HabboDefense
Steps to Regain Your Online Safety After a Compromise
Writers: Player Safety Team
Graphics: BoomyJR & Meoli
Introduction: How to Deal with Account Compromisation (ChristianM.0498)
One of the worst feelings you can feel on the internet is when you realize one of your accounts has become compromised. You suddenly can’t log in to your account, and you feel your stomach have those unpleasant butterflies. Account compromises can occur all the way from your Habbo account to your banking account. Although this can be scary, there is a plan you can have and execute if this happens.
The focus of this article will cover the steps you can take to prevent yourself from being hacked or what to do if you encounter this unfortunate situation. Although it feels impossible at the time, there is a good chance to restore normality in most situations. Utilizing all the tools available to you to ensure you are the one behind the mouse when it comes to your accounts is key to online safety.
Preventative Steps not to get Hacked (S189)
It’s easy to get lost in worry, have the thought dwelling in your head, “I’m going to get hacked!”. The internet has become a vast and dangerous place – but in this section we are going to give you a few tips to stay ahead, to stay in control. If you follow these preventative measures, your information will safely remain in your hands – those out to get it will give up after the amount of hurdles and security measures we will inform you about here.
Let’s start simple, and then we will slowly work in a few more intermediate security measures. Passwords, we have done a section on this before – but passwords should always be diverse and made up from various numbers, symbols and should not be any generic phrase. It’s best to steer clear from names, places and things you like. If your dog’s name is Fluffy, your password shouldn’t be fluffy123! We strongly recommend using password generators or managers. This program will create a unique password for all of your log-ins, and secure them in a safe place – providing you with a master-password. Keep this password written down or somewhere safe!
Another method is to always have 2 step factor authentication enabled, on everything! This adds that extra layer of security to all of your platforms. Applications such as Authy, Google Authenticator – or your device usually has a native Authenticator – are all good programs. You will usually be instructed how to set this up and promoted to do so by any good website you use. If unsure, contact the player safety team!
- Next, having a good and working anti-virus enabled will make your online life much easier. Just plug, and play. These programs will scan every website security certificate, every file you download and every game you play – it will prompt you when it’s unsafe to proceed or any malicious files are dedicated – trust it! Good programs, such as Avast, Bitdefender and even Mcafee is still quite good and accessible to use. We also recommend using these programs alongside a good Virtual Private Network (VPN) to really make you that bit more protected when surfing, it just covers up your digital profile – giving you that piece of mind. VPNs are often built in to anti-virus these days, but great programs include: NordVPN, Express VPN or Proton.
A few more brief tips, to give you that internet-kevlar you’ve been longing for is just to keep your software updated. Keeping your software updated, updates your software and devices internal security measures. You should definitely just employ a simple extra thought to the websites you click, links you follow or files you download. If they seem strange they are strange. Nobody is trying to give you free Nitro or gift you in-game currency. It’s not happening.
If you employ all of the aforementioned tips, your computer will be like a digital Fort Knox with you and your personal information tucked behind its walls. The Player Safety Team is happy to help set up any of these measures, we are here to ensure and advise on your safety.

Changing Login Details Across Platforms (Ghello)
Even if you have taken the measures outlined above, it is important to be aware of some of the crucial steps to take if your account does get compromised. These steps will aim to protect your accounts and with that your Personally Identifiable Information (PII).
The first thing you will want to do when your account gets compromised is to change your password on the account that was compromised and any other account that uses the same password and/or email address. You will want to create a new and unique password that does not contain any personal information nor one that is easy to guess. There are two ways to do this: a traditional password or a passphrase.
For a traditional password you will want to create one of around 12-16 characters, that uses a combination of upper- and lowercase letters, numbers and characters. It is important to reiterate not to use any personal information such as birthdays, or information linked to your account such as a username, within the password. Do not fret if you have a hard time coming up with passwords, as password generators will help you with this. Furthermore, password managers will help you remember your unique password. For more detailed information on passwords, we highly recommend checking out our Account Security article on Passwords and Emails.
A second option is to use passphrases, which are known for being long and unpredictable. A passphrase should consist of random words and the use of spaces and punctuation will make it harder to guess. We do not recommend creating a well-written sentence though, as these can be more predictable.
Next, you will want to make sure your email address is secure. It is therefore important to change the password of the email attached to the account that was compromised. You will also want to ensure no emails were sent with the use of your account- as hackers will often attempt to target the contacts added on your account. If any email was sent, make sure to contact the recipient to make them aware not to engage with this email. After doing so, it is also important to check your forwarding rules. Often cyber criminals will set up a forwarding rule to be sent a copy of all emails you received. This will allow them to get access to your PII and possibly hack your account again.
By changing your login details across different platforms and checking your email account, you will not only be able to ensure only you have access to your account but you will also prevent the compromise from spreading to other accounts and people.
Getting Back to Normal (saltpocalypse)
So – Your account was compromised and you want to get back to normal. Not sure where to start? Take a deep breath. Don’t panic. The good news is that you can regain your online safety after a compromise.
The first thing you’ll want to do is employ the steps listed above for preventing a compromise. Lock down your accounts by changing to unique passwords/passphrases and diversify the emails you use across multiple websites. Review your account security settings and enable two-factor authentication (2FA) wherever possible. This step ensures that no further damage can be done once you’ve noticed a compromised account.
The second thing you will need to do is check if you can still log in to the account that has been compromised. If you find yourself locked out of an account, you may need to contact the platform’s support team directly to regain access. Many platforms have recovery options available, but you may need to provide proof of your identity and ownership of the account depending on the severity of the compromise. Be sure that you are contacting the official support teams, and are not sharing this info with anyone but their representatives.
The third thing you will need to do is find out if this is localized to one account or if any others have been affected. Most platforms allow you to check recent activity – this can tell you when and where the compromise happened, and how often. Check the platforms you use most often for any logins or actions that weren’t done by yourself. Disconnect your banking info from these platforms right away – until you are sure that they have not been compromised. Keep an eye on your bank statements for any suspicious transactions and be prepared to freeze your accounts if needed.
After this, you will need to assess your devices. There is always a chance that your device itself has been involved in the compromise. Your password or email could have been accessed through malware, viruses, or keyloggers. You should run a full system scan with a trusted anti-virus program and follow the recommended steps to remove it.
Finally, there are a few steps that people often forget. The first is to check your account’s security settings and personal settings to determine if an email or phone number has been added or changed – often, “hackers” can get back into accounts this way even if you change the password. The second is to make a back-up of any important data you have stored on these accounts and save it elsewhere, like on a flash drive or other external hard drive. Having a backup ensures that even if you lose access to an account permanently, you won’t lose critical information or documents.
Taking these steps will help you regain control of your accounts and protect yourself and your online security moving forwards. Be patient with this process and learn from this experience. From this point onwards, be vigilant about the links you click, the programs you run, and the information you share online.
Conclusion (Ghello)
Even though anyone is susceptible to an account compromise- there are ways to make your account a lot less likely to be compromised as outlined in this article. Taking these measures will make it harder for others to get in your account and will prevent the panic of finding out you lost access to your account.
If you do lose access to your account, the article has given you some crucial first steps to take to get back in your account and things to look out for once you do. Through this you make sure hackers are unable to regain access to your account and you ensure the security of all other accounts and ultimately protect your Personally Identifiable Information.
Taking the preventative measures outlined in the article will help you secure your account before- and if needed- after an account compromise.