Saturday, March 6, 2010

Password Security

This afternoon, I received an email from Wizard101 titled Wizard101 Forgot Password Notification.

You have requested a new password. To log into Wizard101.com the website or Wizard101 the game, you must first follow the instructions below:

1. Write down or copy this temporary password: XXXXX
2. Go to the Wizard101 website in your Internet browser: www.Wizard101.com
3. Enter your Username
4. Enter the temporary password (XXXXX) in the password field
5. Click Login
6. Create a NEW password you will remember
7. Click Submit
8. Now you can use your existing Username and NEW Password to log into the Wizard101 game and Wizard101.com the website!!

NOTE: The temporary password will only be valid for 12 hours. Temporary passwords do not work on the game login, only on www.wizard101.com.

(If you did not request a new password, please ignore this message and login with your existing password. The temporary password will be discarded.)

Thank you,

Merle Ambrose
Headmaster, Ravenwood School of Magical Arts
It But I never requested to reset my password.

It could have been an honest mistake from someone trying to reset his or her password. But it could also be an attempt to steal my account. I just thought I would tell you in case it happens to you too.

Just to be on the safe side, I changed my password on both my Wizard101 account and my email account.

Here is what a good password is: It has to be at least 8 characters. It must not be a word in any language. It should include letters, numbers and other characters like !"/$%?&*(). A good idea is to use two words that don't belong together and add numbers and other characters.

Better be safe than sorry!

See you in the spiral!! PLOX