Sponsored Links

PS4 News on Facebook! PS4 News on Twitter! PS4 News on YouTube! PS4 News RSS Feed!
Sponsored Links

Home PS4 News - Latest PlayStation 4 and PS3 News

Sony PlayStation Network Security Update, SOE Now Down


Sponsored Links
201w ago - Today Sony's Senior Director of Corporate Communications & Social Media Patrick Seybold has made available another PlayStation Network security update to clarify some common PSN concerns, as follows:

On Tuesday, April 26 we shared that some information that was compromised in connection with an illegal and unauthorized intrusion into our network. Once again, we'd like to apologize to the many users who were inconvenienced and worried abut this situation.

We want to state this again given the increase in speculation about credit card information being used fraudulently. One report indicated that a group tried to sell millions of credit card numbers back to Sony. To my knowledge there is no truth to this report of a list, or that Sony was offered an opportunity to purchase the list.

One other point to clarify is from this weekend's press conference. While the passwords that were stored were not "encrypted," they were transformed using a cryptographic hash function. There is a difference between these two types of security measures which is why we said the passwords had not been encrypted. But I want to be very clear that the passwords were not stored in our database in cleartext form. For a description of the difference between encryption and hashing, follow this link.

To reiterate a few other security measures for your information: Sony will not contact you in any way, including by email, asking for your credit card number, social security number or other personally identifiable information. If you are asked for this information, you can be confident Sony is not the entity asking.

When the PlayStation Network and Qriocity services are fully restored, we strongly recommend that you log on and change your password. Additionally, if you use your PlayStation Network or Qriocity user name or password for other unrelated services or accounts, we strongly recommend that you change them, as well. To protect against possible identity theft or other financial loss, we encourage you to remain vigilant, to review your account statements and to monitor your credit reports.

We continue to work with law enforcement and forensic experts to identify the criminals behind the attack. Once again, we apologize for causing users concern over this matter.

Our objective is to increase security so our customers can safely and confidently play games and use our network and media services. We will continue to provide updates as we have them.

Sony has also suspended another of its online gaming systems, following the recent PlayStation Network hack. The company took the Sony Online Entertainment (SOE) service offline as part of its wider investigation into security breaches. Multiplayer games including DC Universe and Facebook-based Fortune League were unavailable as a result.

Sony admitted last week that the personal details of 77m PlayStation users may have been stolen by hackers. The suspension of SOE was announced in brief statement on its website, PlayStation.com.

To quote from the BBC: We have had to take the SOE service down temporarily. In the course of our investigation into the intrusion into our systems we have discovered an issue that warrants enough concern for us to take the service down effective immediately. We will provide an update later today (Monday), it said.

Last week, Sony said that it did not believe SOE users had been affected by the PlayStation Network hack.

A community relations spokesperson wrote on one of Sony's support forums at the time: We have been conducting a thorough investigation and, to the best of our knowledge, no customer personal information got out to any unauthorized person or persons.

We are continuing that investigation and monitoring the situation carefully; should the situation change, we will - of course - promptly notify you.

Sony Online Entertainment designs and publishes online multiplayer games for the PC, PlayStation 3 and, in the case of Fortune League, Facebook.

Sony PlayStation Network Security Update, SOE Now Down

Sony PlayStation Network Security Update, SOE Now Down

Sony PlayStation Network Security Update, SOE Now Down

Stay tuned for more PS3 Hacks and PS3 CFW news, follow us on Twitter, Facebook and drop by the PS3 Hacks and PS3 Custom Firmware Forums for the latest PlayStation 3 scene and PlayStation 4 scene updates and fresh homebrew PS3 Downloads. Enjoy!
Sponsored Links
Sponsored Links

Comments 341 Comments - Go to Forum Thread »

• Please Register at PS4News.com or Login to make comments on Site News articles.
 
#261 - elser1 - 200w ago
elser1's Avatar
LOL Barry.. stupid me used real stuff and hasn't gotten 1 email at all.. slack prix.. oh well if psn is up by sun i'll play again.. if not goodbye sony, monday i'm buying 360!!

