We've recently had some users who have had their accounts stolen, so it was of utmost importance to get account recovery tools working as soon as possible.
I spent a good part of the afternoon fixing the account recovery tools and I decided to post an update as well as a tutorial. I have included instructions for changing your recovery account as well as instruction for recovering an account in the event that it gets stolen.
If you scroll down to the recovery instructions, there is a section of steps to complete for the owner of the account to recover, and a section with steps to complete for the owner of the recovery account.
Recovery Tools Website
The recovery tools website can be found at https://recovery.blurtwallet.com.
If you're interested to see what we changed to make it work for Blurt, you can have a look here
What is Account Recovery?
If your Blurt account gets stolen due to hacking or phishing, account recovery is a way to get back control of your account.
Each Blurt account can list one other account as its recovery account, and that account will be the one to help recover your account in the event that it gets stolen.
I strongly suggest that each Blurt user changes his or her recovery account to someone they can trust.
If your account gets stolen, and you do not have a recovery account or your recovery account is set to someone who can't help you with recovery, you will have to contact the number 1 witness (@zahidsun at the time of writing this post).
Changing Your Recovery Account
Go to the account recovery tools website and click on the box titled "Change Recovery Account".
Enter your account name, the name of your new recovery account, and your master password.
It will take 30 days before the change takes effect.
Recovering a Stolen Account
There are two people involved in this process: the owner of the account that needs to be recovered, and the owner of the recovery account or the top witness.
For The Account to be Recovered
First, go to the account recovery website and click on the box titled "Recover Account".
You will now generate a new password and a new public owner key.
The text field for the new password will already be populated with a randomly generated password.
Enter your username in the box, then click on "Get Owner Key".
The new owner key will appear in the lower text field.
Copy both the new password and the new public owner key and save them somewhere safe.
Send the newly generated public owner key to the person who will do the account recovery request (either the owner of your recovery account or the top witness).
Scroll down further on the same webpage where you generated your new password and public owner key.
You have to wait until your trustee has broadcasted a
request_account_recovery operation before continuing with this last step.
Enter your account where it says, "Account To Recover".
Enter your new password that you generated in step 1 and your old password that you had before your account got stolen.
Then click on, "Recover Account".
You account will then be recovered and updated with new keys based on the new password.
For the Trustee (Owner of the Recovery Account or #1 Witness)
You only have one step to perform once you get the new public owner key from the owner of the account to be recovered.
Go to the recovery tools website, and click on the box titled "Request Recovery".
Enter the name of the account to recover and the new public owner key that the owner of the account to recover has sent you.
Enter your account in the Trustee Account field and your private active key.
Then click on "Submit Recovery Request".
Once the transaction has been successfully broadcasted, you can let the other person know that they can now proceed to the last step of the recovery process.
That's All, Folks!
That's it for this one.
Until next time, I hope you all have a great one!
Vote for my witness!
I run a witness node on the Blurt blockchain and I would really appreciate your witness vote.
You can vote for my witness by going here.