If you believe your NexCloud account has been accessed by someone else, act immediately to secure your account and prevent further unauthorized access.
Change Your Password
If you can still access your account- Go to your Account Settings.
- Change your account password immediately.
- Use a new, unique password that you have not used anywhere else.
- Do not share your new password with anyone.
Enable Two-Factor Authentication
After changing your password, enable Two-Factor Authentication (2FA) on your account. 2FA provides an additional layer of protection even if your password is compromised.Check Your Account Activity
Review your account for anything you do not recognize, including- Changes to server configurations
- Unknown users or subusers
- Unrecognized API credentials
- Unexpected billing or account activity
- Changed email address or account information
Secure Your Servers
If the compromised account has access to active servers- Change important server credentials.
- Review server users and permissions.
- Check for unfamiliar files or modifications.
- Review startup commands and environment variables.
- Rotate API keys or credentials that may have been exposed.
- Review recent server activity and console logs.
Contact NexCloud Support
If you believe someone has gained unauthorized access to your NexCloud account, contact NexCloud Support as soon as possible. Include- Your account email address
- When you first noticed the issue
- What unauthorized activity you observed
- Any suspicious servers, users, or changes
- Screenshots or other relevant information
