The PSN Fiasco

It’s now the US government’s turn to question Sony about its online security, which follows the UK government’s scrutiny into the company’s affairs.

In a letter addressed to PlayStation executive deputy Kaz Hirai, the Subcommittee on Commerce, Manufacturing, and Trade has prepared a list of questions related to the intrusion; the list can be downloaded from the New York Times here. The letter asks several questions that Sony has not disclosed to the public, such as:

  • How many PSN users had a credit card on file
  • Why Sony cannot determine if credit card was stolen.
  • What are Sony’s plans towards increasing its security in the future.

The Subcommittee’s press release states:

“Given the amount and nature of personal information known to have been taken, the potential harm that could be caused if credit card information was also taken would be quite significant. The Subcommittee on Manufacturing, and Trade has a longstanding interest in consumer privacy, identity theft, and industry efforts to address threats posed by unauthorized access to consumers’ personal information resulting from a data breach.”

The Subcommittee is requiring a reply by no later than May 6, as part of a privacy driven effort “to protect consumer information.”

Meanwhile, Kaz Hirai will be holding a press conference tomorrow from Sony Japan, to address the PlayStation Network hacking crisis.

The conference will be held at 2PM Japan time, which means a lovely 12 midnight time for those in New York and 5AM the next day for those in London.

It is expected that Hirai will announce a new PlayStation Network security system, and when PSN will be live for users to enjoy. He also may announce what sort of compensation Sony will offer.

As for PSN itself, the service is still down, but Sony has already stated that the service would return sometime around May 3. For the last two weeks, PlayStation Network has been down, and worse, personal data was exposed, including millions of debit card data. In fact, some underground sites have begun sellingwhat they claim are 2.2M credit card info, though the claims could be fraudulent or worse, propagating computer worms or viruses.

Regardless, Sony has let users know in a recent FAQ that they’ll compensate their users somehow for the trouble.

The PlayStation EU Blog promises:

“We are currently evaluating ways to show appreciation for your extraordinary patience as we work to get these services back online.”

It’ll be interesting to see what kind Sony comes up with. As a baseline, Microsoft and Electronic Arts have offered free games for outages.

iPhone and PlayStation 3 jailbreaker George “Geohot” Hotz has weighed in on the current PlayStation Network outage stemming from PSN identity theft from unknown hackers in his blog.

He immediately denied having anything to do with the scam, with the reasoning that he’s not stupid, though he doesn’t refrain from taking a potshot at Sony executives:

“To anyone who thinks I was involved in any way with this, I’m not crazy, and would prefer to not have the FBI knocking on my door. “Running homebrew and exploring security on your devices is cool, hacking into someone elses server and stealing databases of user info is not cool. You make the hacking community look bad, even if it is aimed at douches like Sony.”

He continued:

“Also, let’s not fault the Sony engineers for this, the same way I do not fault the engineers who designed the BMG rootkit. The fault lies with the executives who declared a war on hackers, laughed at the idea of people penetrating the fortress that once was Sony, whined incessantly about piracy, and kept hiring more lawyers when they really needed to hire good security experts. Alienating the hacker community is not a good idea.”

Hotz concluded with some words to those behind the scam, again slamming Sony in the process:

“To the perpetrator, two things. You are clearly talented and will have plenty of money(or a jail sentence and bankruptcy) coming to you in the future. Don’t be a dick and sell people’s information. And I’d love to see a write up on how it all went down…lord knows we’ll never get that from Sony, noobs probably had the password set to ’4? or something. I mean, at least it was randomly generated.”

His full blog entry can be found here.

0 thoughts on “The PSN Fiasco”

  1. Happened for quite a while, Oliver. The main thing people were upset about was the fact that Sony delayed to announce it’s customers about the issue. Basically, Sony knew for (almost a week? please correct me if I’m wrong) that the network got compromised, but didn’t announce it’s customers.
    Not cool.

    I like Geohot’s take on the issue.

