• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 14:47
CEST 20:47
KST 03:47
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
Maestros of the Game: Live Finals Preview (RO4)0TL.net Map Contest #21 - Finalists4Team TLMC #5: Vote to Decide Ladder Maps!0[ASL20] Ro8 Preview Pt1: Mile High15Team TLMC #5 - Finalists & Open Tournaments2
Community News
herO joins T119Artosis vs Ret Showmatch27Classic wins RSL Revival Season 22Weekly Cups (Sept 15-21): herO Goes For Four2SC2 5.0.15 PTR Patch Notes + Sept 22nd update290
StarCraft 2
General
Storm change is a essentially a strict buff on PTR herO joins T1 Maestros of the Game: Live Finals Preview (RO4) SC2 5.0.15 PTR Patch Notes + Sept 22nd update SHIN's Feedback to Current PTR (9/24/2025)
Tourneys
SC2's Safe House 2 - October 18 & 19 Maestros of The Game—$20k event w/ live finals in Paris Master Swan Open (Global Bronze-Master 2) Sparkling Tuna Cup - Weekly Open Tournament Prome's Evo #1 - Solar vs Classic (SC: Evo)
Strategy
Custom Maps
External Content
Mutation # 492 Get Out More Mutation # 491 Night Drive Mutation # 490 Masters of Midnight Mutation # 489 Bannable Offense
Brood War
General
ASL20 General Discussion Artosis vs Ret Showmatch StarCraft 1 Beta Test (Video) BGH Auto Balance -> http://bghmmr.eu/ Whose hotkey signature is this?
Tourneys
[ASL20] Ro8 Day 1 [ASL20] Ro8 Day 2 [Megathread] Daily Proleagues Small VOD Thread 2.0
Strategy
Simple Questions, Simple Answers Muta micro map competition
Other Games
General Games
Nintendo Switch Thread The XBox Thread Path of Exile Stormgate/Frost Giant Megathread Beyond All Reason
Dota 2
Official 'what is Dota anymore' discussion LiquidDota to reintegrate into TL.net
League of Legends
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Deck construction bug Heroes of StarCraft mini-set
TL Mafia
TL Mafia Community Thread
Community
General
US Politics Mega-thread Russo-Ukrainian War Thread Things Aren’t Peaceful in Palestine The Big Programming Thread Trading/Investing Thread
Fan Clubs
The herO Fan Club! The Happy Fan Club!
Media & Entertainment
Anime Discussion Thread Movie Discussion! [Manga] One Piece
Sports
2024 - 2026 Football Thread Formula 1 Discussion TeamLiquid Health and Fitness Initiative For 2023 MLB/Baseball 2023
World Cup 2022
Tech Support
SC2 Client Relocalization [Change SC2 Language] Linksys AE2500 USB WIFI keeps disconnecting Computer Build, Upgrade & Buying Resource Thread
TL Community
BarCraft in Tokyo Japan for ASL Season5 Final The Automated Ban List
Blogs
TL Chill? More like Zero Ch…
Peanutsc
Try to reverse getting fired …
Garnet
[ASL20] Players bad at pi…
pullarius1
Customize Sidebar...

Website Feedback

Closed Threads



Active: 1373 users

Capitalization on Blizzard Passwords - Page 2

Forum Index > SC2 General
Post a Reply
Prev 1 2 3 4 5 6 Next All
ZerGuy
Profile Joined June 2008
Poland204 Posts
July 19 2011 17:12 GMT
#21
It's not a major flaw, it's harder to make it ignore the casing. Really. It's one command more. They do it on purpose.
Someday ill be pro
Lysergic
Profile Joined December 2010
United States355 Posts
July 19 2011 17:12 GMT
#22
I'm honestly not surprised, considering all the flaws bnet 2.0 has. There's just so many simple little things with easy fixes that most programmers would consider bad programming found in the user interface and functionality of bnet.
bakesale
Profile Blog Joined August 2008
United States187 Posts
July 19 2011 17:13 GMT
#23
On July 20 2011 02:04 busbarn wrote:
Well, if someone gets your password say through a keylogger which is the most common. It doesn't really matter anyway. I have a hard time seeing how making it read upper and lower cases different makes a difference in security. It's still symbols. Maybe someone can explain it too me,

