• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 12:20
CEST 18:20
KST 01:20
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
[ASL21] Ro8 Preview Pt2: Progenitors0Code S Season 1 - RO12 Group A: Rogue, Percival, Solar, Zoun13[ASL21] Ro8 Preview Pt1: Inheritors16[ASL21] Ro16 Preview Pt2: All Star10Team Liquid Map Contest #22 - The Finalists22
Community News
RSL Revival: Season 5 - Qualifiers and Main Event9Code S Season 1 (2026) - RO12 Results02026 GSL Season 1 Qualifiers25Maestros of the Game 2 announced92026 GSL Tour plans announced15
StarCraft 2
General
Code S Season 1 - RO12 Group A: Rogue, Percival, Solar, Zoun Code S Season 1 (2026) - RO12 Results Team Liquid Map Contest #22 - The Finalists Blizzard Classic Cup @ BlizzCon 2026 - $100k prize pool MaNa leaves Team Liquid
Tourneys
RSL Revival: Season 5 - Qualifiers and Main Event GSL Code S Season 1 (2026) SC2 INu's Battles#15 <BO.9 2Matches> WardiTV Spring Cup SEL Masters #6 - Solar vs Classic (SC: Evo)
Strategy
Custom Maps
[D]RTS in all its shapes and glory <3 [A] Nemrods 1/4 players [M] (2) Frigid Storage
External Content
The PondCast: SC2 News & Results Mutation # 523 Firewall Mutation # 522 Flip My Base Mutation # 521 Memorable Boss
Brood War
General
BW General Discussion Why there arent any 256x256 pro maps? [ASL21] Ro8 Preview Pt2: Progenitors BGH Auto Balance -> http://bghmmr.eu/ ASL21 General Discussion
Tourneys
[Megathread] Daily Proleagues [ASL21] Ro8 Day 2 Escore Tournament StarCraft Season 2 [BSL22] RO16 Group Stage - 02 - 10 May
Strategy
Fighting Spirit mining rates Simple Questions, Simple Answers What's the deal with APM & what's its true value Any training maps people recommend?
Other Games
General Games
Stormgate/Frost Giant Megathread Dawn of War IV Nintendo Switch Thread Daigo vs Menard Best of 10 Diablo IV
Dota 2
The Story of Wings Gaming
League of Legends
G2 just beat GenG in First stand
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Deck construction bug Heroes of StarCraft mini-set
TL Mafia
Vanilla Mini Mafia Mafia Game Mode Feedback/Ideas TL Mafia Community Thread Five o'clock TL Mafia
Community
General
US Politics Mega-thread European Politico-economics QA Mega-thread Russo-Ukrainian War Thread 3D technology/software discussion Canadian Politics Mega-thread
Fan Clubs
The IdrA Fan Club
Media & Entertainment
[Manga] One Piece Anime Discussion Thread [Req][Books] Good Fantasy/SciFi books Movie Discussion!
Sports
2024 - 2026 Football Thread McBoner: A hockey love story Formula 1 Discussion
World Cup 2022
Tech Support
streaming software Strange computer issues (software) [G] How to Block Livestream Ads
TL Community
The Automated Ban List
Blogs
Movie Stars In Video Games: …
TrAiDoS
ramps on octagon
StaticNine
Broowar part 2
qwaykee
Funny Nicknames
LUCKY_NOOB
Customize Sidebar...

Website Feedback

Closed Threads



Active: 1051 users

Should we act to ensure more security?

Blogs > darkness
Post a Reply
Shield
Profile Blog Joined August 2009
Bulgaria4824 Posts
Last Edited: 2012-05-28 04:40:50
May 27 2012 23:06 GMT
#1
Okay, I just found out passwords on bnet aren't case sensitive. This means that it doesn't matter whether your password is coolguy or CooLGuY. Battle.net treats them the same. I think it's fair to say that most services require correct typing of passwords including upper and lower cases.

Do you think it's a good idea to demand case sensitive passwords? Should we let Blizzard know about our demand? If most of you answer "yes", can someone start a proper organised thread please in order to draw Blizzard's attention? I'm not good at writing smart, so I'm kinda useless.

