I've been hacked

#0 - July 6, 2010, 4:05 a.m.
Blizzard Post
I putchased a 60 day game card two months ago, and it expired on the 22nd of June. I then learned on the 5th of July that my account was still active and my characters being played. It couldnt possibly be me, Ive been away for weeks. When I tried to manage my account, I was asked for an Authenticator code.

I did some research and was told that somone may have hacked my account and used an authenticator to keep me out.

Using my password recovery I regained access, but I dont know what else I can do?

What should I do to regain control, rewrite any unauthorised actions done on my account, and prevent this from happening again?

Update : Even after regaining access to my account, i am asked to enter an authentication code upon the "Account Management" section, and I DONT have an authenticator. What do I do about that?
#4 - July 6, 2010, 6:21 a.m.
Blizzard Post
Q u o t e:
Granted, but right now its keeping me out of MY OWN account! If this is some devious back door marketing scheme I'm not amused.


That's gone now, you should be able to access the account with your lastest password, Gold.

As to a marketing scheme? No. We provide these at cost - and many of the mobile versions are free. We do this so our players can add an extra layer of protection to their accounts.

Did you find out how they obtained your password and ID? That's vital to preventing this recurring. If there is a way for them to get your new information, they WILL be back.

This sticky may be useful.
Account Hacked? Security Issue? Look Here!
http://forums.worldofwarcraft.com/thread.html?topicId=24702231244

You may also want to look into getting an authenticator for your account. It's no substitute for good security habits, but it will help keep them out of your WoW account.

Blizzard Store
http://us.blizzard.com/store/browse.xml?f=c:6

Mobile Authenticator
http://us.blizzard.com/support/article.xml?locale=en_US&articleId=26109
#6 - July 7, 2010, 12:24 p.m.
Blizzard Post
Q u o t e:
Okay. I have access to Management again, thank you very much, sorry for assuming the worst before.

On a further note, whoever was using my account used their own Credit Card, so how exactly should I go about this? Do I just simply cancel subscription, or do I have grounds to inspect this individual further?

I have no intention of playing anytime soon, not on their dime at least. It may feel icky to have had someones mitts all over my account, wouldn't seem right to play using their money.


That should cancel, but if it hasn't feel free. If it's still active, you may also want to drop a note to Billing as it's almost guaranteed to be a stolen credit card, and that could come back to haunt you later.