Blizzard Sued over Battle.net Authentication


Recommended Posts

Dumb. #1 It's optional and not mandatory.

It is mandatory. Blizzard security is not first class. In fact this is probably one of the less secure online service around.

I got my battle.net account hacked even if i was using a perfectly secure password 10 random digits (numbers and letters with a cap and a special) that was unique. I did not have any keyloggers on my system and did not fall for any scam or phishing. All the addons was clean addons millions of people use like dbm and i downloaded them using my 2nd PC. Never bought money i farm my own things. The PC was clean as it is also my work PC and i never use it to browse sites that are not offcial or forums (like neowin) or to check hotmail or gmail. This is my work PC and it is used to work only (check my work emails, browse msdn and such) and also play games since it is a good machine. I use my 2nd less powerful PC to browse the web and do not so much secure things. I'm 100% sure the breach came from Blizzard side.

I never got hacked ever. Not before not after. Hotmail never hacked. Gmail never hacked. Guild Wars 1 and 2 never hacked. Live never hacked. I think most people using battle.net without an auth got hacked at least once.

I will honestly not shed a tear for Activision Blizzard after faction change. They got greedy and i would call this karma. Well deserved class action lawsuit.

i was forced to use one by blizzard after my account was comprimised or they wouldnt reinstate my account, and hell it was thier fault my account was comprimised not mine

I can't wait to hear your explanation as to how its Blizzard's fault your account was compromised.

I never got hacked ever. Not before not after. Hotmail never hacked. Gmail never hacked. Guild Wars 1 and 2 never hacked. Live never hacked. I think most people using battle.net without an auth got hacked at least once.

Yeah, not even close.

Since Blizzard doesn't even make passwords case sensitive, it opens everyone's accounts up to being hacked rather easily. Doesn't take long for people to brute force a password, especially when you don't have to do capital letters anywhere.

Blizzard has posted time and time agian, if you don't have an Authenticator, you are compromising your account. That if you do get hacked, it will be harder to get anything back because you "Didn't take ALL the avenues to secure it."

Due to blizzard basically saying in the past that an Authenticator is needed to keep your account secure, they have opened themselves up for this.

Doesn't matter what you think, because the law doesn't work that way. There is merit to this suit, although in reality, it is stupid.

capitals doesn't necessarily make your password safer.

password_strength.png

Sure it does. It adds an extra layer of protection. You could have horseapplestaplebattery, or you could have HorseaPPlestaPLEbatterY, which would make it even more complex. It doesn't make sense to leave an option out that only helps strengthen something.

Not sure the lawsuit makes sense, unless the guy wants restitution for the $4 or so it costs to get the authenticator. For those almighty people here saying that the hacking is "Your fault!" not Blizzards, you may want to research the issue and see how many people with and without authenticators have been hacked. I myself was hacked, and had a very very good password for the account as well as an authenticator; now, before you say "well, it had to be your computer!", i give you some info about my pc and me. I am an IT manager who has worked for companies such as Symantec IT internal department, MessageLabs IT internal department and now a private Chemical plant, again internal IT deparment....so with all that in mind, i have made sure that my PC IS as secure and clean as possible, not only for a stupid game, but also to make sure information on my pc is not compromised.

I also ran wow clean, without addons etc, and any updates were all downloaded using the client....so when my account got hacked, i made sure to do before calling blizzard a full forensic analysis of my machine, including firewall logs, av scans, spyware scans, etc, etc, etc......what i found was that my computer was clean, and my account was hacked either directly from Blizzard or my isp had some issues with man in the middle attacks, and blizzards traffic encryption had or has been compromised (do not know which).

So, going back to the suit.....smart? maybe, depends what the person wants, if he wants restitution for the authenticator then sure, have blizzard refund his $4 or so...anything else is a joke, although having blizzard change some of their warnings or making them give out warnings when something does happen like getting hacked would be nice.

While many times it's the user's fault for being hacked, there are times when they truly did nothing wrong.

I have 2 WoW accounts for example, both with strong unique passwords not used anywhere else. My main one has an authenticator on it, and was never hacked. My old one however, despite not being in use anymore, didn't have an authenticator. 2 years of having not logged into that account, I receive an email that the account has been suspended. Not exactly sure what the hell they did to break into the account, as my password was strong, unique, and hadn't even been used for 2 years...

Same thing happened to a friend of mine with his Guild Wars account.

So yeah, I'm quite under the belief that if you don't have an authenticator, you will likely be hacked eventually. Doesn't matter if hasn't happened thus far, it's still possible, even if your account isn't in use.

---

Anyway, I'm definitely no fan of Blizzard these days. Still, I think this case is just straight baloney. :sleep2:

While many times it's the user's fault for being hacked, there are times when they truly did nothing wrong.

I have 2 WoW accounts for example, both with strong unique passwords not used anywhere else. My main one has an authenticator on it, and was never hacked. My old one however, despite not being in use anymore, didn't have an authenticator. 2 years of having not logged into that account, I receive an email that the account has been suspended. Not exactly sure what the hell they did to break into the account, as my password was strong, unique, and hadn't even been used for 2 years...

Same thing happened to a friend of mine with his Guild Wars account.

So yeah, I'm quite under the belief that if you don't have an authenticator, you will likely be hacked eventually. Doesn't matter if hasn't happened thus far, it's still possible, even if your account isn't in use.

---

Anyway, I'm definitely no fan of Blizzard these days. Still, I think this case is just straight baloney. :sleep2:

Are you sure those weren't phishing emails like the ones every gets regardless of if they even play the game?

Are you sure those weren't phishing emails like the ones every gets regardless of if they even play the game?

No, but I do get those as well. I never open them, and they're properly placed in the spam section of Gmail. I worked with Blizzard to have the account restored, simply for the fact that it was my account and I didn't want anyone using it for whatever malicious purposes. Also slapped the iOS authenticator on it for (free) added safety.

Sure it does. It adds an extra layer of protection. You could have horseapplestaplebattery, or you could have HorseaPPlestaPLEbatterY, which would make it even more complex. It doesn't make sense to leave an option out that only helps strengthen something.

But it only makes it more complex to remember.

Are you sure those weren't phishing emails like the ones every gets regardless of if they even play the game?

I know in my case it wasn't. I know which ones are real/fake but even then, for ANY link dealing with accounts, I always check to see if the link is actually valid. I've never had anything hacked before.

This is pretty common with WoW. Lots of people I've known that practice good computer security stopped playing WoW and then had their accounts hacked (they didn't have authenticators). Authenticators are pretty much a requirement now or you're guaranteed to get hacked...

Not by much. And the added security can only help.

Not really, there's a level where security peaks and there's not really a point in adding further security anyway, and it does make it significantly harder to remember when random stuff in the password is upper cased.