Ok, there's a poll for you:

Poll: Case sensitive password?

Yes (15)
 
58%

I don't care (9)
 
35%

No (2)
 
8%

26 total votes

Your vote: Case sensitive password?

(Vote): Yes
(Vote): No
(Vote): I don't care



Update:
+ Show Spoiler +

I contacted Blizzard, and this is what I got as an answer:


Hello,

Sadly we in the GM team are not responsible for the overall account security, please keep this to the forums (you will find multiple posts on this already) however sadly even if passwords were case sensitive it would make very little difference to the amount of losses on accounts, case sensitive or not people are still getting keylogged, we are yet to come across a case of an account being brute forced.

Also blizzard passwords have been this way since the very beginning of WoW, even before.

However your concerns are noted as are the conserns of the community at large.

Regards

Korgalos
Blizzard Entertainment
Customer Services EN




***
Cokefreak
Profile Joined June 2011
Finland8095 Posts
May 27 2012 23:11 GMT
#2
What? PW's aren't case sensitive? Then why the fuck have I been doing upper and lowercase pw's...
hifriend
Profile Blog Joined June 2009
China7935 Posts
May 27 2012 23:11 GMT
#3
I'm mostly just pissed that for all these years, there was a much simpler way of typing my password. -_- Yeah that's completely ridiculous.
Gheed
Profile Blog Joined September 2010
United States972 Posts
May 27 2012 23:17 GMT
#4
They already offer you free authenticators. Your password could be "password" and it wouldn't matter if you used one.
EtherealDeath
Profile Blog Joined July 2007
United States8366 Posts
May 27 2012 23:22 GMT
#5
Lol wtf why would passwords not be case sensitive.
Vivax
Profile Blog Joined April 2011
22307 Posts
May 27 2012 23:43 GMT
#6
Didnt know about this either, but Blizzard has my phone number to verify identity, so w/e.

Still a pretty unnecessary risk, why the hell wouldn't you make them CS?
JerKy
Profile Blog Joined January 2011
Korea (South)3013 Posts
May 27 2012 23:53 GMT
#7
wow. had no idea. blizzard what are you doing... you're almost making this too easy
You can type "StarCraft" with just your left hand.
Micen
Profile Blog Joined October 2011
United States34 Posts
May 27 2012 23:53 GMT
#8
The reason why, is that even with Authenticators being out, Blizzard has admitted to a security hole in the system allowing a hacker to bypass that phase of login. There were tons of people exploiting it to hack Diablo 3 accounts day 1. I'm not sure if it carries over into SC2, but it could be assumed considering that they share Account Information. It just brings the security up to par with most other commercial sites.
Go then, There are other worlds then these.
Gheed
Profile Blog Joined September 2010
United States972 Posts
May 28 2012 00:12 GMT
#9
On May 28 2012 08:53 Micen wrote:
The reason why, is that even with Authenticators being out, Blizzard has admitted to a security hole in the system allowing a hacker to bypass that phase of login. There were tons of people exploiting it to hack Diablo 3 accounts day 1. I'm not sure if it carries over into SC2, but it could be assumed considering that they share Account Information. It just brings the security up to par with most other commercial sites.


http://eu.battle.net/d3/en/forum/topic/4309703662

In all of the individual Diablo III-related compromise cases we’ve investigated, none have occurred after a physical Battle.net Authenticator or Battle.net Mobile Authenticator app was attached to the player’s account, and we have yet to find any situation where a Diablo III player's account was accessed outside of “traditional” compromise methods (i.e. someone logging using an account's login email and password).
Aelonius
Profile Blog Joined October 2010
Netherlands432 Posts
May 28 2012 00:20 GMT
#10
Gheed:

Blizzard has confirmed that a work-around that allows hackers to gain access to games protected by its authenticator tool has been invented.

This is the first confirmed case of a compromised World of Warcraft account with an authenticator attached. The affected user alerted others to the issue on the official forums, which was responded to by a Blizzard rep, who confirmed that the case was genuine. Other players then reported similar experiences.

