• PS3 Hacks, PS3 Legal (Sony), PSN , 05.05.2011

    You know when you are just about to start feeling sorry for a company that’s is going through a hard time, you are reminded quite abruptly that it was their own fault.

    Sony used outdated software, outdated security and knew that your details were at risk, they monitored forums like PS3HaX and PSXScene, they seen what we wrote, i know i have stated this before, but i will state it again, back in February of this year, there were several major warning signs that PSN and its security was at risk, these articles that were posted, there is absolutely no doubt that Sony read them, they were warned via Twitter, they were warned via Email, so was it arrogance that stopped them researching, this arrogance that led them to believe that their security was safe, because their machine was free from risk, was it their anally retentive obsession with chasing the likes of GeoHot, fail0verflow, graf_chokolo and all the other hackers that threw them of track, or were Sony to dumb to figure out the flaws, regardless of the reason, their negligence put 50k+ users details at risk.

    Now before i spiral off into a rant that will make me looks like a deluded idiot, the main reason behind this news article is the Court Case which happened to day, where the US House of Representatives’ Subcommittee on Commerce, Manufacturing, and Trade, began hearings on the huge security breach of both PSN and SOE, those in attendance were David Vladeck(Director Bureau of Consumer Protection Federal Trade Commission), Pablo Martinez(Deputy Special Agent in ChargeCriminal Investigative Division, U.S. Secret Service), Justin Brookman(Director Consumer Privacy Project Center for Democracy and Technology), Dr. Gene Spafford(Executive Director Purdue University, people not in attendance were Sony( surprise ?).

    Here are a couple of quotes from the opening Statement by Mary Bono Mack Chairman, Subcommittee on Commerce, Manufacturing, and Trade:

    In recent years, sophisticated and carefully orchestrated cyber attacks – designed to obtain
    personal information about consumers, especially when it comes to their credit cards – have
    become one of the fastest growing criminal enterprises here in the United States and across the
    world. The boldness of these attacks and the threat they present to unsuspecting Americans was
    underscored recently by massive data breaches at Epsilon and Sony.

    With 77 million accounts stolen – including some 10 million credit card numbers – the data
    breach involving Sony’s PlayStation Network has the potential to become the “Great Brink’s
    Robbery” of cyber attacks. And the “take” keeps going up.
    While the FBI and Secret Service, along with other law enforcement agencies, work around the
    clock to try and crack this sensational case, we now learn that a second Sony online service was
    also compromised during the same time period. Computer hackers obtained access to personal
    information relating to an additional 25 million customer accounts. That’s more than 100
    million accounts now in jeopardy.

    Like their customers, both Sony and Epsilon are victims, too. But they also must shoulder some
    of the blame for these stunning thefts, which shake the confidence of everyone who types in a
    credit card number and hits “enter.” E-commerce is a vital and growing part of our economy.
    We should take steps to embrace and protect it – and that starts with robust cyber security.

    As Chairman of this Subcommittee, I am deeply troubled by these latest data breaches, and the
    decision by both Epsilon and Sony not to testify today. This is unacceptable.

    In Sony’s case, company officials first revealed information about the data breach on their blog.
    That’s right. A blog. I hate to pile on, but – in essence – Sony put the burden on consumers to
    “search” for information, instead of accepting the burden of notifying them. If I have anything to
    do with it, that kind of half-hearted, half-baked response is not going to fly in the future.

    Full PDF Can Be Read Here

    A quote from Justin Brookman:

    At the time of this hearing, news reports are still circulating about two large recent data breaches. In late April, Sony Corp. announced that its Playstation Network had been hacked earlier that month, compromising an estimated 77 million accounts containing unencrypted personal information such as names, addresses, birth dates, login credentials in addition to potentially tens of thousands or even millions of credit card numbers.1 On Monday night, Sony revealed that the breach had extended to its Sony Online network as well, taking the total number of affected accounts to over 100 million.

