Fraudulent password reset
-
There was a recent hack attack on my WordPress account. Someone had requested a password reset for my account on 1/17/2019 at approximately 10:30 AM MST. Can someone tell me the IP address that generated that password reset request? Thankfully, I was able to request another password request after being alerted by WordPress and have now secured my account, but I would like to find out who initially tried to access my account or at least from where they tried to access my account. Can someone help me with this?
The blog I need help with is: (visible only to logged in users)
-
Hi there,
Of which site/account are you speaking? There has been no password reset requests for the
oceanakaccount you’re using to post here, and there also hasn’t been any password changes for this account.From what I can see this account hasn’t been active for over three years until you logged in yesterday right before creating this forum thread. The site at https://burningmidnite.wordpress.com/ contains only a single post, published in 2015.
A password reset request would only be an effective way to hack your WordPress.com account, if the person making the request also had access to your email address. That said, please do make sure to update your password regularly, and enable two-factor authentication (which you don’t currently have active on this account) for both your WordPress.com and email accounts.
We do not disclose IP address information for any actions taken on an account, but in this case there aren’t even any IP logged, as there hasn’t been any activity on this account.
- The topic ‘Fraudulent password reset’ is closed to new replies.