Email for account was changed by hacker or someone else. What steps after changed password and enable 2fa

I just read an email I got a couple of days ago saying my email for my account was changed and I needed to change it back or lose my account basically. Other people in the forum have had the same thing happen, but no one I saw asked what I want to know. Also they changed the language into spanish so I actually had no idea what the email said until google translated it.

It was a really old password and was pretty simple but I changed it, turned on 2factor auth, and selected force logged out of all sessions checkbox.

So main question i am wondering about is what should I do to make sure they did not make any other changes to my account/server?

What I have already done is removed some pending users and I did not see any that were not the users I added. I looked through the settings and also removed a ton of old registered devices. My account does not have any other new subscriptions or charges.

Thank you in advance!

remove invites/users that you do not recognize
https://app.plex.tv/desktop/#!/settings/users-sharing

put a pin on your account

remove any devices you do not recognize https://app.plex.tv/desktop/#!/settings/devices/all

make sure you have a strong password and maybe change your password on your email account or other accounts that might have a similar password.

Don’t share with random people on the internet
Don’t accept shares from random people on the internet
Don’t share with “friends” who that can’t be trusted to not give out their password.

There isn’t anything else I can think of.

2 Likes

Don’t use Home or Managed Users outside your home.

Don’t “Link” other people’s devices to your account.

When sharing, have them create their own Plex.tv account and share with them that way.

1 Like

Thank you, I got that stuff covered. Just wanted to make sure there was not something special to do for Plex.

if you got 2 factor set up that is best.

make sure to download your recovery codes from account page and store them someplace safe.

1 Like

Another hint for better protection of your media files:

If you use Synology or other Linux based OS restrict the permission of user “plex” to “read only” (don’t allow read/write permissions). So even if hackers gain access to your Plex account and activate “allow media deletion” under “Settings>Library” they still can’t delete your media files. :slight_smile:

If you want to manage or delete files you can do it on the “file station”, a local SMB access or maybe a specific FTP account.

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.