The PSN Fiasco

It’s now the US government’s turn to question Sony about its online security, which follows the UK government’s scrutiny into the company’s affairs.

In a letter addressed to PlayStation executive deputy Kaz Hirai, the Subcommittee on Commerce, Manufacturing, and Trade has prepared a list of questions related to the intrusion; the list can be downloaded from the New York Times here. The letter asks several questions that Sony has not disclosed to the public, such as:

  • How many PSN users had a credit card on file
  • Why Sony cannot determine if credit card was stolen.
  • What are Sony’s plans towards increasing its security in the future.

The Subcommittee’s press release states:

“Given the amount and nature of personal information known to have been taken, the potential harm that could be caused if credit card information was also taken would be quite significant. The Subcommittee on Manufacturing, and Trade has a longstanding interest in consumer privacy, identity theft, and industry efforts to address threats posed by unauthorized access to consumers’ personal information resulting from a data breach.”

The Subcommittee is requiring a reply by no later than May 6, as part of a privacy driven effort “to protect consumer information.”

Meanwhile, Kaz Hirai will be holding a press conference tomorrow from Sony Japan, to address the PlayStation Network hacking crisis.

The conference will be held at 2PM Japan time, which means a lovely 12 midnight time for those in New York and 5AM the next day for those in London.

It is expected that Hirai will announce a new PlayStation Network security system, and when PSN will be live for users to enjoy. He also may announce what sort of compensation Sony will offer.

As for PSN itself, the service is still down, but Sony has already stated that the service would return sometime around May 3. For the last two weeks, PlayStation Network has been down, and worse, personal data was exposed, including millions of debit card data. In fact, some underground sites have begun sellingwhat they claim are 2.2M credit card info, though the claims could be fraudulent or worse, propagating computer worms or viruses.

Regardless, Sony has let users know in a recent FAQ that they’ll compensate their users somehow for the trouble.

The PlayStation EU Blog promises:

“We are currently evaluating ways to show appreciation for your extraordinary patience as we work to get these services back online.”

It’ll be interesting to see what kind Sony comes up with. As a baseline, Microsoft and Electronic Arts have offered free games for outages.

iPhone and PlayStation 3 jailbreaker George “Geohot” Hotz has weighed in on the current PlayStation Network outage stemming from PSN identity theft from unknown hackers in his blog.

He immediately denied having anything to do with the scam, with the reasoning that he’s not stupid, though he doesn’t refrain from taking a potshot at Sony executives:

“To anyone who thinks I was involved in any way with this, I’m not crazy, and would prefer to not have the FBI knocking on my door. “Running homebrew and exploring security on your devices is cool, hacking into someone elses server and stealing databases of user info is not cool. You make the hacking community look bad, even if it is aimed at douches like Sony.”

He continued:

“Also, let’s not fault the Sony engineers for this, the same way I do not fault the engineers who designed the BMG rootkit. The fault lies with the executives who declared a war on hackers, laughed at the idea of people penetrating the fortress that once was Sony, whined incessantly about piracy, and kept hiring more lawyers when they really needed to hire good security experts. Alienating the hacker community is not a good idea.”

Hotz concluded with some words to those behind the scam, again slamming Sony in the process:

“To the perpetrator, two things. You are clearly talented and will have plenty of money(or a jail sentence and bankruptcy) coming to you in the future. Don’t be a dick and sell people’s information. And I’d love to see a write up on how it all went down…lord knows we’ll never get that from Sony, noobs probably had the password set to ’4? or something. I mean, at least it was randomly generated.”

His full blog entry can be found here.

0 thoughts on “The PSN Fiasco”

  1. Happened for quite a while, Oliver. The main thing people were upset about was the fact that Sony delayed to announce it’s customers about the issue. Basically, Sony knew for (almost a week? please correct me if I’m wrong) that the network got compromised, but didn’t announce it’s customers.
    Not cool.

    I like Geohot’s take on the issue.

    My take to the three questions:
    – more than 70% of the customers
    – they don’t know how much of their network was compromised, more likely because the hackers cleaned up a good deal of their tracks
    – hard to say. For each lock you put in place, you also need a safe place to put the key in.

  2. Happened for quite a while, Oliver. The main thing people were upset about was the fact that Sony delayed to announce it’s customers about the issue. Basically, Sony knew for (almost a week? please correct me if I’m wrong) that the network got compromised, but didn’t announce it’s customers.
    Not cool.

    I like Geohot’s take on the issue.

    My take to the three questions:
    – more than 70% of the customers
    – they don’t know how much of their network was compromised, more likely because the hackers cleaned up a good deal of their tracks
    – hard to say. For each lock you put in place, you also need a safe place to put the key in.

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Post

Episode 534: Epic ExclusiveEpisode 534: Epic Exclusive

There was a lot of shocking news in the past week — unfortunately, Jonah was at PAX East, so last week’s episode ended up not being published. But there’s still more news this week.

The news includes:

  • Borderlands 3 might be an Epic Store exclusive
  • Videogame news subreddit closes for 24 hours to protest bigotry
  • John and Brenda Romero working with Paradox on new strategy IP
  • Sony unveils PSN refund policy

Let us know what you think.

Episode 484: Letters!Episode 484: Letters!

This week’s podcast was delayed in publishing thanks to the holiday week being more hectic than usual. However, better late than never, and there’s even some listener feedback included!

The news items include:

  • Valkyria Chronicles 4 is mobilizing for deployment in the west in 2018
  • Clicker Heroes 2 developer abandons microtransaction model citing ethical concerns
  • Rainbow Six Siege is getting a high-tech ninja named Vigil
  • Minecraft is adding tridents, shipwrecks, dolphins and coral reefs in Spring 2018

Let us know what you think.

Nintendo Wants More Wii and DS SalesNintendo Wants More Wii and DS Sales

At E3 Reggie Fils-Aime let the world know he wasn’t satisfied with the sales progress of the Wii or DS in 2007 and hopes Nintendo can do better this year. Perhaps Nintendo is playing the humble card? No doubt they bragged about their 10 million sales of the Wii and 20 million sales of the DS but quickly followed it by saying they’re not satisfied.

Or, is this a threat?

Nintendo has built some steep competition while both Sony and Microsoft scoff at their product and tell everyone its a novelty and it doesn’t really “count” in this next-generation console battle. It doesn’t count… really?

Perhaps Microsoft and Sony are right; maybe every Wii owner that wanted a PlayStation 3 and/or an Xbox 360 purchased their console too. There may be some truth to that as hardcore gamers may purchase a Wii for many reasons:

  • They want every console so they have the widest array of game purchases
  • They’re hardcore nature forces them to spend money on all products
  • They want to get their kids in on gaming early, to grow them up in their image
  • Mob mentality, if everyone has a Wii you must as well!
  • The technology is cool and you want to be there for its inception

It seems they don’t feel a threat because Wii is a non-gamer console and thus attracts a different crowd… yet they’re both mimicking some of the motion sensing in their own controllers and playing nice towards “casual games” and non-gamers of late. Maybe their not threatened, but impressed?

Fils-Aime isn’t impressed with their sales figures, perhaps because he expected a higher degree of Wii sales by now, but the fact that people cannot purchase them two years into production has hurt sales figures. Although 10 million units sold is an impressive figure, knowing you had such higher potential if the product was actually on the shelves has to hurt a bit of your pride.

The DS sales were impressive considering the product has been in the market for awhile and is easier to find (minus the holiday rush). We’re not sure why he’s not satisfied with the figures, but inspiring a higher degree of DS sales will require some work. Perhaps this is why they’ve gone with the GTA Chinatown approach; using the GTA name to grow their DS sales figures?

It will be interesting to see how Wii does through the next few quarters and if sales slow down now that we’re a few years into the product. What was the last home console Nintendo owned to get this high of a demand?

Perhaps none.