    Full PDF Can Be Read Here

    A quote from Dr. Gene Spafford:

    This year, before this hearing, two very large and troubling exposures of such data were reported by Sony and Epsilon, with potentially over 100 million consumers affected by the combination of incidents.
    These two cases are particularly illustrative of the complexities of such incidents. The individuals affected by the Epsilon case had no idea they had records stored with Epsilon, and likely still have no idea what the extent of their relationship is with that company.
    In the
    Sony case, the majority of the victims are likely young people whose sense of risk, privacy and consequence are not yet fully developed, and thus they may also not understand the full
    ramifications of what has happened. Presumably, both companies are large enough that they could have afforded to spend an appropriate amount on security and privacy protections of their data; I have no information about what protections they had in place, although some news reports indicate that Sony was running software that was badly out of date, and had been warned about that risk.

    Full PDF Can Be Read Here

    All of the documents can be found here.

    Source OF Documents

    Tags: , ,

    Discuss in Forums (29)


  • 29 Comments

    1. bigo93
      05-05-2011
      06:49 PM
      1

      Now do ppl feel like signing this petition just to add to the volume?

      tinyurl.com/fracksony

    2. Amendment01
      05-05-2011
      07:06 PM
      2

      @GregoryRasputin
      Very informative post, and at a much needed time! Thanks!
      Im with you 100% rant away!

      So Sony really decided to pull off a no-show?
      grrrr! Makes me even more ticked!

      And the fact that they're explanation letter...#1 on their "4 key principles" list is

      Act with care and caution!!!!!

      And #3 on the list....Ha!
      Take responsibility for our obligations to our customers!!!

      @Sony... You let this happen.. If you were paying attention this wouldn't have happened...This SHOULDN'T of happen... I do fully expect full reimbursement of my $500 dollar machine, that by the way... Could run OtherOS!!! Since you stated yourself.... that you "Take responsibility for your obligations to your customers"

      Grrrrrr!!!

    3. projectorfreak
      05-05-2011
      07:14 PM
      3

      I love it!
      The subcommittee wants to know what's up and they don't even show
      I wonder if they will tweet something or add another blog post as to why they didn't show
      I still have not received a warning from sony
      Those JERKS couldn't care less about anybody else
      I hope they get shutdown and the ps3 becomes pretty much a jailbreak toy or a great bluray player
      Not because I want the ps3 to get toasted by this but if sueing a guy who jailbreaks stuff becomes WAY more important than their own responsabilty to the public ya just might as well put them up there with the aholes from aig and all the other companies that stole your/my money and got away with it(screw obama)
      THAT is what the superpowerful do and I don't think they are superpowerful,but they do
      How's that for a mouthfull

    4. KanjiMan
      05-05-2011
      07:14 PM
      4

      Sony should still have this "Credit Card" info since they like keeping such detailed tabs on their customers... but now a days you can't blame them for keeping tabs with the amount of dishonest people in the world.

      They should forward the info to the cc companies, where the companies should automatically cancel each of the 77 million cards and notify each customer of their cancellation... issue a new card, and Sony pick up the tab (Cause its their fault) for the paper work.

    5. projectorfreak
      05-05-2011
      07:18 PM
      5

      Sony should still have this "Credit Card" info since they like keeping such detailed tabs on their customers... but now a days you can't blame them for keeping tabs with the amount of dishonest people in the world

      They have it still, and so do other people

    6. Amendment01
      05-05-2011
      07:28 PM
      6

      BTW bigo93....

      "Now do ppl feel like signing this petition just to add to the volume?

      tinyurl.com/fracksony"

      Signed it! #58 Brandon O.
      People sign now, at least read the petition!

      again without the redirect... http://www.petitiononline.com/mod_perl/signed.cgi?sonyfail
      Stand up for your right! and Sign!

    7. BobbyBlunt
      05-05-2011
      07:59 PM
      7

      I started a petition here also a few weeks ago. I love the fact Congress is getting involved, but it is sad because politicians can easily be bought.

    8. Amendment01
      05-05-2011
      08:48 PM
      8

      6 more sigs after mine! keep 'em coming!
      People....If you continue to lie down and 'take it'....
      And yes 'taking it lying down' is in fact not signing this petition amongst others, not writing letters to Sony, accepting a sorry ass reimbursement of a couple freebies off psn+ that totals to what? $20 $25? etc.. etc...
      (for your private information!)

