Are XboxLive accounts hackable?
There have been rumours about this for quite some time, but it’s getting traction now. Here’s what a quick search resulted in this morning:
2006-09-09: Okay so I’ve had my xbox live account hacked several times, all I know is you need to be monitoring the incoming IP’s to get there IP then I have no clue.
2007-03-11: My game tag was stolen and $80+ was used to buy MS points. Also I am finding out that I am not the only one this has happened to…=(
2007-03-13 I power off my console to power it back on, and then to find out that it says that my acct was recovered onto another console. My Microsoft Points is now down to 310 from 1,000 something, and they purchased 500 more points on my card
2007-03-17 He blatantly says he can steal any account on your Xbox with just your IP address [youtube=http://www.youtube.com/watch?v=1QdG_xwkPH4]
2007-03-17 I just got off the phone with a Microsoft Tech for Xbox live that has confirmed this to me and they have stated that accounts are being stolen and that "Hackers have control of Xbox live and there is nothing we can do about it"
My best guess based on the above quotes would be that it requires the victim to be logged in, and that the hacker then performs an IP-spoofed account recovery request - but it would imply extremely bad security on Microsoft’s part. That would be … unheard of …