RealID and Hacked Accounts
Okay, so this is not meant to be fear mongering, but rather to present a problem I just thought of with the new RealID system (as if there weren't enough problems already).
Here is the fictional scenario. I have a couple people I know really well and decide to trust them with my RealID info. Unfortunately I can't make them get an authenticator and they end up hacked. Two things can now happen that didn't happen before the RealID scenario. The hackers look through the RealID list on the hacked account to scout for accounts that are a better payoff (large number of geared 80s) and they can tell when people play so as to have a better chance of looting those accounts before someone notices. They also have the battle.net account name of such accounts which is one less bit of information to look for and allows them to scan databases of phishing sites for that email to see if any of those passwords match up.
Since RealID friends of friends can also see all this information, they could add friends to the hacked account so that those accounts have this information as well.
Thoughts?
- Souca -