Sony warns users of data loss from PlayStation network hack
With network down 6 days and counting, Sony admits security breach
Computerworld - It's been six days and the PlayStation Network is still offline, and now Sony has acknowledged that the problem involved a security breach.
The online multiplayer gaming site, along with Qriocity, Sony's cloud music subscription service, went down last Wednesday and may not be back for another week.
After the outage, Sony told users their sites had been hacked, prompting PlayStation engineers to take them offline to investigate.
Today, the company posted information online admitting that the hack had breached users' account information, including name, address, birth date, purchase history and online ID.
Patrick Seybold, a senior director at Sony, also noted in the blog post that there's no evidence users' credit card information was stolen. However, he added that "out of an abundance of caution," Sony is advising users that their credit card number and expiration date may have been obtained.
"We have discovered that between April 17 and April 19, 2011, certain PlayStation Network and Qriocity service user account information was compromised in connection with an illegal and unauthorized intrusion into our network," the company wrote. "We thank you for your patience as we complete our investigation of this incident, and we regret any inconvenience. Our teams are working around the clock on this, and services will be restored as soon as possible."
Users were first frustrated with their inability to get online and play their favorite games; now, they're frustrated about the security breach and what it might mean for them financially. And they've been taking to Twitter to vent about it.
Tylerbaird tweeted: "I hate to say it, but could this be the death of the #PlayStation? Sounds like the hackers even took the kitchen sink."
And Ctrlzee tweeted: "Another upsetting thing about the PS3 data theft - you can't even protect your account by changing your password since the service is down."
Dan Olds, an analyst with The Gabriel Consulting Group, said the site outage alone was causing trouble for Sony. The data breach acknowledgement just heaps on more.
"This is the nightmare scenario for any videogame network vendor," said Olds. "Not only were they hacked, but it's taken them down for almost a week so far. Plus, they don't know the extent of the damage so far. They can't say if personal data or credit cards have been stolen. This is bad."
He added that compounding the problem is the number of kids and teenagers who use the PlayStation Network. Parents aren't going to be happy that their children's information, as well as their own data and possibly even their credit card information, has been breached.
"This incident is a huge blow to the trust between customers and Sony," he noted. "If hackers have accessed personal info and credit card data, it could cripple Sony's online gaming business. And it could have a very negative impact on their video game console business overall. If enough users perceive that Sony's network can't be trusted, they'll flee."
That, he added, could hurt Sony's entire gaming platform.
Sharon Gaudin covers the Internet and Web 2.0, emerging technologies, and desktop and laptop chips for Computerworld. Follow Sharon on Twitter at
@sgaudin or subscribe to Sharon's RSS feed
. Her e-mail address is sgaudin@computerworld.com.
Data breaches
- U.K. spy agency reportedly snooped on delegates at G20 meetings in '09
- Cyberespionage campaign 'NetTraveler' siphoned data from hundreds of high-profile targets, researchers say
- LinkedIn aims to block hackers with two-factor login
- Drupal resets account passwords after detecting unauthorized access
- US weapons system designs were reportedly viewed by Chinese hackers
- Western Australia police silent on charges for 17-year-old hacker
- Schnucks wants federal court to handle data breach lawsuit
- Microsoft brushes off claim Xbox Live accounts were compromised
- Twitter aims to become safer with two-step sign-in
- Yahoo Japan says 22 million user IDs may have been stolen
Read more about Security in Computerworld's Security Topic Center.
- 10 Hot Big Data Startups to Watch
- 11 Unique Uses for Google Glass, Demonstrated by Celebs
- How to Export Your Google Reader Account
- How to Better Engage Millennials (and Why They Aren't Really so Different)
- Telltale signs of ATM skimming
- 20 security and privacy apps for Androids and iPhones
- Big screen con artists: 7 great movies about social engineering
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- An Interactive eGuide: DDoS Attacks In today's world, Distributed Denial of Service (DDoS) attacks on organizations are becoming more prevalent. The number of attacks are increasingly annually with...
- What does it take to deliver Security, Privacy and Trust at Mimecast? This whitepaper explains the process and controls that Mimecast put in place to deliver a secure, private and trusted SaaS platform for your...
- Cloud Impacts and Outcomes for Business Leaders Learn More
- Wanted: A Trusted Provider for Public Cloud Services Learn how Dell's cloud strategy, built on the highest level of VMware integration and security, is enabling enterprises to get out of the...
- HIPAA Hiccup Solved Data protection priorities rapidly changed after a patient data leak that caused one healthcare provider unexpected expenses, potential reputational risk and possible HIPAA...
- Dell Software This overview of Dell SonicWALL next-generation firewalls showcases how you can increase network security by scanning every packet without any compromises in network... All Security White Papers | Webcasts