It only makes a difference if someone is trying to crack your password by guessing (dictionary attack). Having case-sensitive passwords adds 26 more symbols, increasing the number of possible "words" to choose from when guessing. So, technically, it is harder to crack a password in a system that distinguishes upper and lower case.
Dulkan
Profile Joined July 2011
Germany24 Posts
July 19 2011 17:16 GMT
#24
have to agree that this really isn't a big deal. Nobody will try to brute force crack your password for a battle.net account. Virtually all "hacks" of blizz-accounts are done via a keylogger and in that case it doesn't matter whether your password is 12345 or a 50-character monstrosity of lower case, upper case, numbers and special characters.
Carush
Profile Joined June 2011
United States356 Posts
Last Edited: 2011-07-19 17:20:28
July 19 2011 17:20 GMT
#25
also, what's with all the bnet hate threads this week

whether it's indirect or direct i feel like I've seen WAY to many of these last few days
Badfatpanda
Profile Blog Joined December 2010
United States9719 Posts
July 19 2011 17:21 GMT
#26
On July 20 2011 02:20 Carush wrote:
also, what's with all the bnet hate threads this week

whether it's indirect or direct i feel like I've seen WAY to many of these last few days


Where did I say I hated bnet? I don't even think this is that big of a deal but I thought people should know...go to one of the "this is why bnet sucks, this is how I could do it better" threads and post there.
Music is a higher revelation than all wisdom and philosophy. -Beethoven | Mech isn't a build, it's a way of life. -MajOr | Charlie.Sheen: "What is sarcastic, kids who have no courage to fight?" | #TerranPride #yolo #swag -Naama after 2-0'ing MC at HSC VI
TheOnlyOne
Profile Joined August 2010
Germany155 Posts
July 19 2011 17:25 GMT
#27
On July 20 2011 02:12 ApBuLLet wrote:
I don't really think this is as big of a deal as people are making it out to be. People tend to panic a bit when they feel like they or their property is at risk, and rightfully so. However, the vast majority of the time people get their accounts stolen is due to some sort of keylogging malware, in which case the a case sensitive password system would not matter, because your hacker would know anyway. The only thing I can see it being good for is if somebody is trying to guess your password or something like that. Case sensitive passwords make that a million times harder I would imagine, as you'd have to guess the password and the patter of lowercase/uppercase.

So overall, yes I think it is bad and there is no reason not to have case sensitive passwords for that little bit of extra security, but in reality I don't really think it is that big of a deal. I'm not going to worry about it personally


I think implementing a "feature" for case recognition is done super quick, its no work.

It is a good thing and "should" be in games anyway, so Blizzard should just do it and everyone is happy.


So no matter what, if the features is done so quick, just do it, nothing to lose.
aksfjh
Profile Joined November 2010
United States4853 Posts
July 19 2011 17:27 GMT
#28
On July 20 2011 02:21 Badfatpanda wrote:
Show nested quote +
On July 20 2011 02:20 Carush wrote:
also, what's with all the bnet hate threads this week

whether it's indirect or direct i feel like I've seen WAY to many of these last few days


Where did I say I hated bnet? I don't even think this is that big of a deal but I thought people should know...go to one of the "this is why bnet sucks, this is how I could do it better" threads and post there.


Post was possibly inspired by lysergic. Not sure why he decided to come in here to tell us how much he hates bnet. I found this bit of info out months ago, but I'm glad you posted about it.
Tofugrinder
Profile Joined September 2010
Austria899 Posts
July 19 2011 17:28 GMT
#29
On July 20 2011 02:12 ApBuLLet wrote:
I don't really think this is as big of a deal as people are making it out to be. People tend to panic a bit when they feel like they or their property is at risk, and rightfully so. However, the vast majority of the time people get their accounts stolen is due to some sort of keylogging malware, in which case the a case sensitive password system would not matter, because your hacker would know anyway. The only thing I can see it being good for is if somebody is trying to guess your password or something like that. Case sensitive passwords make that a million times harder I would imagine, as you'd have to guess the password and the patter of lowercase/uppercase.

