Phishing Attack or Bad Blizzard?
#1
So I wake up this morning to find a helpful email from Blizzard, reminding me to renew my account before The Burning Crusade. "That's odd," I think, "My account is active right now. Well, I'd better just check..."

[Image: phishmb9.jpg]

In my early morning stupor, I clicked the link, entered my account information, and realized that this is the model for a textbook phishing attack (in that order). I immediately changed my password and scrutinized the headers of the email and it looks legitimate to my untrained eyes.

Code:
Date:      Friday, January 05, 2007 01:28 am
Subject:        Are You Ready For The Burning Crusade?
Message-ID:&nbsp;&nbsp;&nbsp;&nbsp; <20070105052853.1C3D.7155-53@email.blizzard.com>
Return-Path:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<Newsletter@email.blizzard.com>
Delivered-To:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;"monkey"
Received:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; (qmail 12631 invoked from network); 5 Jan 2007 05:33:14 -0000
Received:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; from dsl093-061-106.pit1.dsl.speakeasy.net (HELO "friend's mail redirect") ([66.93.61.106]) (envelope-sender <Newsletter@email.blizzard.com>) by mail22.sea5.speakeasy.net (qmail-ldap-1.03) with AES256-SHA encrypted SMTP for <"monkey">; 5 Jan 2007 05:33:14 -0000
Received:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;from email.blizzard.com (email.blizzard.com [12.129.200.219]) by "friend's mail redirect"(8.12.10/8.12.10) with SMTP id l055X1Q0004416 for <"monkey">; Fri, 5 Jan 2007 00:33:07 -0500 (EST) (envelope-from Newsletter@email.blizzard.com)
Content-Return:&nbsp;&nbsp;&nbsp;&nbsp; allowed
X-Mailer:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; CME-V6.5.4.3; blizzard
MIME-Version:&nbsp;&nbsp;&nbsp;&nbsp; 1.0
Content-Type:&nbsp;&nbsp;&nbsp;&nbsp; multipart/alternative; boundary="----=_NextPart_16D8_728_9635A8BA.01C73078"

Which brings me to my point: Did anyone else receive this email? If it wasn't legitimate, well, I hope all other recipients were sharper than me. If it was legitimate, what was Blizzard thinking, sending an official mail that looks like a phishing attack?
Reply


Messages In This Thread
Phishing Attack or Bad Blizzard? - by Monkey - 01-05-2007, 12:29 PM
RE: Phishing Attack or Bad Blizzard? - by Jim - 05-18-2011, 04:34 PM
RE: Phishing Attack or Bad Blizzard? - by Taelas - 05-19-2011, 07:06 PM
RE: Phishing Attack or Bad Blizzard? - by Jim - 05-19-2011, 08:34 PM
Phishing Attack or Bad Blizzard? - by TheDragoon - 01-05-2007, 03:14 PM
Phishing Attack or Bad Blizzard? - by Derek - 01-05-2007, 04:18 PM
Phishing Attack or Bad Blizzard? - by Monkey - 01-05-2007, 08:05 PM
Phishing Attack or Bad Blizzard? - by Jim - 01-05-2007, 08:30 PM
Phishing Attack or Bad Blizzard? - by NiteFox - 01-05-2007, 09:54 PM
Phishing Attack or Bad Blizzard? - by Jim - 01-05-2007, 11:46 PM
Phishing Attack or Bad Blizzard? - by Sabra - 01-06-2007, 01:20 AM
Phishing Attack or Bad Blizzard? - by Ruvanal - 01-06-2007, 01:43 AM

Forum Jump:


Users browsing this thread: 1 Guest(s)