Personally my password isn't technically nearly as complex as the base password there. but in reality it's more secure and shorter and doesn't rely on any special cases, and I don't get hacked.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • US citizens are paying to their government, who could use that to fund healthcare and tuition and relieve the costs of these for citizens instead of making tax breaks that overwhelmingly favor the rich. I'm not saying that tariffs are the correct solution, but what else would they be used for? What else could Trump have in mind for wanting them, if he hasn't figured out that labor costs are higher in the US?
    • I’m in need of a new chair and it sounds like the backrest cannot be locked? I also sat on a Herman miller and was devastated that it couldn’t be locked also, what is going on with chairs. I want to be able to lock the backrest into any position but not even the Herman’s do that
    • Sihoo Doro C300 Pro V2 Ergonomic Office Chair review: The Ikea of chairs by Steven Parker I've reviewed a few gaming chairs over the past three years or so and generally found them to score well in our reviews. SIHOO reached out asking if I was interested in taking a look at their flagship chair, the Doro C300 Pro V2. I never got the chance to check out its predecessor, but the V2 is described as an "Adaptive Ergonomic Chair." It became available to buy in April of this year. Let's get things rolling with a closer look at the specifications and features. Specifications Doro C300 Pro V2 Model Ergonomic Materials Mesh Back and Seat; Soft PU Coated Armrests Height adjustability 45.5 - 53 cm / 17.5" - 20.9" Seat (w+d) 52 x 43 - 47 cm / 20.5" x 16.9" - 18.5" (adjustable) Backrest 52 – 60 cm / 20.5" - 23.6" (adjustable) Lumbar support Mesh built-in (adjustable) Armrest adjustability 8D Bionic Armrests Rocking angle 105°, 120°, 135° (fixed) Neck support Mesh built-in (adjustable) Net weight 27.3 kg / 59.64 lbs Weight support 150 kg / 330 lbs Colors Black, White Warranty 5 years (upon registering) Price $499.99, $539.99 Introduction At first glance, it looks like a chair that in another life wants to be a Herman Miller; It certainly looks like my Aeron Remastered, but the Doro C300 Pro V2 has quite a few more features and costs quite a bit less. SIHOO says that it is made up of a "DynaCore" system that tracks your movement and synchronizes the headrest, backrest, lumbar support, and armrests as you shift, twist, or recline. They also say that the "SyncroFlex Backrest" molds to your spine, which kind of describes how the mesh fabric works in most ergonomic chairs, but anyway. Below are the meat and potatoes measurements for the chair. Here is the same tech sheet, but in inches. Durability I would be remiss to not talk about the various durability testing this chair underwent before coming to market, as this is claimed on the product page. First of all, the chair is BIFMA-, SGS-, and TÜV-certified. As for durability, the tests undergone were: 100,000 Castor cycles tested 120,000 Armrest cycles tested 120,000 Recline cycles tested 120,000 Gas lift cycles tested 60,000 Armrest durability cycles tested 120,000 Rotation cycles tested Nothing about weights testing, though. Now that's all disclosed, now onto my own personal findings. Assembly The Doro C300 Pro V2 came in two large boxes (1) (2), and everything was packed very well, protecting the different parts of the chair. In the box, there is a folded sheet that explains the 12 steps to assemble it; they are: Remove the bottom cover on the aluminum base; Insert the five legs into the aluminum base and use ten screws to fasten them; Insert the castors into the legs; Replace the bottom cover on the bottom of the aluminum base; Place the Class 4 Hydraulics gas cylinder into the aluminum base; Screw the bottom part of the arm rests, taking care of the orientation using two screws on each side; Use three torx screws to fasten the footrest to the bottom of the seat; Fasten the backrest to the seat using four torx bolts; Fasten the armrests to the backrest using four Torx bolts (two on each side), taking care to note the orientation; Place the chair onto the Class 4 Hydraulics gas cylinder; Insert the headrest into the top of the backrest; Use two torx screws to fasten the headrest to the backrest. There's also an online guide you can refer to. Carefully unpacking the two boxes took around 15 minutes because almost everything is wrapped in plastic and protective foam; the chair assembly itself took around an hour. I say in the above assembly steps to take note of the orientation, because it's not obvious which way around the bottom portion of the armrests go, and although there is an L and R on the bottom of the armrests, it also wasn't clear from the instructions which was actually left or right, facing the chair, or in the seated down orientation? Anyway, I ended up putting the bottom portions on the wrong sides, and after securing one of the armrests, I discovered that although it was on the correct side, the armrest base could rotate a full 360°, but not when bolted to the chair, so I had to remove it, rotate it, and then bolt it back on. Truly an Ikea experience! Also, to complicate things further, although all the parts are labeled from A to X (yes, that's 24 parts) unhelpfully, these letters do not appear on the parts themselves or the package with the bolts, screws, and washers. There's also a pair of protective gloves in the box, but I think they were made for much smaller hands than I have. Even my friend, who is 5.1, had difficulty putting them on. Once assembled, I needed to sit down. Anyway, as I said, it looks quite similar to my Herman Miller. And here is the back of it. If you look at the product page and on Amazon, it seems like a lot of thought has gone into the chair itself and what it's capable of, but there is no mention at all about the castors, and this is an area where I think the chair trips up quite quickly. I found it difficult to move the chair in any direction. I asked a friend who came to visit me earlier this week to test my findings, and she said that the wheels were "no good," so it definitely isn't just me. I am 6'2 myself and a big guy, I work from home and gained a few pounds from mostly staying in and the hell away from other people. However, the Doro C300 Pro V2 is rated for up to 150kg (330lbs), which in my case is used well within its max