Unlikely that this was an issue of session ID hijacking, but it remains to be seen.
The much more likely explanation here is that they entered credentials/other info into a shady website or resource related to the game and had their information stolen.
When a game is hyped like this, people are rushing to find anything that will help them get an edge and forget about the basics of security.
- Do not trust everything you see (addons, overlays, etc) or go linking your PoE account all over the place.
- NEVER reuse passwords, especially between game accounts, emails, and finance accounts (bank, retirement, etc).
this
or they were using some kind of third party app to help cheat and it stole their creds.
of course every single person who does that never did