Forum Views ()
Forum Replies ()
Read more with google mobile :
Sony Playstation suffers massive data breach; firm criticized
|
Edition:
U.S.
Article
Comments (1)
Follow Reuters
Facebook
Twitter
RSS
YouTube
Read
Deadlock in Libya exposes international rifts
26 Apr 2011
Lindsay Lohan makes clean breast of things for Leno
|
1:50am EDT
Guidelines help prevent heart attack deaths
26 Apr 2011
Sony Playstation suffers massive data breach; firm criticized
3:17am EDT
Sony PlayStation suffers massive data breach
26 Apr 2011
Discussed
145
Texas governor calls for prayers for rain
136
Obama sees no magic bullet to push down gas prices
66
U.S. sends drones to Libya as battle rages for Misrata
Watched
Lohan on Leno, Cole on "X Factor"
Tue, Apr 26 2011
Tornado caught on security camera video
Tue, Apr 26 2011
Waiting for Bernanke
2:59am EDT
Sony Playstation suffers massive data breach; firm criticized
Tweet
Share this
By Isabel Reynolds and Liana B. Baker
TOKYO/NEW YORK (Reuters) - Sony Corp suffered a huge breach in its video game online network that allowed the theft of names, addresses and possibly credit card data belonging to 77 million user accounts, in one...
Email
Print
Related News
Nikkei up 1.4 percent after post-quake earnings reports
2:22am EDT
UPDATE 2-Sony PlayStation Network user data stolen
Tue, Apr 26 2011
Lawson Software to go private in $2 billion deal
Tue, Apr 26 2011
Sony chases Apple with launch of Android tablet
Tue, Apr 26 2011
Auto production faces bigger hit after Japan quake
Mon, Apr 25 2011
Analysis & Opinion
Tech wrap: Sony admits PlayStation Network privacy breach
Brightscope launches online marketplace for adviser shopping
Related Topics
Technology »
Media »
Natural Disasters »
iPad »
Stocks
A visitor plays with a 'Playstation' at an exhibition stand at the Gamescom 2009 fair in Cologne in this August 22, 2009 file photo.
Credit: Reuters/Ina FAssbender
By Isabel Reynolds and Liana B. Baker
TOKYO/NEW YORK |
Wed Apr 27, 2011 3:17am EDT
TOKYO/NEW YORK (Reuters) - Sony Corp suffered a huge breach in its video game online network that allowed the theft of names, addresses and possibly credit card data belonging to 77 million user accounts, in one of the largest Internet security break-ins ever.
Sony said it learned of the breach in its popular PlayStation Network on April 19, prompting it to shut down the network immediately. Sony did not tell the public about the stolen data until Tuesday, hours after it unveiled its first tablet computers in Japan.
Executives at the tablet launch in Tokyo made no mention of the network crisis when the glossy devices were unveiled, nor at a later briefing with journalists. The tablets, which come in two sizes, will be the first to enable the use of PlayStation games and mark Sony's ambitious drive to compete with Apple's year-old iPad.
An "illegal and unauthorized person" obtained names, addresses, email addresses, birth dates, user names, passwords, logins, security questions and more, Sony said on its U.S. PlayStation blog.
A Sony spokesman said it took "several days of forensic investigation" after learning of the breach before the company knew consumers' data had been compromised.
The news sparked fury among some users.
"If you have compromised my credit information, you will never receive it again," read one message on the PlayStation Network blog from a user under the name Korbei83.
"The fact that you've waited this long to divulge this information to your customers is deplorable. Shame on you."
Sony is the latest Japanese company to come under fire for not disclosing bad news quickly.
Tokyo Electric Power Co was criticized for how it handled the nuclear crisis after the March 11 earthquake. Last year, Toyota Motor Corp was slammed for being less than forthright about problems over a massive vehicle recall.
U.S. Democratic senator Richard Blumenthal sent a letter to Sony asking it to explain why it didn't notify PlayStation owners sooner. Sony has also reported the breach to the Federal Bureau of Investigation, the New York Times reported.
The shutdown of the PlayStation Network prevented owners of Sony's video game console from buying and downloading games, as well as playing with rivals over the Internet.
Sony said it could restore some of the network's services within a week.
Alan Paller, research director of the SANS Institute, said the breach may be the largest theft of identity data information on record.
The online network was launched in the autumn of 2006 and offers games, music and movies to people with PlayStation consoles. It had 77 million registered users as of March 20, a Sony spokesman said, almost 90 percent of them in Europe or the United States.
