How to Secure Your Accounts After an NCII Incident
Account security is a critical step after NCII discovery. Perpetrators who accessed your accounts must be locked out to prevent them from obtaining more content.
When NCII is discovered, especially if it may have been obtained through account compromise, immediate account security is a priority alongside understanding the issue. Perpetrators who accessed a victim's cloud storage, email, or social media accounts may continue to access new content if accounts are not secured. The priority steps are changing passwords, enabling two-factor authentication, reviewing account access logs, and revoking any third-party app access that may have been compromised.
Key facts about this term
-
Change passwords on all accounts immediately Start with email (recovery account), then social media, cloud storage, and any platform where intimate content may be stored.
-
Enable two-factor authentication on all accounts 2FA prevents password-only access. Use an authenticator app rather than SMS where possible.
-
Review account access logs and revoke suspicious access Google, Meta, Apple, and other major platforms show account access logs. Look for unfamiliar devices or locations.
Frequently asked questions
How do I know if my accounts were hacked to obtain intimate images?
Signs of account compromise include: login notifications from unfamiliar locations, missing files, unfamiliar authorized applications, and contact reports of receiving unusual messages from your account.
Should I change my email address after NCII?
Changing your email address is a significant step that may cause disruption. Securing your existing email account (new password, 2FA) is usually sufficient. A new email may be warranted if the current account has been deeply compromised.
Find and remove your photos now
Upload a photo. We scan 2.4 billion face embeddings and send legal removal notices in 48 hours.
Scan my face