this is related to bug reports in anyway other than the category. They can’t do anything because most of the original owners are inactive.

Your best option is to report them through “Report Abuse,” and hope that they lock the accounts.

2 Likes

the issue with that is there’s hundreds and is almost impossible to report them because of the daily pgeds that happen

1 Like

This isn’t really a bug, plus this happens with other limiteds as well.

1 Like

Thank you for the report. We are looking into the issue and will circle back with an update

6 Likes

it does, but not at this level

1 Like

ok i just wanna give you guys a heads up that they’re starting to disguise their accounts with free bundles?



i really consider putting some sort of lock on inactive account from 2012< for trading / selling

Hey folks!

Apologies for the radio silence on our end regarding this, we’re still discussing internally on what’s the best approach to handling this situation.

It’s a bit more nuanced than just force-resetting accounts, or otherwise bricking them so bad actors can’t undercut & extract value out of these accounts, as the cost of a false positive here is extremely high (and we have data to support that these false positives do exist). There are other considerations as well such as:

  • Us historically not providing the best account recovery user experience (we’re working on that!)
  • Potential room for griefing in the inverse scenario
  • Team focus - as another user has already mentioned, the entry point for this issue is that account security isn’t a solved problem, the password-guessing / resale issue is just a side-effect of that.

Anyways, just wanted to let everyone know that we are looking at this, and we’re trying our best to frame this in a constructive way that makes sense across all of our priorities.

4 Likes

I’d like to believe it wouldn’t be hard to flag accounts that suddenly become active after years of doing absolutely nothing, then out of nowhere buy premium and try to sell off their limiteds. The whole thing is super obvious and based on patterns that are pretty easy to catch. Stuff like this should immediately throw up red flags, and your system should be able to step in, block further actions on the account, maybe even lock it due to suspicious behavior, and require some kind of verification.

Most of these accounts don’t even have a connected email or any real contact info, and the original owner has probably long lost hope of ever getting back in, or just has no way to do so. So locking down the account and forcing proper verification would honestly be one of the best moves you could make. It pretty much stops whatever the bad actor was trying to do right there.

Once the account’s secure, any potential damage or side effects are basically avoided too. I don’t even think the problem is them selling limiteds — that actually helps put more copies into circulation, which supports the trading economy in the long run. But for obvious account fraud or weird behavior showing up on super old accounts, I really doubt anyone would complain if some action was finally taken.