Some of you might remember the gigantic hack of Sony’s Playstation Network back in 2011 (which was apparently some form of retaliation soon after Sony announced they would sue PS3 hacker George Hotz). Ars Technica revealed a few days ago that the UK government fined Sony about $395,000 for their poor handling of that massive data leak.
As a reminder for those who didn’t own any PSN Account back then, the personal information of 77 million accounts on Sony’s network had been disclosed, including customers’ name and address, as well as hashed versions of the password. Sony had kept the breach secret for several days, publicly announcing the issue almost one week after it happened. They then took the PSN down for almost 3 weeks in order to fix the issue. Sony’s way of handling the situation has been judged to breach UK’s Data Protection Act according to the government’s experts.
“It is a company that trades on its technical expertise, and there’s no doubt in my mind that they had access to both the technical knowledge and the resources to keep this information safe.”
Sony plans to appeal that decision, saying that the fine is undeserved. Almost as interesting as the piece of news itself are the comments from the community. Many gamers have pointed out that this represents half a cent per account, in other words a slap on the wrist for a company like Sony, and given the impact. On the other hand, Sony’s health was already dramatically impacted at the time by the bad image and the costs involved with the hacks, so one can wonder if UK’s fine is necessary (Sony’s stock value has been divided by 3 since March 2011. Last month, Sony’s stock hit its lowest since 1988)
My opinion back in 2011 was that Sony should not pretend to play in the same league as companies such as Microsoft or Google, if they do not have the security measures that go with it. And I’ll stick with that opinion: it’s one thing to sell TVs and video game consoles, it’s another one to handle online services and people’s wallets. We can hope that Sony have learned that lesson, and spend more time and money in protecting their customers’ personal information than they did back then. (If I were cynical, I’d pretend that if they spent as much effort in securing our information, as they spend preventing people from stealing their intellectual property, this issue would have never happened)
More details on the official Penalty Notice
-
-
I’m pretty sure that the ID protection they offered afterwards cost more than half a cent.
-
Not per user… Not compared to all those effected.
-
How do you mean? Everyone who wanted that ID protection could get it (well, it wasnt available in every country worldwide, but still). Everyone also got free PS3 and PSP games, those had a value of more than 50 cent.
-
I can also mention that there was no evidence that 77 million accounts were compromised. It was just that they couldnt rule it out 100%. But this is just speculation
-
-
-
You’re worth 0 cents you worthless American. Only the European master race is worth defending.
-
That’s the stupidest thing I’ve ever heard hahaha. You know Most Americans came from Europe right? And there’s no such thing as a master race so stop devolving.
-
-
Does anyone realize that Xbox Live has been hacked several times over? No, because for some reason the media only cared about Sony. Not only that, but no one seems to care that hacking in general is a cyber crime. It’s no different than walking into someones house with a simple lock and then stealing everything from the house. It’s still burglary.
-
-
I support Sony’s decision. They don’t need to pay any damn fine at all, considering you were all too moronic to keep your PSN accounts secure.
God damn, you’re all a bunch of regular Dingo-felating jackoffs.
-
??? You are realizing that the hack was on their servers directly… Not through user errors?
-
huh? It was sony who got hacked and lost our personal data, the users had no way to keep their psn accounts secure. So I guess we were just too lazy to go back in time and remove our personal. You sir are a gigantic douche
-
Troll more.
-
-
I really doubt this hack was a retaliation because of the lawsuit against Geohot. People hacks things all the time trying to get information, i doubt they care much about if the company has done anything or not.
And to be fair regarding handling people’s wallet, nothing were compromised in that sector.
I wish there were more information on what exactly happened regarding the actual hack (which exploits that were used etc.). I also wonder how ICO (the UK goverment) came to their conclusion. And in this case, i feel that there is very little focus on the people who actually did the hack. That makes a bit sense since we dont know much about it, but still, they are the reason for that this incident happened.
-
Oh it certainly wasn’t a retaliation attack.
They never are.
-
I agree, i dont think this PSN hack is related to the lawsuit against Geohot in any way. I think the PSN hack would have happened even if Geohot didnt get sued.
-
-
It wasn’t a retaliation attack, but Sony do themselves no favours by disrespecting consumers time and time again.
Their aggressive stances regarding jailbreaking, hardware ownership and now second hand game ownership is a futile battle against the consumer in order to maximise profits and it that makes them more enemies than friends.
They set themselves up to be targets, hence this was not the last news worthy hack on Sony, and there will undoubtedly be more attacks to come. If you’re new to hacking, first place you point your LOIC is sony.com or playstation.com.
-
-
Sony is the victim here. So they are going to sue the victim? Which is sony? I smell fish in here.
-
When companies are handling other people’s info, the companies have a responsibility to make sure that this info is as safe as possible.
This lawsuit is about that ICO (the UK goverment agency) means that Sony didnt do enough to protect this data. I am very curious on what ICO is basing this on, that Sony didnt do enough to protect. It could be true, but i’m still curious what their report says about it.
The reason why Sony appeals this lawsuit is most likely because they mean that they did enough to prevent such hack, and that it wasnt “lazy security” on their side. The money doesnt really matter much i think, it is more about a question of being guilty or not.
The PSN hack cost Sony about 180 million dollars or so, and also that it could have given PSN a really bad reputation. Those things on their own is a pretty big punishment in itself, so this $395.000 dollars extra isnt really that important i think.