Blizzard poster Kropacius informed readers that the type of problem was a ‘Man In The Middle’ attack. According to information from various affected users, the hacker gains access to a player’s system through a keylogger, thought to be a file named emcor.dll, which can be found in C:/Documents and Settings/Users/[username]/Application Data/Temp. Once infected, the PC will cause WoW to crash, prompting players to log back into the game. This is when the authenticator code is intercepted by the hacker, who sends on a different code to Blizzard’s servers, preventing the legitimate user from gaining access to the game. In the mean time, the hacker does have access to the account until the code resets, and can proceed to steal any gold and/or possessions from your characters.

The code on an authenticator changes every 30 seconds or so, therefore hackers only have access to the account until they log out. In the case of the original user who reported the issue, he was blocked from attempting to access WoW for 15 minutes after inputting “incorrect” login details too many times. During that time, the keylogger file was detected and removed. Nothing was changed in the account management on the official WoW site, but when he gained access to WoW after the lock-out, several in-game items were gone; the hacker had presumably been logged out when the owner logged back in.

Blizzard has always maintained that the authenticator was never a 100% fool-proof method of keeping game accounts safe, and should be treated as an additional layer of protection. This latest development further highlights the need to be aware of keyloggers, and to keep anti-virus software up to date. However, neither of these prevented the afore-mentioned user from falling foul of the scum of the internet.


Source: http://diablo.incgamers.com/blog/comments/first-blizzard-authenticator-hack-confirmed


Ontopic:
I do not want to use an authenticator for various personal reasons, but I do feel that the password policy of Blizzard is lacking terribly. Why can't we use special characters for example?
''The nine most terrifying words in the English language are: 'I'm from the government and I'm here to help.''—Ronald Reagan
Gheed
Profile Blog Joined September 2010
United States972 Posts
May 28 2012 00:28 GMT
#11
I hadn't seen that. However, that method relies on a person having a keylogger on their computer, which would render a case-sensitive password useless anyway.
dangthatsright
Profile Joined July 2011
1160 Posts
May 28 2012 01:34 GMT
#12
Erm.

Oh wow that actually works.

As mentioned above, most more sophisticated methods probably make case-sensitivity useless as a security measure, but it's a very good thing to force to, idk, make it much less easily dumbass-able.
SKC
Profile Joined October 2010
Brazil18828 Posts
Last Edited: 2012-05-28 01:46:55
May 28 2012 01:39 GMT
#13
Is it time to link this XKCD comic?
[image loading]

Seriously though, it's what Gheed said. Hacked accounts are basically never brute forced, and hacked accounts with authenticators, something that hasn't happened in D3 so far it seems, only in WoW, are not only much more rare but also impossible to brute force. Adding case sensitive passwords would change nothing.

Micen's post is wrong, they admited in a WoW case, but still say it hasn't happened in D3. Definatelly not "a ton of people".
JeeJee
Profile Blog Joined July 2003
Canada5652 Posts
Last Edited: 2012-05-28 03:36:13
May 28 2012 03:28 GMT
#14
Does it actually matter? It's not like anybody can bruteforce a password even if they know its only restricted to a-z0-9, don't they kick you out after a few guesses? If you're getting hacked, your password being stronger wouldn't help you since presumably you either got keylogged or phished or something like that.

edit: here's another appropriate xkcd comic related to this
[image loading]
(\o/)  If you want it, you find a way. Otherwise you find excuses. No exceptions.
 /_\   aka Shinbi (requesting a name change since 27/05/09 ☺)
Shield
Profile Blog Joined August 2009
Bulgaria4824 Posts
Last Edited: 2012-05-28 04:42:15
May 28 2012 04:42 GMT
#15
Answer from Blizzard:


Hello,

Sadly we in the GM team are not responsible for the overall account security, please keep this to the forums (you will find multiple posts on this already) however sadly even if passwords were case sensitive it would make very little difference to the amount of losses on accounts, case sensitive or not people are still getting keylogged, we are yet to come across a case of an account being brute forced.

Also blizzard passwords have been this way since the very beginning of WoW, even before.

However your concerns are noted as are the conserns of the community at large.

