The PSN Fiasco

It’s now the US government’s turn to question Sony about its online security, which follows the UK government’s scrutiny into the company’s affairs.

In a letter addressed to PlayStation executive deputy Kaz Hirai, the Subcommittee on Commerce, Manufacturing, and Trade has prepared a list of questions related to the intrusion; the list can be downloaded from the New York Times here. The letter asks several questions that Sony has not disclosed to the public, such as:

  • How many PSN users had a credit card on file
  • Why Sony cannot determine if credit card was stolen.
  • What are Sony’s plans towards increasing its security in the future.

The Subcommittee’s press release states:

“Given the amount and nature of personal information known to have been taken, the potential harm that could be caused if credit card information was also taken would be quite significant. The Subcommittee on Manufacturing, and Trade has a longstanding interest in consumer privacy, identity theft, and industry efforts to address threats posed by unauthorized access to consumers’ personal information resulting from a data breach.”

The Subcommittee is requiring a reply by no later than May 6, as part of a privacy driven effort “to protect consumer information.”

Meanwhile, Kaz Hirai will be holding a press conference tomorrow from Sony Japan, to address the PlayStation Network hacking crisis.

The conference will be held at 2PM Japan time, which means a lovely 12 midnight time for those in New York and 5AM the next day for those in London.

It is expected that Hirai will announce a new PlayStation Network security system, and when PSN will be live for users to enjoy. He also may announce what sort of compensation Sony will offer.

As for PSN itself, the service is still down, but Sony has already stated that the service would return sometime around May 3. For the last two weeks, PlayStation Network has been down, and worse, personal data was exposed, including millions of debit card data. In fact, some underground sites have begun sellingwhat they claim are 2.2M credit card info, though the claims could be fraudulent or worse, propagating computer worms or viruses.

Regardless, Sony has let users know in a recent FAQ that they’ll compensate their users somehow for the trouble.

The PlayStation EU Blog promises:

“We are currently evaluating ways to show appreciation for your extraordinary patience as we work to get these services back online.”

It’ll be interesting to see what kind Sony comes up with. As a baseline, Microsoft and Electronic Arts have offered free games for outages.

iPhone and PlayStation 3 jailbreaker George “Geohot” Hotz has weighed in on the current PlayStation Network outage stemming from PSN identity theft from unknown hackers in his blog.

He immediately denied having anything to do with the scam, with the reasoning that he’s not stupid, though he doesn’t refrain from taking a potshot at Sony executives:

“To anyone who thinks I was involved in any way with this, I’m not crazy, and would prefer to not have the FBI knocking on my door. “Running homebrew and exploring security on your devices is cool, hacking into someone elses server and stealing databases of user info is not cool. You make the hacking community look bad, even if it is aimed at douches like Sony.”

He continued:

“Also, let’s not fault the Sony engineers for this, the same way I do not fault the engineers who designed the BMG rootkit. The fault lies with the executives who declared a war on hackers, laughed at the idea of people penetrating the fortress that once was Sony, whined incessantly about piracy, and kept hiring more lawyers when they really needed to hire good security experts. Alienating the hacker community is not a good idea.”

Hotz concluded with some words to those behind the scam, again slamming Sony in the process:

“To the perpetrator, two things. You are clearly talented and will have plenty of money(or a jail sentence and bankruptcy) coming to you in the future. Don’t be a dick and sell people’s information. And I’d love to see a write up on how it all went down…lord knows we’ll never get that from Sony, noobs probably had the password set to ’4? or something. I mean, at least it was randomly generated.”

His full blog entry can be found here.

0 thoughts on “The PSN Fiasco”

  1. Happened for quite a while, Oliver. The main thing people were upset about was the fact that Sony delayed to announce it’s customers about the issue. Basically, Sony knew for (almost a week? please correct me if I’m wrong) that the network got compromised, but didn’t announce it’s customers.
    Not cool.

    I like Geohot’s take on the issue.

    My take to the three questions:
    – more than 70% of the customers
    – they don’t know how much of their network was compromised, more likely because the hackers cleaned up a good deal of their tracks
    – hard to say. For each lock you put in place, you also need a safe place to put the key in.