But i agree, the focus in this case has been about making Sony the bad guy, and almost ignoring the guys who actually did the hack, at least that is my impression. Of course Sony has their responisbility to make sure that all the PSN data is as secure as possible, but since we dont know anything about the details around how the PSN hack was done, it is hard to say, in my opinion.
-
“But i agree, the focus in this case has been about making Sony the bad guy, and almost ignoring the guys who actually did the hack, at least that is my impression. Of course Sony has their responisbility to make sure that all the PSN data is as secure as possible, but since we dont know anything about the details around how the PSN hack was done, it is hard to say, in my opinion.”
+1 – I support your opinion here 100%!!!
-
Sony has been bad, so have the hackers…
Both are the dodgy party in this issue.
-
-
-
Well, yes, Sony is the victim.
But, they are being fined for their poor management of the information that people have entrusted them with.
I have always believed that Sony’s management of PSN has been extremely poor and these hacks just prove that.-
Windows is hacked every day. Apple steals ideas everywhere. No one sues this companies. In my opinion, this is just them milking something to milk.
-
dude… apple, samsung and LG have a war like the Tec. World war… read the news they have things in the court on every coutry of the earth.
-
-
-
How are Sony the victim? Passwords unencrypted, with the addition of easily accessible CC information is unacceptable and they deserve every fine thrown at them.
You’re siding with a company that only give a shit about your security if they are exposed. They are not the victim, we are.
-
This.
-
-
-
Sony was dumb to not let its customers know that there information may have been stolen and can possibly be used. The fine is definitely justified although the amount is indeed a slap on the wrist compared to a user who gets fined $54,000 (Originally &1.9m)for
I personally don’t know the details of the reason behind the hack against Sony, but, if it was because of Sony suing George Hotz then that is ridiculous. I’m definitely for the pursuit of developers and (good) hackers to research and obtain ways for us players/users to use our consoles for reasons other then what the company developed it for. The way this is achieved is what makes or destroys the community though. George (whether it was discovered or downloaded) had gold in his hands and should have kept it for himself, or his team, and developed applications along the way for us. He choose the latter…
You live and you learn I guess…
-
Whoops…I messed up that post. The linked item is to the story regarding the woman sued over 24 songs.
-
Geohot…. still receives credit for all the work that was done… and wants it, er, did… Wonder what the hell hes up to… hopefully atleast wishing he had split the glory up
-
Credit is definitely there for him, but, I just don’t agree with how he went about things. He really should have kept the keys quiet and just released applications.
-
-
-
May I remind you that microsoft xbox had the same security as sony did but hackers decided to hack sony instead of microsoft…
-
So when Microsoft got hacked and some hackers stole creditcard information, please tell me why they don’t get sued?
-
I believe the microsoft hacks were individual consoles (hackers got into their accounts,only a few were affected) where as the sony had their servers hacked and all accounts were compromised
in microsofts case it was probably the users fault by giving out their password to a phising site but in sonys case it was clearly sony at fault
-
-
You know its going to be an interesting post when wololo posts it.
-
I don’t know why people are getting upset, not even 1 single person has ever reported anything wrong with their account. Those who did were looked into and found to be nothing but a lie. If you just don’t like it, well stop using PlayStation Products. These things happen and I feel Sony has learned there lesson.
-
I hope this doesn’t tear Sony up…. I bought my Ps3 after this happened (switched from Xbox)
-
I only recently became a PSN member,hopefully,my info won’t get stolen (not that a hacker could do much with my acc anyway
)-
Won’t get stolen as in PSN won’t get hacked again
-
-
So if a motherfucker rapes my daughter the government will take her to jail cause she didnt prevent it?
The uk government should put efforts to caught the hackers instead of doing this kind of shit.
And im not a fanboy, i dont give a fuck about companies, but punish the victim is not just unfair, is stupid.
-
I think everyone should actually be a little relived that Sony only got what amounts to a slap on the wrist.
Think about it this way: if they’d been sentenced to a gawdawful amount, who do you think they’d start coming after?The more heat Sony gets for what happened due to people hacking their consoles, the more heat Sony’s gonna put ON THE PEOPLE HACKING THEIR CONSOLES.
Be glad the penalty wasn’t stiffer…
Not that Sony won’t blow this completely outta proportion. -
hopefully or else alot of everyday sony user might get arrested for like downloading n using save games from the internet or sumthing i mean they did have isssues with cheating last i heard …. so on sony end i noticed alot of vita stuff is getting real cheap a back up battery thing cost like almost fity dallers nows its like twenty sumthing even the systhem are getting prety cheap n heard that sony sold like the us building or sumthing so was wandering if sony needed the money or sumthing…
-
Goood….Gooooood…..Ive been looking into investing in them and if you hit the bottom of the barrel, you can only go up. I don’t see them ever going Sega’s way as they are not just video games, and they are are not just cameras, and they are not just tv or stereos or any one thing, so they’ll bounce back up sooner or later. It’s like Pfizer right back in the 1000s with celebrex and even now with lipitor and a few others. It’s still around.
-
This is so dumb that sony wouldn’t just come to a settlement to avoid media hype. They already have a crap rep and it just gets worse. I don’t know anyone who supports any sony products at all everyone I know owns SAMSUNG LG or Panasonic items in their homes cars or even accessories. Sony needs to shape up they should start with releasing some real ps vita games because everyone I know who bought a vita returned it to buy a tablet or something else

Apparently we're on twitter too
55 comments
Comments feed for this article
Trackback link: http://wololo.net/2013/01/27/sony-gets-a-slap-on-the-wrist-for-the-2011-playstation-network-hack/trackback/