    My take to the three questions:
    – more than 70% of the customers
    – they don’t know how much of their network was compromised, more likely because the hackers cleaned up a good deal of their tracks
    – hard to say. For each lock you put in place, you also need a safe place to put the key in.

  2. Happened for quite a while, Oliver. The main thing people were upset about was the fact that Sony delayed to announce it’s customers about the issue. Basically, Sony knew for (almost a week? please correct me if I’m wrong) that the network got compromised, but didn’t announce it’s customers.
    Not cool.

    I like Geohot’s take on the issue.

    My take to the three questions:
    – more than 70% of the customers
    – they don’t know how much of their network was compromised, more likely because the hackers cleaned up a good deal of their tracks
    – hard to say. For each lock you put in place, you also need a safe place to put the key in.

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Post

Episode 511: Grim Sky at RiotEpisode 511: Grim Sky at Riot

The guys discuss the recent report by Kotaku released this week on the shady institutionalized sexism at Riot Games, the people behind League of Legends. There’s also hints of racism as well, especially since everyone in charge is, well, a white male. Otherwise, T.J. gushes about his experiences at EVO, the fighting game convention/competition, and is looking forward to QuakeCon.

The news this week includes:

And Jonah confesses he still hasn’t played GTA5 because, well, GTA4 soured him on the series.

Small Games Make Big WavesSmall Games Make Big Waves

The game industry is doing “okay” in this bad economic time compared to other industries.  Primarily, Nintendo is rocking the house with their games, hand-held’s and consoles while mobile developers are showing some great successes in the industry. Many success stories in our industry are based on small titles, downloadable games of the more “casual” style while a few larger titles are experiencing slower than expected sales trends.

wiiwareWe’ve mentioned this in the past, but the tough economy gives many smaller developers great opportunities for success. While big publishers struggle to look good in the eyes of the investor, tiny developers can produce quality titles for minimal cash investment and time to market. Ten years ago, smaller developers tried to compete with the big boys making larger titles, cloning successful titles or simply asking investors to put it on the line for their game. Today, developers can create a small iphone app, a cute WiiWare title or exploit the XNA efforts of Microsoft for Xbox Live Arcade and actually have a chance.

There are still challenges with these smaller developers when working in the WiiWare and XBLA publishing channels, your game marketing and promotion becomes highly reliant on Nintendo, Microsoft or Sony for PSN. Tom Prata, senior director of Nintendo of America talked to Gamespot about this issue:

“Finally, there’s the problem of promotion. It’s not enough to make a great game if nobody notices it. Prata specifically said Nintendo will be devoting more resources to support the promotion and development of WiiWare games in the future.” (gamespot)

Of course, in the world of smaller game titles and downloadable casual games, you’re going to be at risk of finding a lot of “shovelware” — products that are only released to make a quick dime, often based on some license or popular theme/character. The great game titles will, hopefully, rise to the top and show themselves off amongst all the wanna-be money makers.

Those smaller developers putting a huge passion into their titles actually have a chance in this new industry trend. Game makers, internationally, now have a chance to grasp a small piece of the industry and make their dreams come true. The core audience may see this as a trend of noisly low quality titles, but I believe the industry needs this change to grow a new generation of developers based on niche interests.

While many can wait for their next release of Madden the rest of us will continue to spend a little money to see what the future innovators are going to be bringing to the table.

Episode 352: Get Ready for E3 AgainEpisode 352: Get Ready for E3 Again

It’s the last podcast before E3 2014 starts on Monday. Jonah is still ravaged by the flu, while Paul’s ghost haunts the podcast.

The news this week includes:

  • Watch Dogs sells 4 million in first week
  • Xbox One getting 34 new apps
  • Sony discontinues the PSP in Japan
  • Take-Two CEO skeptical of Oculus’ broad appeal

All this and Listener Feedback as well as a new Question of the Week: “How much info do you try to glean from E3 reports?”

For whatever reason, the file is not working. To listen to the podcast, use this player: