Wednesday, May 4, 2011

Case PSN: over 100 million accounts compromised

Sony has discovered that the intrusion into its servers on the machines as Sony Online Entertainment (SOE), in addition to systems Playstation Network (PSN) / Qriocity, which increased the number of accounts corrupted over 100 million and represents One of the biggest computer hacking of all time. The Japanese giant has just published a press release today explaining the extent of damage.

The users' personal information were stolen between April 16 and April 17. This represents 24.6 million accounts associated with online computer games such as EverQuest or DC Universe Online. It is a flaw that can easily give rise to phishing or identity theft. Bank account details of users Austrian, German, Dutch and Spanish have also been stolen but they date from 2007, which somewhat minimizes their importance.

SOE's servers have been attacked at the same time as the PSN servers / Qriocity, but Sony is not noticed it after having launched an investigation into the incident that forced him to disconnect some servers during Easter week ( cf. "The Way of the Cross Playstation Network). At the time he thought the attack that took place between April 17 and April 19 only covered servers PSN / Qriocity.

SOE servers are different machines, the company did not think initially they were also affected. The incident PSN / Qriocity was responsible for the release of 77 million user accounts (see "the Playstation Network information is compromised"). Sony seems to have learned a lesson. While he waited for more than a week to alert users of its services PSN / Qriocity theft of their bank information (see "Case PSN attention to your bank account"), which earned him to be very critical as to stoop very low to apologize (see "Case PSN: Sony apologizes in Japanese), the firm has been quicker to explain the attack on its servers SOE.

By cons, one can not help but be amazed by the security problems faced by Sony. The breach in the servers SOE seems to have been discovered by accident, which is very worrying. For example, the firm did not seem to have systems to alert administrators of intrusions, since Sony officials have said they just add such tools to their arsenal.

Meanwhile, all SOE services are offline. The company promises to provide 30 days of free services to its customers in addition to other gifts. These are similar offerings to what was offered to customers PSN. Sony had promised to restore some services PSN / Qriocity this week. Remains to be seen if this discovery will change things, but we do not think so.

No comments:

Post a Comment