this is actually like unbelievably horrible, and troublesome.
I remember when i first read about brainwallet on reddit I thought: that's like really scary, but cute, a lot of people will fall for using it.
It never occurred to me that not only could people end up with the same passphrase, but that you could actively scan the entire blockchain and just start brute forcing for brain wallets with easily gussed passphrases.
What's most concerning are that there are people who are ALREADY running botnets on the blockchain, and today any 5 char passphrase gets auto extracted in seconds.
most poignant:
"Brainwallets make the Blockchain a
public password hash database"