Regards

Korgalos
Blizzard Entertainment
Customer Services EN

Please log in or register to reply.
Live Events Refresh
uThermal 2v2 Circuit
14:00
Season 2 - May 2026
RotterdaM793
uThermal489
mouzHeroMarine377
IndyStarCraft 218
SteadfastSC209
elazer79
LiquipediaDiscussion
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
RotterdaM 793
uThermal 489
mouzHeroMarine 377
IndyStarCraft 218
SteadfastSC 209
Railgan 119
elazer 79
StarCraft: Brood War
Britney 42964
Horang2 1918
EffOrt 1254
Shuttle 1176
ggaemo 601
Hyuk 297
Soma 288
firebathero 265
Rush 234
Leta 191
[ Show more ]
PianO 133
Dewaltoss 110
Sharp 93
actioN 73
Barracks 68
ToSsGirL 48
Pusan 45
Hm[arnc] 43
Sacsri 29
Rock 26
Terrorterran 18
GoRush 11
Shine 6
Dota 2
Gorgc4750
qojqva2950
monkeys_forever234
Fuzer 203
Heroes of the Storm
Khaldor437
Other Games
B2W.Neo1520
Liquid`RaSZi1162
Beastyqt1095
KnowMe202
FrodaN34
Organizations
Other Games
BasetradeTV624
Dota 2
PGL Dota 2 - Main Stream68
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
[ Show 14 non-featured ]
StarCraft 2
• Adnapsc2 8
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
Dota 2
• WagamamaTV580
League of Legends
• Jankos1987
Other Games
• Shiphtur287
Upcoming Events
BSL
2h 40m
IPSL
2h 40m
eOnzErG vs TBD
G5 vs Nesh
Patches Events
7h 40m
Replay Cast
16h 40m
Wardi Open
17h 40m
Afreeca Starleague
17h 40m
Jaedong vs Light
Monday Night Weeklies
23h 40m
Replay Cast
1d 7h
Sparkling Tuna Cup
1d 17h
Afreeca Starleague
1d 17h
Snow vs Flash
[ Show More ]
WardiTV Invitational
1d 18h
GSL
2 days
Classic vs Cure
Maru vs Rogue
GSL
3 days
SHIN vs Zoun
ByuN vs herO
OSC
3 days
OSC
3 days
Replay Cast
4 days
Escore
4 days
The PondCast
4 days
WardiTV Invitational
4 days
Replay Cast
5 days
CranKy Ducklings
5 days
RSL Revival
5 days
SHIN vs Bunny
ByuN vs Shameless
WardiTV Invitational
5 days
BSL
6 days
Replay Cast
6 days
Sparkling Tuna Cup
6 days
RSL Revival
6 days
Cure vs Zoun
Clem vs Lambo
WardiTV Invitational
6 days
Liquipedia Results

Completed

Proleague 2026-05-02
WardiTV TLMC #16
Nations Cup 2026

Ongoing

BSL Season 22
ASL Season 21
CSL 2026 SPRING (S20)
IPSL Spring 2026
KCM Race Survival 2026 Season 2
KK 2v2 League Season 1
Acropolis #4
SCTL 2026 Spring
RSL Revival: Season 5
2026 GSL S1
BLAST Rivals Spring 2026
IEM Rio 2026
PGL Bucharest 2026
Stake Ranked Episode 1
BLAST Open Spring 2026
ESL Pro League S23 Finals
ESL Pro League S23 Stage 1&2
PGL Cluj-Napoca 2026

Upcoming

Escore Tournament S2: W6
BSL 22 Non-Korean Championship
Escore Tournament S2: W7
Escore Tournament S2: W8
CSLAN 4
Kung Fu Cup 2026 Grand Finals
HSC XXIX
uThermal 2v2 2026 Main Event
Maestros of the Game 2
2026 GSL S2
Stake Ranked Episode 3
XSE Pro League 2026
IEM Cologne Major 2026
Stake Ranked Episode 2
CS Asia Championships 2026
IEM Atlanta 2026
Asian Champions League 2026
PGL Astana 2026
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2026 TLnet. All Rights Reserved.