PS guys: The fact that Blizzards passwords aren't case sensitive could mean that they actually save clear text passwords. Which is a big no no.
The one-way hash algorithms used for most password storage are all case-sensitive.
There is however an off-chance that they are smart enough to perform a ToLower() or ToUpper() operation before calculating the hash which would then mean that they wouldn't have to store the clear text passwords for comparison.
As a precaution I will be changing my battle.net password and improving the strength of my email account password that is linked to the battle.net account. I suspect it's only a matter of time before Blizzard becomes the next Sony.







