Authenticated account hacked*

#0 - Feb. 17, 2010, 8 p.m.
Blizzard Post
how does this happen?
I have had two friends hacked with authenticators linked to their accounts in the past month.
One is currently cleaning out our guild bank. It is kind of sad to watch.

Are authenticators compromised easily? Are they outdated?

also,
/sigh.
#8 - Feb. 17, 2010, 10:48 a.m.
Blizzard Post
Q u o t e:
how does this happen?
I have had two friends hacked with authenticators linked to their accounts in the past month.
One is currently cleaning out our guild bank. It is kind of sad to watch.

Are authenticators compromised easily? Are they outdated?

also,
/sigh.


This needs reported through normal channels so it can be looked into, Ennuii.

Also, don't just take a player's word they have added an authenticator. Looks like two have been into the the bank - neither account had an authenticator - or rather, one did, but it wasn't added by the player.

Many guilds are refusing any guild bank access at all unless a member can prove they have one - and even then, it's usually wise to limit a character to what they absolutely need to access.

Also remember, authenticators won't stop someone with nefarious intent if you allow them access. Make sure the folks you trust are trustworthy :)
#67 - Feb. 18, 2010, 11:37 a.m.
Blizzard Post
Zax,

I see two authenticators added and deleted from your posting account - both from malicious sources.

I see no authenticator on this account prior to that.

When exactly do you remember adding one prior to the one we put on the account for you?
#71 - Feb. 18, 2010, 11:59 a.m.
Blizzard Post
Q u o t e:
Was Soon after Blizzcon this year when the authenticator was obtained. I honestly dont know what else to do in this situation, any advice from someone that actually matters would be highly appreciated. And yesterday morning I called blizzard and walked through the steps with the appropriate people, and if anyone from Blizzard would be interested in going over this in some manner with me to verify then please by all means.


Zax,

I am seeing no authenticator on this account prior to the exploitative ones.