Sony shares fell 2.0 percent in Tokyo in a broader market up 1.4 percent.
MAJOR SETBACK
The breach is a major setback for the electronics giant. Although video game hardware and software sales have declined globally, the PlayStation franchise is a substantial profit source and remains a flagship product for Sony.
It will be a blow for Kazuo Hirai, who was appointed to the company's No. 2 position last month after building up Sony's networked services.
The crisis could also overshadow Sony's plans to launch a new hand-held games device, the Next Generation Portable, by the end of the year.
"It's a red flag to a lot of people as to how Sony conducts its business," said Sue Cato, head of corporate communications advisers Cato Counsel in Sydney.
"This will have regulators concerned about security, it will have consumer organisations concerned, it will have some gamers concerned."
How fast Sony can bounce back depends on a number of factors, said Ricardo Torres, editor-in-chief of Gamespot.com.
"It depends how soon the network comes up, but more importantly how Sony deals with their user base," Torres said. "Some kind of compensation has to be provided. 'Sorry' doesn't cut it for a lot of consumers at this point."
"The big question that will come up is what they're doing for security," he added.
Sony said children with accounts established by their parents might have had their data exposed.
It said it saw no evidence credit card numbers were stolen, but warned users it could not rule out the possibility.
"Out of an abundance of caution, we are advising you that your credit card number (excluding security code) and expiration date may have been obtained," Sony said.
Analysts said that while Sony has notified customers of the breach, it had still not provided information on how user data might have been compromised.
"This is a huge data breach," said Wedbush Securities analyst Michael Pachter, who estimated Sony generates $500 million in annual revenue from the service. "The bigger issue with Sony is how will the hacker use the info that has been illegally obtained?"
Sony has hired an "outside recognized security firm" to investigate. It said user account information for the PlayStation Network and its Qriocity service users was compromised between April 17 and April 19.
The Japanese firm declined to comment on whether it was working with law enforcement officials.
SECURITY RISK
Paller said Sony probably did not pay enough attention to security when it was developing the software that runs its network. In the rush to get out innovative new products, security can sometimes take a back seat, Paller added.
"They have to innovate rapidly. That's the business model," Paller said. "New software has errors in it. So they expose code with errors in it to large numbers of people, which is a catastrophe in the making."
He suspected the hackers entered the network by taking over the PC of a system administrator, who had rights to access sensitive information about Sony's customers. They likely did that by sending the administrator an email message that contained a piece of malicious software that got downloaded onto his or her PC.
Hackers have stolen personal data in the past from large companies. In 2009, Albert Gonzalez pleaded guilty to stealing tens of millions of payment card numbers by breaking into corporate computer systems at companies such as 7-Eleven Inc and Target Co. of the United States.
Sony said its users could place fraud alerts on their credit card accounts through three U.S. credit card bureaus, which it recommended in its statement.
The company has struggled for years to control the activities of the hackers who make up a portion of PlayStation's fanbase.
Earlier this month, games fan website PlayStation Lifestyle said a group calling itself Anonymous had conducted attacks on Sony websites and online services, motivated by revenge for the company's attempts to clamp down on hacking.
(Additional reporting by Victoria Thieberger in Sydney, Tim Kelly in Tokyo and Jim Finkle in Boston; Editing by Lincoln Feast, Anshuman Daga and Dean Yates)
Technology
Media
Natural Disasters
iPad
Tweet this
Share this
Link this
Digg this
Email
Reprints
We welcome comments that advance the story directly or with relevant tangential information. We try to block comments that use offensive language, all capital letters or appear to be spam, and we review comments frequently to ensure they meet our standards. If you see a comment that you believe is irrelevant or inappropriate, you can flag it to our editors by using the report abuse links. Views expressed in the comments do not represent those of Reuters.
Comments (1)
Surgical1969 wrote:
Luckily, my PS Net account has a credit card that just expired. I will have to use my Paypal card from now on which has a low limit that I can adjust for protection against this type of theft. I will continue to deal with Sony. I love the system and all of the peripheral programs i.e. Netflix and games.
Apr 27, 2011 1:20am EDT -- Report as abuse
See All Comments »
Add Your Comment
Social Stream (What's this?)
