• PS3 Hacks, PSN , 20.04.2010

    It seems that a few websites are reporting that PSN has been hacked, i personally don’t think it has been, it seems an over exaggeration, or misunderstanding, im not quite sure which, but i guess only time will tell on the matter.
    Anyhow, website Ironstar reported in the early hours of this morning, that one of its members had fallen foul to a PSN chain letter, which when clicked on, it redirected him to a code geneartor site, stealing his PSN log in details and Credit Card information, here is an quote from the site:
    Ironstar: http://www.ironstarmovement.com/profiles/blogs/the-playstation-network-is

    This issue does not involve general chain letters sent around PSN, the article is referring to chain letters containing PSN code generator website URLs specifically. Our colleague did not enter any credit card information into any malicious website. His PSN account information including his credit card info was somehow obtained through the PlayStation Network, because he opened the message sent to him. More PSN users have stepped forward and reported suspicious purchases appearing on their billing transactions. If you haven’t noticed any suspicious activity on your account but you have opened one of these specific chain messages or went to a malicious code generator website on your PS3 we strongly recommend that you take precautions.

    He claims that he did not enter any credit card details, but it dosnt say that he didnt enter his PSN log in details, there are numerous sites and programs out there that ask you to put in your PSN log in details and youll get so much £/$ free, these of course are scams, so did the user of Ironstar, enter in his log in details in hope of getting free credits, or is there a a site out there that is able to sniff all your details, you decide.

    A couple of tips to keep you safe:
    1.Delete any spam/junk messages straight away and delete/block the sender, DO NOT open them.
    2.NEVER give your PSN log in details to anyone, site or program.

    Tags: , ,

    Discuss in Forums (20)


  • 20 Comments

    1. Nextis
      04-20-2010
      12:08 PM
      1

      Maybe Someone got a Lv2 dump found something & can now get people info when they check on there links if so this is really bad news...>< I think it wood be best to not use the PS3 Net browser or give your PSN Email on PC & dont open any Email on it from people you dont know etc.. and do not save your billing info on your PS3.

    2. squidcow
      04-20-2010
      12:59 PM
      2

      Its probably because they used the DNS hack to bypass the latest firmware. It sends your PSN info through untrusted servers.

    3. SuperDre
      04-20-2010
      01:12 PM
      3

      ofcourse it's utter BS, otherwise there is something really bad about the security of PSN itself, if you can get somebodies complete PSN login only by the user opening a mail on his PS3.

    4. GregoryRasputin
      04-20-2010
      01:16 PM
      4

      Originally Posted by SuperDre View Post
      ofcourse it's utter BS, otherwise there is something really bad about the security of PSN itself, if you can get somebodies complete PSN login only by the user opening a mail on his PS3.
      The fact that opening a chain letter and getting scammed, may be utter BS, but there are sites/programs which claim to give you free PSN $ if you enter your PSN email and password and yes there are plenty of people dumb enough to fall for these sites/programs.

    5. mcd1992
      04-20-2010
      03:05 PM
      5

      Originally Posted by squidcow View Post
      Its probably because they used the DNS hack to bypass the latest firmware. It sends your PSN info through untrusted servers.

      You need to learn how dns works..... the only way he could of gotten login details is if he pointed the dns servers back to his computer and ran a EXACT clone of the legit psn server which would require the ssl private key which means he would of had to crack the psn server in the first place

    6. the_tom777
      04-20-2010
      04:55 PM
      6

      how're people able to do things like this?

      http://cgi.ebay.com/150-PSN-ACCOUNT-...9#ht_845wt_958

    7. GregoryRasputin
      04-20-2010
      04:57 PM
      7

      Originally Posted by the_tom777 View Post
      how're people able to do things like this?

      http://cgi.ebay.com/150-PSN-ACCOUNT-...9#ht_845wt_958
      This is off topic, but i will answer your question

      They use stolen credit cards, if you buy one of these accounts, you can be at risk of your PS3 being permanently banned.

