How do I secure my exchange account?
In the world of digital assets, account security is always an important topic that every user needs to pay attention to. OKX provides a variety of security settings to help enhance your account security. Here are our recommendations for improving your account security:
1. How to Improve Account Security?
On the App homepage, tap the icon in the upper left corner, select your profile, enter the User Center, and choose Security Settings. In the advanced security settings, configure your security settings to enhance your account security level.
[Image]
1. Set a Strong Password to Enhance Security
A strong password is the first line of defense against unauthorized access. We recommend using a complex password that includes uppercase and lowercase letters, numbers, and special characters. Ensure your password is at least 8 characters long. Avoid reusing passwords across different accounts.
[Image]
2. Enable Two-Factor Authentication (2FA)
We recommend enabling the Two-Factor Authentication button in the advanced security settings and using your bound verification method to send a verification code to ensure secure login. If you have already bound an authenticator app, simply enter the code from the app to enable it with one click. We recommend binding an authenticator app to improve security. For details, refer to: How do I link an authenticator app (App/Web)
3. Use Passkeys
Passkeys are a new security verification method. By using Face ID or fingerprint, you can create a passkey to further enhance your account security. For instructions on setting up passkeys, please refer to: What are passkeys? How to create them? (App)
4. Set an Anti-Phishing Code
An anti-phishing code is a unique identifier for official OKX emails. You can set your anti-phishing code in "Personal Center - Security Settings - Anti-Phishing Code." Emails sent to you by OKX will include your set anti-phishing code. If you have doubts about the source of an email, please verify it through the official verification channel to confirm whether it is from an official email address, or consult customer support for confirmation. How to properly verify official channels?
[Image]
5. Device Management and Authorization Management
Regularly check your device login status in Security Settings - Device Management. If you notice any suspicious login activity or other abnormal activities that were not performed by you, promptly change your password or remove untrusted devices.
In Security Settings - Authorization Management, manage third-party applications that have been authorized to use your current account information. If you have any doubts about an authorization, remove the application's authorization.
6. App Lock Settings
Set up Face ID and gesture password. When logging in, OKX will use your chosen unlock method to verify your permissions, reducing the risk of fraudulent logins.
7. Ensure the Security of App and Plugin Installations
We recommend installing applications and browser plugins only from official channels and sources, such as the official website, Google Play Store, or Chrome Web Store. Be cautious of third-party applications and plugins from unknown sources to reduce security risks.
[Image]
2. What to Do If You Suspect Your Account Is at Risk?
1. Verify Through Official Channels
If you receive SMS, emails, or private messages claiming to be from official sources, always verify them immediately through the official channel to avoid being deceived by scammers impersonating OKX. For details on how to verify through official channels, please refer to: How to properly verify official channels?
2. Check for Abnormal Account Logins
If you notice suspicious behavior, you can promptly check suspicious login times, locations, devices, and IP addresses in Security Settings - Device Management to quickly identify and remove suspicious devices. At the same time, remove authorizations for unknown applications in Security Settings - Authorization Management.
3. Change Login Password or Freeze Account
If you discover abnormal logins or actions not performed by you, immediately change your login password in Security Settings, or promptly freeze your account in Security Settings - Account Management to prevent further asset loss.
[Image row: Account Security Enhancement Guide 002]
4. Contact Official Customer Support for Assistance
If you notice any suspicious activity, you can also immediately contact OKX official customer support to verify the situation and seek assistance.
3. Common Scam Techniques Used by Fraudsters
1. Implanting Malicious Browser Plugins
Fraudulent browser plugins may capture the data you enter and submit, including your account and password. If granted the necessary permissions, malicious plugins can directly access passwords saved in your browser, potentially stealing your account information, assets, and more. Always install trusted browser plugins from official sources.
2. Distributing Fraudulent Mobile Applications
Malicious mobile applications may also capture the passwords you enter. If third-party applications are granted the necessary permissions, they can even directly access data stored in your web browser, such as browsing history, bookmarks, and stored cookies. Once a malicious application is installed, scammers may directly access your account without requiring you to log in again. Therefore, always install trusted mobile applications from official channels.
3. Impersonating Official Staff, Publishing Phishing Websites and Links
Scammers often impersonate official platforms or staff to trick users into revealing their account details or logging into fake platforms. Always access your platform account through official channels or trusted applications, and avoid clicking on unknown links or downloading suspicious attachments.
Kind reminder: Be especially vigilant against scammers impersonating official staff on Telegram. Telegram verification badges are not reliable, as scammers can obtain verification badges using special emojis.
Please remember: Official staff will never proactively initiate a private chat with you, nor will they induce you to log in to your account or disclose account information.
[Image row: Account Security Enhancement Guide 003]
For more anti-phishing measures, please refer to: How to prevent phishing website scams? How can you protect yourself from a phishing attack?
We recommend following the above suggestions to enhance your account security level. OKX will work with you to safeguard your account security and reduce the risk of online threats and scams. Protect your digital assets by starting with improving your account security.