#260 - barrybarryk - 200w ago
barrybarryk's Avatar
I just got a SOE email too, ppft kind of makes me glad all my details are false given they've now lost them twice.

#259 - elser1 - 200w ago
elser1's Avatar
interesting.. can anyone find such thing for australians to join? pm me with details if possible.. thanks

michael

#258 - PS4 News - 200w ago
PS4 News's Avatar
Yep, here is another follow-up to our previous article. To quote: http://www.mcst.ca/ClassActions/ClassActionsHome/SonyPSN/
McPhadden Samac Tuovi LLP has commenced a class action against Sony Corporation and other Sony companies related to the theft from Sony of personal information of PlayStation network and Qriocity service users. The theft may also include user credit card information.

The action has been brought on behalf of all persons in Canada who used Sony's online PlayStation network or Qriocity services up to May 2, 2011, and who provided Sony with personal and/or credit or debit card information.

Additional information about the lawsuit may be found in the firm’s media release, which can be found on this website.

If you would like information about this lawsuit, please contact us directly.

Toronto – May 2, 2011
For Immediate Release
Canadian Sony PlayStation Network Class Action

Sony has announced that personal information for 77 million PlayStation and Qriocity users worldwide, 1 million of which are in Canada, has been hacked. It has been alleged that Sony was aware that such information had been stolen but failed to advise users of PlayStation and Quriocity in a timely fashion.

Sony has acknowledged that stolen information may include users’ names, addresses (city, province, postal code), country, email address, birthdate, PlayStation Network/Qriocity password and login, and handle/PSN online ID and user profile data, including purchase and usage history and billing address (city, province, postal code), and the subscriber’s PlayStation Network/Qriocity password security answers. The same data with respect to a dependent may also have been obtained.

Sony is not able to say whether user credit card or debit card information was also taken. Sony has acknowledged and apologized for breach. To date, the only compensation Sony has offered is 30 or 60 day free memberships on its PlayStation network. While Sony has advised American users about the availability of free credit reports, it has yet to advice Canadian users about credit reports.

The Toronto law firm McPhadden Samac Tuovi LLP has commenced a proposed class action against Sony Japan, Sony USA, Sony Canada and other Sony entities (“Sony” for the breach of privacy. The lawsuit claims damages in excess of $1 billion, which includes having Sony pay the costs of credit monitoring services and fraud insurance coverage for two years.

The plaintiff in the action is 21 year old Mississauga resident who has been an avid PlayStation user for years. Natasha Maksimovic said: “If you can’t trust a huge multi-national corporation like Sony to protect your private information, who can you trust. It appears to me that Sony focuses more on protecting its games than its PlayStation users.”

#257 - oldschool400 - 200w ago
oldschool400's Avatar
I came across this article: http://www.thestar.com/news/article/984932--proposed-class-action-suit-filed-against-sony?bn=1

#256 - leukotic - 200w ago
leukotic's Avatar
So apparently the breach in SOE happened the same time as the PSN breach, however they are only figuring this out now? Sounds like they would have never found out if the PSN breach didn't happen, because they wouldn't have done the investigation into SOE as a precaution.

Either it was a really good hack or their systems are incredibly sub-par (perhaps both).

#255 - PS4 News - 200w ago
PS4 News's Avatar
Here is today's SOE Press Release, doesn't seem like much new from yesterday's initial one though: http://blog.eu.playstation.com/2011/05/03/sony-online-entertainment-issues-security-press-release/
Some of you may have heard today about an announcement from Sony Online Entertainment confirming that they were also victims of a malicious hack. As this could affect those of you with SOE accounts, they have asked us to post their press release on the blog, which should answer some of your questions.

Sony Online Entertainment Announces Theft of Data from Its Systems

Breach believed to stem from initial criminal hack of SOE. Tokyo, May 3, 2011

- Sony Corporation and Sony Computer Entertainment announced today that their ongoing investigation of illegal intrusions into Sony Online Entertainment LLC (SOE, the company) systems revealed yesterday morning (May 2, Tokyo time) that hackers may have stolen SOE customer information on April 16th and 17th, 2011 (PDT). SOE is based in San Diego, California, U.S.A.