    8. stadicon
      04-20-2010
      06:47 PM
      8

      What a coincidence! SONY removes OtherOS for security reasons, and right when they need a reason to make "hackers" being an enemy of the typical user... boom! There is a (supposed) PSN hacking incident.

      Well, i don't really care about it. SONY protected us, users of OtherOS, by blocking us from PSN, so that's really secure :P And, just in case it is actual PSN hacking, i am not afraid of SONY. Apparently they'll solve it as well as OtherOS: they'll remove PSN from PS3... Nice solution, isn't it?

      Anyway, seriously this is more about stupidity than actual hacking. It would be hacking only if SONY wanted to, in order to make the "bad hackers" seem "more bad" to the people, so that the whole OtherOS removal becomes reasonable. But, still, the stupid sharing of credentials seems to be more likely the truth.

    9. squidcow
      04-20-2010
      07:39 PM
      9

      Of course DNS doesnt work that way, I left out the word proxy. Proxy/DNS Hack. You push your info through a proxy and all your traffic can be sniffed. Who knows what is broadcast in plain text. There were warnings on other sites about using this method and how your PSN info could possibly be compromised.

    10. mcd1992
      04-20-2010
      08:04 PM
      10

      Originally Posted by squidcow View Post
      Of course DNS doesnt work that way, I left out the word proxy. Proxy/DNS Hack. You push your info through a proxy and all your traffic can be sniffed. Who knows what is broadcast in plain text. There were warnings on other sites about using this method and how your PSN info could possibly be compromised.
      Using the proxy method locally wouldn't compromise security any more than using PSN the correct way. I've never seen any third-party psn proxies tho, but if people where using them then yea that could be a vuln.

    11. Qraze1
      04-20-2010
      09:21 PM
      11

      what it means is sony will take away the poop net browser, followed by psn messages until they release in-game chat and make people pay to use it all again while claiming it to be better because you paid. bet.

      i worry more about this here site and its lack of security. already had one pc that was virus infected by hax.net some time ago and i guess its just a matter of time before the next. and please don't tell me it wasn't hax.net because it absolutely was, you invite the dreggs just with the site name.

    12. mcd1992
      04-20-2010
      09:41 PM
      12

      just a tip, those ads that say your the 10k visitor. they may look preety but they lie, dont click em'


      :P

    13. d0zs
      04-20-2010
      09:57 PM
      13

      i know what happened, well i can almost guarantee it: when he did the stupid ass PSN code gen referral scheme, one of the requirements is to complete a fake test, as shown here:

      when you finish the fake test it'll force you to enter your cell phone number so it can text message you a pin number, when you confirm that pin you got to the website, you'll recieve a bill with an added charge for some bull**** service.

    14. PoeticEnd
      04-20-2010
      11:57 PM
      14

      I Just got a similar message, it came from a friend I've had for a few months now talking about free $ for x amount of referrals and a PSN Code Generator but there wasn't any URL so I just deleted it thinking it was some random ass scam/spam.

      The message itself looked too well written and punctuated to be my friends writing so it had me wondering. Seriously hope I didn't put myself at risk for opening that.

    15. GregoryRasputin
      04-21-2010
      02:17 AM
      15

      Originally Posted by Qraze1 View Post
      i worry more about this here site and its lack of security. already had one pc that was virus infected by hax.net some time ago and i guess its just a matter of time before the next. and please don't tell me it wasn't hax.net because it absolutely was, you invite the dreggs just with the site name.

      Dont be silly, the sites security is fine, you cant get viruses from other users, the only problems we ever had was with one of the advertisement companies, that was fixed a long time ago and any advertisements can be blocked with Adblock +.

      Regardless of that, how can you be 100% sure that it was this site and not one of those illicit sites you regularly visit, you claim we invite the "dreggs" here, then i guess that must make you one too.

      Also in future, could you stay on topic and if you have a problem about the site, any of its members, or staff, be mature enough to report it the right way and spam an unrelated thread about it, thank you.

