Once every week or so we here at CEA and the Helpdesk encounter a situation where someones account has been accessed by an intruder who has inflicted some sort of vandalism or locked out the owner completely.
In this article Ill try to explain some basic security concepts and various schemes that intruders will use in an attempt to take advantage of carelessness.
Most victims of unauthorized access see their gallery deleted, their journals wiped out and often their password and email information is changed in order to lock out the rightful user. Many times the invaded account is used to break policy and wreak havoc about the site until it is banned.
In almost every case the victim has unwittingly helped the invader gain access through carelessness and poor habits. In those cases where a stranger has gained access it is usually due to poor log out habits or being caught in a phishing scheme.
Cases involving access by strangers is rare though- it is far more likely that a roo