© Copyright 2011 Thomson Reuters
Editorial Editions:
Africa
Arabic
Argentina
Brazil
Canada
China
France
Germany
India
Italy
Japan
Latin America
Mexico
Russia
Spain
United Kingdom
United States
Reuters
Contact Us
Advertise With Us
Help
Journalism Handbook
Archive
Site Index
Video Index
Reader Feedback
Mobile
Newsletters
RSS
Podcasts
Widgets
Your View
Analyst Research
Thomson Reuters
Copyright
Disclaimer
Privacy
Professional Products
Professional Products Support
Financial Products
About Thomson Reuters
Careers
Online Products
Acquisitions Monthly
Buyouts
Venture Capital Journal
International Financing Review
Project Finance International
PEhub.com
PE Week
FindLaw
Super Lawyers Attorney Rating Service
Reuters on Facebook
Thomson Reuters is the world's largest international multimedia news agency, providing investing news, world news, business news, technology news, headline news, small business news, news alerts, personal finance, stock market, and mutual funds information available on Reuters.com, video, mobile, and interactive television platforms. Thomson Reuters journalists are subject to an Editorial Handbook which requires fair presentation and disclosure of relevant interests.
NYSE and AMEX quotes delayed by at least 20 minutes. Nasdaq delayed by at least 15 minutes. For a complete list of exchanges and delays, please click here.
Other News on Wednesday, 27 April 2011 Iraq's air force needs help beyond this year: Maliki
|
Libya rebels try to impose order, boost credibility
|
Sony PlayStation Network user data stolen
|
Amazon profit falls on costs for new businesses
|
Facebook jumps into crowded coupon market
|
Microsoft wrestles slack PC sales and wilting stock
|
Analysts confident of Netflix's streaming service growth
|
Katie Couric confirms leaving CBS evening news
|
Raymond TV creator looks for some love in Russia
|
Aflac picks new duck voice to replace Gilbert Gottfried
|
Film probes baseball scapegoat who keeps mystique
|
Smashing Pumpkins to reissue albums with extras
|
Syrian troops pour into Damascus suburb
|
Deadlock in Libya exposes international rifts
|
Guatemala captures drug fugitive sought by U.S.
|
N. Korea patrol boat retreats after warning shots fired: South
|
Indian guru Sai Baba buried in state funeral, thousands grieve
|
Al Qaeda releases tape from French hostages
|
China seizes 26 tonnes of melamine-tainted milk powder
|
Exiled Tibetans elect political heir to Dalai Lama
|
Sony Playstation suffers massive data breach; firm criticized
|
Amazon eyes rosy revenue
|
News Corp seeks Myspace bids over $100 million: source
|
Sina has no immediate plan to list microblog operations: CEO
|
Congress deepens Apple location tracking probe
|
Ericsson Q1 profit surges on mobile broadband demand
|
Lindsay Lohan makes clean breast of things for Leno
|
Eminem, Coldplay and Muse headlining Lollapalooza
|
Adrien Brody superb in harrowing Detachment
|
Horror Insidious the year's most profitable film
|
Eight foreign troops killed in Kabul airport shooting
|
Fatah, Hamas agree to form interim government: Egypt
|
Body count from Mexican mass graves nears 300
|
Egyptians find their voice after years of repression
|
Yemenis block port in protest against Saleh deal
|
Uganda's Besigye bailed, vows to continue protests
|
Cambodia PM welcomes talks after Thai border clashes
|
Apple denies tracking iPhone customers
|
We should have been safe with Sony, say gamers
|
Nokia axes 7,000 jobs to slash costs
|
Supreme Court rules for AT&T in arbitration case
|
CenturyLink gets cloud boost with $2.5 billion Savvis buy
|
Ericsson profit surges on mobile broadband demand
|
William and Kate in final royal wedding rehearsals
|
Greece at new risk of being pushed off euro
Bodies of missing Tenn. mom, Jo Ann Bain, and daughter found
Female Breasts Are Bigger Than Ever
AMD Trinity Accelerated Processing Units Now in Volume Production
The Avengers (2012 film), made the second biggest opening- and single-day gross of all-time
AMD to Start Production of piledriver
Ivy Bridge Quad-Core, Four-Thread Desktop CPUs
Islamists Protest Lady Gaga's Concert in Indonesia
Japan Successfully Broadcasts an 8K Signal Over the Air
ECB boosts loans to 1 trillion Euro to stop credit crunch
Egypt : Mohammed Morsi won with 52 percent
What do you call 100,000 Frenchmen with their hands up
AMD Launches AMD Embedded R-Series APU Platform
Fed Should not Ignore Emerging Market Crisis
Fed casts shadow over India, emerging markets
Why are Chinese tourists so rude? A few insights