So overall, yes I think it is bad and there is no reason not to have case sensitive passwords for that little bit of extra security, but in reality I don't really think it is that big of a deal. I'm not going to worry about it personally

caseinsensitive passwords and without numbers and signs are just as good as to have your password the same as the login. The password should be _always_ more than 10 characters with small/big letters, numbers and signs. So this is in my opinion a real big problem. For sc2 it might just be bad, but for wow this could end desastrous because people have their account data saved up
Otolia
Profile Blog Joined July 2011
France5805 Posts
July 19 2011 17:32 GMT
#30
My password is still too strong for anything remotely script-kiddy-ish. But no case sensitivity makes me think they have a partnership with Microsoft
windsupernova
Profile Joined October 2010
Mexico5280 Posts
July 19 2011 17:32 GMT
#31
On July 20 2011 02:12 ApBuLLet wrote:
I don't really think this is as big of a deal as people are making it out to be. People tend to panic a bit when they feel like they or their property is at risk, and rightfully so. However, the vast majority of the time people get their accounts stolen is due to some sort of keylogging malware, in which case the a case sensitive password system would not matter, because your hacker would know anyway. The only thing I can see it being good for is if somebody is trying to guess your password or something like that. Case sensitive passwords make that a million times harder I would imagine, as you'd have to guess the password and the patter of lowercase/uppercase.

So overall, yes I think it is bad and there is no reason not to have case sensitive passwords for that little bit of extra security, but in reality I don't really think it is that big of a deal. I'm not going to worry about it personally


Haha, not even that. Most of the time when they lose control of their accounts its because they fall for some social engineering scheme.

Still, I didn´t know about this.Ehhhhh, while it would be nice as long as you follow the rules for a secure password(not using common words,mixing up symbols, letter and numbers, etc) you should be fine.

Ehh anyways Blizzard should fix this to give their customers peace of mind, but this isn´t nearly as bad as it seems.
"Its easy, just trust your CPU".-Boxer on being good at games
Probe1
Profile Blog Joined August 2010
United States17920 Posts
July 19 2011 17:39 GMT
#32
Not a big deal. You can buy an authenticator or just add numbers.
우정호 KT_VIOLET 1988 - 2012 While we are postponing, life speeds by
Phayze
Profile Blog Joined June 2009
Canada2029 Posts
Last Edited: 2011-07-19 17:42:32
July 19 2011 17:41 GMT
#33
Ironically, most people who have their accounts hacked use the same password for forum boards and that is how hackers get their information. Hacking website databases is much easier than sifting through potentially millions of keystrokes through mass keylogging (and the bandwidth required!!), and it turns out most people use the same password for everything, or keep everything gaming related as one password etc. This is how you get caught, and having it ignore casing on full caps or full non caps passwords wont change a thing. Honestly it's good that blizzard implemented it, when I used to use a simpler password it was quite aggravating to mash the caps lock key a few times until it lets me log in.
Proud member of the LGA-1366 Core-i7 4Ghz Club
Bobbias
Profile Blog Joined March 2008
Canada1373 Posts
July 19 2011 18:04 GMT
#34
Brute force isn't the only way to break passwords... Cryptoanalasys is a far larger threat, all things considered. It's bad practice to ignore case, but the real question is how blizz stores the passwords,a and which algorithms they use.

Of course, using the same password as somewhere else is FAR worse than either of these risks. Anyone who's been following the LulzSec hacks should be aware of this...
Vipsanius
Profile Joined February 2011
Netherlands708 Posts
July 19 2011 18:08 GMT
#35
Basically what this means is that the hashing algorithm ignores capitals. Shouldn't be that big of a deal, considering blizzard is doing a lot for people that got their accounts hacked. Still, it's a flaw in security that should not have been there in the first place.
Blasterion
Profile Blog Joined October 2010
China10272 Posts
July 19 2011 18:12 GMT
#36
o.0" Really?

/downloads Authendicator
[TLNY]Mahjong Club Thread
Glowbox
Profile Joined June 2010
Netherlands330 Posts
Last Edited: 2011-07-19 18:14:24
July 19 2011 18:14 GMT
#37
On July 20 2011 03:04 Bobbias wrote:
Brute force isn't the only way to break passwords... Cryptoanalasys is a far larger threat, all things considered. It's bad practice to ignore case, but the real question is how blizz stores the passwords,a and which algorithms they use.


