After 18 years it finally happened... I was hacked

Yes I have an authenticator, but big difference that made. Lucky all I lost was gold, so let’s hope Blizzard can replace all that. Thankfully they left everything else so I can still play.

Friendly reminder, change your password regularly because they can still bypass whatever security you have setup.

4 Likes

I wouldn’t hold out hope for your gold.

1 Like

My friend once “hacked” my other friends facebook account by finding their password written down in their desk and logging in.

1 Like

Why is that? Do Blizzard have that bad a record that they won’t even replace some gold?

They can track gold, they keep records and can see when something dodgy happens like when someone buys gold, they should also be able to see I was logged in somewhere outside my usual location and where the gold went.

I got hacked when I quit for a few months and they returned all the vendored gear and gold before I logged back in.

Not sure how it’s handled these days but in the case of giving people gold they don’t return it, even in the event of a scam, but for hacked accounts I think that they should.

1 Like

I’ve had guildies hacked and they did not get gold back, not sure if that was just them or if it’s normal.

Just giving you a heads up is all.

Yeah, the issue with gold is that if people can fake hacks and move the gold so that it can’t be found or whatever then it’s basically a dupe if they just “return” it (make more gold).

So I could see them not returning it and saying to be more careful, but I’m not sure how it’s handled nowadays.

1 Like

Well let’s hope I get a good answer tomorrow, I can’t even afford to mog or repair my gear currently.

Yeah, fingers crossed. :pray: Hope you get everything back.

1 Like

The most important thing to do is figure out how they did it, and lock down those sources of information. If they removed your authenticator, they had enough information about you (your actual RL address, which they can’t get from just logging in on your account) and your real birthdate, to make a fake ID that they sent in to claim your account.

Change all your passwords. Run thorough antivirus scans. Check the login history on your email.

When my account was hacked while I was on a hiatus years back, it was because my kid downloaded a program with a keylogger in it on my computer. I did get everything back, but time is of the essence.

4 Likes

You may want to move your thread to the Customer Support forum. That is an Information Desk and they can possibly give you more info. To do that use the edit button (pencil icon) on your first post. It should bring up the edit options with a drop down window for the forum. Change that from General Discussion to Customer Support.

Having an Authenticator on the account stops nearly anyone from getting on it. To “bypass” it they need to be able to put in a ticket, usually using Govt issued ID, to get it removed. The other option is to have malware on your PC that blocks your login, gets you to enter the code, then uses that code from the hacker’s end within the 30 seconds it is good for.

That would be very unusual to only lose gold and not have items sold off, chars made/transferred, and the account used for advertising. They also normally change the password, and email associated with it if they have that level of access…and they are normally in your email too in order to handle the ticket notifications.

Blizzard’s team will do their best to restore an account to the original condition based on the game logs of what happened with it. That includes proving a compromise happened. If the activity happens from the user’s home IP address, hardware, etc - then that would not be a compromise.

They have a fantastic record of restoring compromised accounts.

What they don’t do is replace gold that people lose to scams in unsupported transactions like giving someone a gold loan, engaging in gold for carries, etc.

P.S. Make sure it is not a Display error. There can be issues with the user interface that makes it show no gear, no gold, etc.

15 Likes

I remember the night after I installed the Blizzard Authenticator I was woken up by someone trying to access my account at like 2AM. It was a request from China.

Scary to think how long they had access, because I highly doubt the first time they tried was the night following me installing the authenticator.

It’s almost impossible to bypass the authenticator…there must be more to this story.

Irresponsible usage/placement of your phone w/ the authenticator.

Irresponsible use of password encryption/protection.

Sharing passwords with others etc.

Sending private information over a public network…

etc. etc. etc. bottom line - more to this story. Most likely user fault.

4 Likes

how much did lose by chance?

Funny though, I changed my password on my emails the other day before being hacked.

No emails from Blizzard prior to being hacked, nothing asking me to log in, no emails, no authenticator requests, even when I changed my password here I was asked to use my authenticator to log back in so that wasn’t removed, they just, bypassed it.

I’ve heard stories of hackers giving some random story to Blizzard CS and getting them to allow access. Seriously, they can track who logs into your account and where, it would be super obvious to see where someone is logging in from and see how regular, who than just loses ALL access to all their details one random day after they have been logging in and needs a CS rep to provide access?

About 700K only.

You should post in the customer support section like Mirasol suggested. No one can help you here.

2 Likes

That really does not work. CS only operates on proof. Like Govt issued ID that matches the account name.

You really need to move your thread to CS. They can actually look at the account history and may be able to give you some insight and advice.

11 Likes

There is no “bypassing” it. It’s required. They either had access to your authenticator in some fashion, or someone else had access to your computer where it was already authorized.

7 Likes

Reach as far as you want, not this time buddy.

I work from home, the only other people here are my 13 year old autistic kid and my wife, who doesn’t even play. Never once shared my password, never once left my phone anywhere outside of home, never once removed my authenticator in however many years it has been on my account.

Plus my phone is locked, my email password is different from my Blizzard one, and when I reset my password here it asked me to use my authenticator to log back in, they definitely bypassed it somehow.

Is that 700k across all characters on your account, or off a single character?

Only gold taken, sounds like someone who knows your information and transferred character to character, which Blizzard may not be able to authenticate as unintentional.

2 Likes