Edit Your Comment
Account Security?
Oct 31, 2021 at 20:09
Apr 20, 2021からメンバー
4 投稿
I'm still fairly new to FX trading and using/understanding the MT4 platform, but are there any security concerns with the short and generally insecure passwords used on demo and real trading accounts issued by myFXBook and the various brokers? I see most generate 7-8 character passwords with numbers and letters, no special characters.
I do appreciate that all MT4 - broker communication is encrypted over port-443.
Is there any risk to account passwords getting compromised, brute forced or are there some protections built into MT4?
example: https://www.ecl-labs.org/2013/11/13/metabreaking-metatrader.html (pdf here: https://www.ecl-labs.org/papers/metabreaking-mt4-v6.pdf)
Its from 2013, but I'm not sure how often MT4 updates & auto-patches their software and platforms, maybe these have been addressed?
On my demo and live accounts I have generally changed both the master and investor passwords to ~20 characters with complexity.
If you delete your investor password does that just disable read-only mode, or make it open / read-only for everyone?
Thoughts?
I do appreciate that all MT4 - broker communication is encrypted over port-443.
Is there any risk to account passwords getting compromised, brute forced or are there some protections built into MT4?
example: https://www.ecl-labs.org/2013/11/13/metabreaking-metatrader.html (pdf here: https://www.ecl-labs.org/papers/metabreaking-mt4-v6.pdf)
Its from 2013, but I'm not sure how often MT4 updates & auto-patches their software and platforms, maybe these have been addressed?
On my demo and live accounts I have generally changed both the master and investor passwords to ~20 characters with complexity.
If you delete your investor password does that just disable read-only mode, or make it open / read-only for everyone?
Thoughts?
Jul 23, 2020からメンバー
816 投稿
Jul 23, 2020からメンバー
696 投稿
Aug 05, 2021からメンバー
394 投稿
Dec 10, 2021 at 07:52
Apr 20, 2021からメンバー
4 投稿
Thanks for the updates. Seems MetaTrader has been updated a few times since this issue was published, hopefully the issues were resolved. I still change both account passwords as a best practice and don't rely on the default short passwords that most brokers provide. I haven't tried, but it a quick Google search states that modern computers can brute force an 8 character, complex password in about 8hrs. Also unsure if brokers store the passwords they generated when they created the account; they shouldn't as there is no real legitimate purpose, but you never know these days.

*商用利用やスパムは容認されていないので、アカウントが停止される可能性があります。
ヒント:画像/YouTubeのURLを投稿すると自動的に埋め込まれます!
ヒント:この討論に参加しているユーザー名をオートコンプリートするには、@記号を入力します。