Earlier today, I got an email that my Plex account email was changed. Luckily, I was able to use the link in the email to revert the change. I’ve since changed my account password.
Probably not the best judgement, but I decided to write the email that my account was changed to just to see where it went. I wrote a pretty generic email explaining that my Plex account email was changed to their email and asked if they knew what could have caused it. I didn’t expect a reply, but they actually wrote back a few hours later:
"Sorry,
But what is pex?
Regards,
"
Wondering if anyone has heard of similar hacks with Plex? I would be interested in learning if this was indeed a hack or possibly a software bug that changed my email?
There was a hack of our forums in July of 2015 and we forced all users that had ever used the forum at that time to change their email. Then we switched to different forum software.
I doubt it was from the forums as I can’t think of ever using the forums before.
My Plex account was previously using a password that was used with other online accounts. I presume that password has been compromised via another site, but I haven’t been able to confirm.
I’ll probably never find out the exact details of how my Plex account email was changed, but nevertheless, I wanted to report this so that it could be added to any metrics that may help expose any patterns.