rating. Ergonomics The number of adjustments you can make, right up to setting it in nap mode — which I haven't fully tested yet — is what you'd expect from a premium chair. Yes, you can go up and down (max 7.5 cm adjustment), rock back and forth (with tilt adjustment), and lock the chair between three stages of 105°, 120°, 135°, which is not quite as flat as the AndaSeat I tested at 160°. Some thought has also gone into the "8D" armrests, too, which are cushioned but quite firm; you'll only know it if you press hard into the PU-covered tops, which give about half a centimeter, but it's enough to ensure your skin won't get awkwardly stuck to it in warmer (or sweatier) conditions. It almost feels like plastic and is very easy to keep clean. However, the armrest positions move far too easily, and I am not sure what that "elbow" function is. Maybe it is good for a short person with short arms, anyway, I never used it and kept it flat at all times. There are eight levels of adjustment for the armrests, they are: backwards, forwards, swing left/right, height up and down, tilt, and 360° rotation, which can be handy for desk clearance. As I said, the armrest pads shift far too easily, which could give off an ergonomic vibe, but who wants the armrest sliding when you are shifting weight? The height adjustability does lock into place when lifting and adjusting. Comfort This is ultimately what it boils down to at the end of the day, right? Quite a lot of reviews praise the comfort of this chair, and I don't disagree that the mesh seating is quite comfortable. I am used to the material from my daily Herman Miller. However, the backrest cannot be locked into place, and this is actually a feature; as you shift or recline yourself on the chair, the backrest moves with your body. It took some getting used to. The lumbar gives ample support, but I would have preferred an adjustable one built into the seat base, as this causes the backrest to move up and down at will. Again, as with my previous chair review, this chair is also rated for tall people, but nowhere in the product documentation does it say how tall. Being 6'2 myself, I'm happy to say that the backrest is tall and wide enough, and thought has been given to being able to adjust the neck rest, but as others have mentioned in their reviews, people as tall as 6.2ft is about the limit for the neckrest. Conclusion What I didn't like The footrest is rated for 15kg (33 lbs), which to me seems a bit light, and after looking online, it seems like a chair footrest for adults must be at least twice that rating. In all honesty, they are just hollow metal tubes, so it is not recommended to let a kid sit on them. I also feel like it doesn't really go out far enough for my height, so that kind of puts the dampener on me being able to use it regularly. I'll just have to continue to use my subwoofer as a footrest! I do not like the armrests being able to shift around as easily as they can, and they are a little too forward-positioned in the chair to comfortably sit close to my desk, because even in the lowest height position, they don't allow me to go under the desk like is possible with my Herman Miller. I also feel like this chair could have been delivered partially constructed, especially the armrests on the seat, and why the aluminum base wasn't already pre-constructed (without the castors) is baffling, considering it would have fit in one of the two boxes that way. The instructions also need to be clearer. On the pamphlet, there's an A to X listing (which is also used in the steps), but none of the physical parts use this lettering system! What I did like I'll be honest, I haven't used it for very long, just one week, and seating comfort is subjective after all! Any spills wiped straight off it, the stitching, and the lines look great, not a fray to be seen or stitch out of place. It looks kind of cool, too. My favorite feature of these seats is the nap mode. While you're not lying completely flat, it leans far back enough to make you easily doze off after a heavy gaming or working session. Overall, this chair offers plenty of comfort features. The MSRP does vary quite a bit depending on the region, at £549.99 in the UK, and €580 in Europe, and $599 before tax in the U.S. However, shipping is free, which is a bonus for such a heavy item. Is it worth it, though? At three years' warranty, I think it's a decent deal. Another firm out of Germany sent me a free replacement hydraulic gas spring for a chair that failed after almost four years, so it was well outside its two-year warranty. My advice is to always try, as you might have the same luck I did. If I could fault it at all, it would be the constant shifting of the armrests and backrest. Where to buy Although the footrest variant normally costs $539.99, it has been discounted to $469.99 on the official website in Black or White. In fact, the non-footrest variant is only $40 cheaper. On Amazon, it currently costs more at $499.99 links below. Sihoo Doro C300 Pro V2 for $469.99 (official website) Sihoo Doro C300 Pro V2 for $499.99 at Amazon US SIHOO provided a free sample without any review or pre-approval. Good to know This Amazon link is U.S. specific, and not available in other regions unless specified. We only use first-party seller links (at the time of article publishing); ensure that you purchase from a first-party seller link only. Check out Today's Deals on Amazon | or our recent tech deals. Become a Prime member (for Students or SNAP) via Neowin Get Prime Access - Prime for half price (for qualifying Medicaid, EBT, SNAP) Subscribe to Prime Video, Audible Plus, Music Unlimited or Kindle Unlimited via Neowin As an Amazon Associate, we earn from qualifying purchases.
    • Making US citizens pay is a prominent tool? Joke of the week…
  • Recent Achievements

    • Conversation Starter
      jessse3334 earned a badge
      Conversation Starter
    • Reacting Well
      JuvenileDelinquent earned a badge
      Reacting Well
    • One Month Later
      Excellence2025 earned a badge
      One Month Later
    • Week One Done
      Excellence2025 earned a badge
      Week One Done
    • Week One Done
      flexorcist earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      506
    2. 2
      +Edouard
      207
    3. 3
      PsYcHoKiLLa
      151
    4. 4
      Steven P.
      73
    5. 5
      macoman
      62
  • Tell a friend

    Love Neowin? Tell a friend!