When NCII is discovered, especially if it may have been obtained through account compromise, immediate account security is a priority alongside understanding the issue. Perpetrators who accessed a victim's cloud storage, email, or social media accounts may continue to access new content if accounts are not secured. The priority steps are changing passwords, enabling two-factor authentication, reviewing account access logs, and revoking any third-party app access that may have been compromised.

Key facts about this term

  1. Change passwords on all accounts immediately Start with email (recovery account), then social media, cloud storage, and any platform where intimate content may be stored.
  2. Enable two-factor authentication on all accounts 2FA prevents password-only access. Use an authenticator app rather than SMS where possible.
  3. Review account access logs and revoke suspicious access Google, Meta, Apple, and other major platforms show account access logs. Look for unfamiliar devices or locations.

Frequently asked questions

How do I know if my accounts were hacked to obtain intimate images?

Signs of account compromise include: login notifications from unfamiliar locations, missing files, unfamiliar authorized applications, and contact reports of receiving unusual messages from your account.

Should I change my email address after NCII?

Changing your email address is a significant step that may cause disruption. Securing your existing email account (new password, 2FA) is usually sufficient. A new email may be warranted if the current account has been deeply compromised.