  2. Happened for quite a while, Oliver. The main thing people were upset about was the fact that Sony delayed to announce it’s customers about the issue. Basically, Sony knew for (almost a week? please correct me if I’m wrong) that the network got compromised, but didn’t announce it’s customers.
    Not cool.

    I like Geohot’s take on the issue.

    My take to the three questions:
    – more than 70% of the customers
    – they don’t know how much of their network was compromised, more likely because the hackers cleaned up a good deal of their tracks
    – hard to say. For each lock you put in place, you also need a safe place to put the key in.

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Post

Studios Closing: The Good, Bad and UglyStudios Closing: The Good, Bad and Ugly

Gamers around the world are going to feel the pain in the 2009 holiday season after the economy shakes apart many great development studios. Electronic Arts feels the pain of being a public company as their investors complain about lackluster revenue, THQ deals with closing studios to extend their runway and other firms will lose more headcount in the coming months.

It’s not all bad. But, it’s going to get ugly before it gets better.

The financial market has played tricks on everyone in our global economy and companies across all industries are going to feel a bit of a tightening around the belt. Investors are shaken and doing their best to protect their investments and cutting loose those that aren’t projecting profits in the near future. Game studios are going to slow their financial burn rates, trim a bit of the fat and hunker down the long term. The end result, next years holiday season will have a few less games because those games are being dropped to the floor now.

Mid-sized studios within larger firms may find their projects canceled or put on hold and their employees re-structured or let go while big studios assess what projects will make the long haul. This is the ugly side of the business, having to make a decision on what games stay and what games go with the grief of having to tell some of your best talent “goodbye.”

The bad part of the industry is occurring today, with publishers posting mediocre profits and trying to convince their investors to be patient and trust they’ve got a firm hold on their destiny. The game industry is not alone in this, many firms are reducing head count and many startups are finding themselves without series A or B funding; they’re closing their doors because the money is being directed to more stable ventures.

What’s the good in all of this?

(more…)

Microsoft Avatar’s and DashboardMicrosoft Avatar’s and Dashboard

Microsoft has come out and validated some earlier rumors about Xbox 360 Avatar’s and their 3D dashboard design. Apparently, this is to build more of a community and bring a bit of the Mii-like influence from the Nintendo Wii to the 360 hardware.

It seems Microsoft is taking some of the concepts from the Nintendo Wii which were poorly implemented due to the lack of any real network community and bring them to live with a more integrated useful system. This proves Nintendo was on the right track but shows off their lack of integration and fear of bringing people together.

“Create, share, and have fun with all of your friends… but avatars are just the beginning. The new Xbox is tailored for the living room. Here we are at the community channel — instead of a list of friends, you actually see them.” (joystiq)

Nintendo’s cute little idea of Mii’s and sharing them with friends was fantastic, a great bullet list feature, but rather useless. Typing in friends codes gets old way too fast and there really isn’t anyway to vocally chat with people on your friends list anyway, so who cares?

Microsoft has proven to know a bit about the community space, has parental controls and a fairly reliable LIVE system for making it all happen. Although Nintendo should look at this with a bit of pride, given duplication is the best form of flattery, they could learn a few things about how to work a community into your console too!

Episode 400: So Long, PaulEpisode 400: So Long, Paul

Well, the fateful day has come on this landmark podcast, as Paul says farewell as a regular podcast host. We can all look back at Jonah’s debut in episode 200, with the knowledge that the next episode will make him the longest running host or co-host on the show – and that’s just scary. A former host leaves a message as well.

This week’s news includes:

  • Creator of My Little Pony: Friendship is Magic is crowdfunding a fighting game
  • Xbox head discusses why Final Fantasy 14 is not on Xbox One
  • Pachter: “The console installed base is as big as it’s ever going to get”
  • Andrew House: the PS4 is struggling against censorship in China
  • Analyst: 30 million VR headsets by 2020

The Question of the Week: “What’s the creepiest videogame you ever played?”