This information, which was discovered by engineers and security consultants reviewing SOE systems, showed that personal information from approximately 24.6 million SOE accounts may have been stolen, as well as certain information from an outdated database from 2007. The information from the outdated database that may have been stolen includes approximately 12,700 non-U.S. credit or debit card numbers and expiration dates (but not credit card security codes), and about 10,700 direct debit records of certain customers in Austria, Germany, Netherlands and Spain.

With the current outage of the PlayStation® Network and Qriocity™ services and the ongoing investigation into the recent attacks, SOE had also undertaken an intensive investigation into its system. Upon discovery of this additional information, the company promptly shut down all servers related to SOE services while continuing to review and upgrade all of its online security systems in the face of these unprecedented cyber-attacks.

On May 1, Sony apologized to its customers for the inconvenience caused by its network services outages. The company is working with the FBI and continuing its own full investigation while working to restore all services.

Sony is making this disclosure as quickly as possible after the discovery of the theft, and the company has posted information on its website and will send e-mails to all consumers whose data may have been stolen.

The personal information of the approximately 24.6 million SOE accounts that was illegally obtained, to the extent it had been provided to SOE, is as follows:

• name
• address
• e-mail address
• birthdate
• gender
• phone number
• login name
• hashed password.

In addition to the information above, the 10,700 direct debit records from accounts in Austria, Germany, Netherlands and Spain, include:

• bank account number
• customer name
• account name
• customer address.

SOE will grant customers 30 days of additional time on their subscriptions, in addition to compensating them one day for each day the system is down. It is also in the process of outlining a "make good" plan for its PlayStation®3 MMOs (DC Universe Online and Free Realms). More information will be released this week.

Additionally, the company is committed to helping its customers protect their personal data and will provide a complimentary offering to assist users in enrolling in identity theft protection services and/or similar programs. The implementation will be at a local level and further details will be made available shortly in each region.

Sony Online Entertainment LLC (SOE) has been a recognized worldwide leader in massively multiplayer online games since 1999. Best known for its blockbuster hits and franchises, including EverQuest®, EverQuest® II, Champions of Norrath®, PlanetSide®, Free Realms®, Clone Wars Adventures™, and DC Universe Online™, SOE creates, develops and provides compelling online entertainment for virtually all platforms, including the PlayStation®3 Computer Entertainment System, Personal Computer, mobile and social networks. SOE is building on its proven legacy and pioneering the future of the interactive entertainment space through creative development and inspired gameplay design for audiences of all ages. To learn more, visit www.soe.com.

For more information and update about the SOE services, please visit www.soe.com/securityupdate.

#254 - elser1 - 200w ago
elser1's Avatar
maybe it was the CIA who hacked into psn to get bin ladens address in order to kill him... LOL

#253 - geowrian - 200w ago
geowrian's Avatar
Maybe this attack is due to CFW and piracy, too? Good job, Sony. I'm curious to see if this breech was done by the same person/people. If not, Sony is screwed - that would indicate a huge, systematic problem, not just some hackers getting into a system. That happens all the time...Sony's just a large player. Multiple exploits across multiple systems by multiple people indicates a major failure in design, both in the application and infrastructure layers.

If it was the same group, that's still not saying much that they were able to break in and get info without being noticed, then break in elsewhere a little later and get even more info. That's still gross incompetence.

#252 - GrandpaHomer - 200w ago
GrandpaHomer's Avatar
Quote Originally Posted by leukotic View Post
So what else does Sony have that can be breached to lose millions more accounts?


What about their eBook store ... ?

 

Sponsored Links

Sponsored Links







Advertising - Affiliates - Contact Us - PS4 Downloads - PS4 Forums - Privacy Statement - Site Rules - Top - © 2015 PlayStation 4 News