    16. thefoolnz
      04-21-2010
      03:15 AM
      16

      A couple of tips to keep you safe:
      1.Delete any spam/junk messages straight away and delete/block the sender, DO NOT open them.
      2.NEVER give your PSN log in details to anyone, site or program.

      Nice report Greg, good tips above , the common role should be if it sounds to
      good to be true , it normal is , when it comes to web offers.

      nice going

    17. Qraze1
      04-21-2010
      11:32 AM
      17

      just sony spreading rumors to justify killing any more features. in my own conspiracy theory.

    18. h@kdpl@net!!!
      04-22-2010
      03:12 PM
      18

      whoa!!! what if:
      1) inside job by $ony
      2) sum1 read mathuelah's(? the psp hacker guy) interview & found that hardware vulnerability he was talking about?
      3) geohot found a way 2 edit his MAC adress, could u spoof sum1 else's system w/ that?
      4) auto-updates-could they give more or better sniffing opportunities ?
      5) col. mustard in the kitchen w/ the candlestick & a PSP!!!
      ************* [ - Post Merged - ] *************
      UPDATE- long story short:
      a few days ago my GF's debit card, according to the bank, was used to add 10$ to my PSN account. now y'all know whenever you add funds, you get a e-mail receipt. we didn't get one. i called the bank & a real life person verified it was $ony. i call up PSN customer serv. & they said that all that data is stored on my system & they cant erase it, i HAVE to update & go online to check it & delete as necessary. PSN also told me i should REALLY REALLY REALLY file a fraud report w/ the bank. (he couldn't stress it enough). any thoughts, feelings, opinion, & suggestions would b appreciated. i think they did get hacked-MAYBE a spoofed PSN server?

    19. GregoryRasputin
      04-23-2010
      07:54 AM
      19

      Front page updated with this, it seems that indeed his account was hacked, though im still a bit unsure about this, but thats just me.

      *Update*
      We have just received word from Sony's PlayStation Network investigation team; Dom's account was indeed hacked. According to Sony, Dom's PlayStation Network account was accessed from an unknown IP address that purchased loads of unauthorized content from the PlayStation Store. Sony also reimbursed Dom's credit account with half of the money he was charged. The situation is still being investigated. We will give you a final update when the situation is resolved.
      Source: http://www.ironstarmovement.com/prof...network-users/

      Thanks for pointing this out JordanBlack68

    20. h@kdpl@net!!!
      04-23-2010
      05:57 PM
      20

      heres my update: talked to the bank, there gonna look into it, put a stop-payment order on anything related to sony. heres something i found googling around:http://www.shacknews.com/onearticle.x/51936
      apperently this is an EPIC FAIL on sony's part: the psn store has for some time been open to PC's (WHY??? & they were scared of linux running ps3's? @ least the linux ps3's wouldn't have enough RAM to run dictionary attacks, sniffers, & phishers, etc) this dom guy from ironstar had his account hacked by sum1 using a PC. WHY in the hell are they going to let PC's access the store??? that's a bigger security risk than smuggling osama bin laden in your butthole through a columbian airport @ 3:00am carrying a suitcase full o' cocaine & a backpack full of marijuana & stopping to pet the police dogs on the way to the plane. & they're SCARED OF LINUX on our ps3's ??? WTF!!! talk about needing to get their priorities straight. & now they wanna open the WHOLE PSN UP to PC's (reffering to 3.3's remote play via PC)
      ************* [ - Post Merged - ] *************
      i can smell, hear, feel, taste, & see the faint firelight of an APOCOLYPS3 from here. 5 bucks says the PSN is gonna get hacked to bits so bad in the end, it'll make the PSP scene look like a frickin cakewalk through a nice park on a clear sunny day. we dont have to worry about wen CFW comes out, wen it does sony's gonna b too busy putting out the fires that are PSN hackings to care to track down consoles running CFW. they may just check enough to see if it's a real ps3 & not a PC out phishing. it's coming, just wen, not if. FALLOUT new vegas should just b renamed FALLOUT new PSN. now THAT would b an adventure !!!