I thought you guys on this forum might be interested in this.
I've been really frustrated by Sky's "Alerts" service spamming me with emails, and have asked a couple of questions through their online help system (here http://tr.im/gICa). I thought I couldn't log in, but then a friend of mine typed in MY email, and got to my questions. There is no password option.
It doesn't take a massive leap to guess the CEO's email (John Fellet), or perhaps the Web Development Manager from linkedin (Fernando Battaglia), and you can log in and view and ask any questions.
The possibilities for spamming, or discovering people's emails and account details are pretty huge.
Totally nuts. My writeup here: http://www.ben.geek.nz/sky-television-a-lesson-in-frustration/