As far as I know Blizzard uses the SRP6 protocol ( http://en.wikipedia.org/wiki/Secure_remote_password_protocol ) for the login.
MyNameIsAlex
Profile Joined March 2011
Greece827 Posts
July 19 2011 18:18 GMT
#38
WHAT?

I cant believe it... Blizz so stupid once again...
Akill_
Profile Joined November 2008
United Kingdom80 Posts
July 19 2011 18:19 GMT
#39
Looks like blizzard decided this design decision would inevitably increase their authenticator sales.

+ Show Spoiler +
joke: they probably have hackers on payroll helping convince authenticator sales too, haha
ballasdontcry
Profile Joined January 2011
Canada595 Posts
July 19 2011 18:23 GMT
#40
If you have a smartphone, the authenticator apps are free for all 3 major platforms (iOS, android and BB). no reason not to get it if you have a smartphone
Prev 1 2 3 4 5 6 Next All
Please log in or register to reply.
Live Events Refresh
RotterdaM Event
17:00
Stream Rumble #4 PTR Edition
RotterdaM922
IndyStarCraft 260
Liquipedia
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
RotterdaM 949
mouzHeroMarine 390
IndyStarCraft 257
UpATreeSC 121
JuggernautJason51
StarCraft: Brood War
Rain 1887
Shuttle 459
Hyuk 283
Mini 186
BeSt 185
Soulkey 179
Sexy 115
Dewaltoss 107
ggaemo 79
Hyun 61
[ Show more ]
JYJ25
HiyA 11
Sacsri 10
sorry 10
Free 6
Dota 2
Gorgc6191
qojqva3811
Super Smash Bros
Mew2King54
Other Games
Grubby1632
FrodaN949
B2W.Neo537
C9.Mang0109
QueenE75
Trikslyr62
ArmadaUGS45
NeuroSwarm31
rGuardiaN10
rubinoeu6
Organizations
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 21 non-featured ]
StarCraft 2
• Hupsaiya 26
• Adnapsc2 8
• Kozan
• sooper7s
• Migwel
• LaughNgamezSOOP
• IndyKCrew
• AfreecaTV YouTube
• intothetv
StarCraft: Brood War
• 80smullet 25
• HerbMon 2
• ZZZeroYoutube
• STPLYoutube
• BSLYoutube
Dota 2
• masondota21125
• WagamamaTV363
• lizZardDota237
League of Legends
• Nemesis2205
• Jankos1622
Other Games
• imaqtpie1066
• Shiphtur141
Upcoming Events
Maestros of the Game
17h 13m
Serral vs herO
Clem vs Reynor
[BSL 2025] Weekly
23h 13m
[BSL 2025] Weekly
23h 13m
Replay Cast
1d 15h
BSL Team Wars
2 days
Afreeca Starleague
2 days
Soma vs BeSt
Wardi Open
2 days
OSC
3 days
Sparkling Tuna Cup
3 days
Afreeca Starleague
3 days
Bisu vs Larva
[ Show More ]
LiuLi Cup
4 days
OSC
4 days
The PondCast
5 days
Wardi Open
6 days
Liquipedia Results

Completed

2025 Chongqing Offline CUP
RSL Revival: Season 2
HCC Europe

Ongoing

BSL 20 Team Wars
KCM Race Survival 2025 Season 3
BSL 21 Points
ASL Season 20
CSL 2025 AUTUMN (S18)
Maestros of the Game
StarSeries Fall 2025
FISSURE Playground #2
BLAST Open Fall 2025
BLAST Open Fall Qual
Esports World Cup 2025
BLAST Bounty Fall 2025
BLAST Bounty Fall Qual
IEM Cologne 2025
FISSURE Playground #1

Upcoming

IPSL Winter 2025-26
SC4ALL: Brood War
BSL 21 Team A
BSL Season 21
RSL Revival: Season 3
Stellar Fest
SC4ALL: StarCraft II
WardiTV TLMC #15
EC S1
ESL Impact League Season 8
SL Budapest Major 2025
BLAST Rivals Fall 2025
IEM Chengdu 2025
PGL Masters Bucharest 2025
Thunderpick World Champ.
CS Asia Championships 2025
ESL Pro League S22
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2025 TLnet. All Rights Reserved.