      Then I am sorry to say that our people will not have any rights in 'your' near future...We cannot accept this! Stand Up For Your Right! For Your Children's Right!! This is a sad sad time for 'free people'...
      Your rights are being taken from right under your nose!

      Please, Please,Please...
      Don't just lie down and 'Take It'


      @BobbyBlunt
      Where is your petition... I will sign that as well.!

    9. Da ToxicFox
      05-05-2011
      09:13 PM
      9

      Looks to me like the people suing Sony are going to win. If they do win it will bring Sony to their knees. Sony is just giving out food for the people filing lawsuits... Wonder if the CEO is setting up so he doesn't lose everything when Sony falls? Anyways Sony isn't going to snake out of this one they screwed themselves over. If I can I'll sue them for not protecting my info. Waiting to see if the current cases win or lose though.

    10. potlick
      05-05-2011
      09:16 PM
      10

      this old detail if youv read the other post with the 5+ pdf files. but this help those that didnt read(or couldnt read lol -- jk --).

      but are you angry yet? more shady moves by a shady company.

      in my opinion this whole thing is an excuse for sony to bring this to politicians attentions to regulate more of what we cant do to out paid products in the future and i still dont believe the proof that sony has given up. theyr jus pointing fingers(@ anon) and telln tales to the public. anon attacks were focused on PSN and never included SOE.

    11. marta088
      05-06-2011
      12:50 AM
      11

      Another attack is in the oven. LOOK THIS:
      http://news.cnet.com/8301-31021_3-20060227-260.html

      I wonder, could it be possible to find any kind of information in $onys servers to crack the 3.60 or later firmwares???CHECK IT OUT VENDETTA GUYS...

    12. the_imperfectionest
      05-06-2011
      02:47 AM
      12

      Originally Posted by marta088 View Post
      Another attack is in the oven. LOOK THIS:
      http://news.cnet.com/8301-31021_3-20060227-260.html

      I wonder, could it be possible to find any kind of information in $onys servers to crack the 3.60 or later firmwares???CHECK IT OUT VENDETTA GUYS...
      Why would you even suggest such? Now Sony's Third Reich are going to go after Math for his knowledge of 3.60...

    13. KillerBug
      05-06-2011
      06:09 AM
      13

      F**KING SONY...they didn't even show? Sony blocked sales of jailbreaking devices because the people selling them didn't show up to some small court...and they have the balls to skip a congressional hearing?

      Up until today I thought that Sony was being run by idiotic fascists who didn't understand the basic underpinnings of capitalism (the continuously dropping stock prices seemed to back me) or technology...but now I see the truth...there is someone with a lot of power inside the Sony ranks that has decided to destroy the company for some reason. Not sure why; maybe he is getting big bribes from Microsoft or Nintendo, maybe he just dislikes one of the larger shareholders or something...but this is clearly a sign that there are powerful saboteur(s) in the management, working hard to bring the company down. They need to find this person or persons and bring them to justice...then they need to do what they can to reverse their actions...too late to protect the CC numbers now, but there is going to be a new firmware update when the PSN comes out...and if they don't want it hacked, they will make sure it has OtherOS.

    14. slaughter
      05-06-2011
      09:08 AM
      14

      I'm sorry but that petition is idiotic and childish. The only thing that petition does is 1 make each person who signs it look like a immature child who can be bought off very cheap, and it is a great insult to every affected PSN account holder. If your going to make a petition and demand something why don't you actually put some real intellectual thought into the situation. Sony is like the father who keeps leaving his wife and children. Then when he returns he buys his children and wife love back with cheap presents. The family is so blinded by the cheap presents that the father knows he can continue this foolish cycle as long as he wants to because the family can easily be bought off! But all it takes is the children to smarten up and realize what is happening now they can control the situation. On another note if you want to bring Sony down this is how it may be possible. Every one should bring there own individual lawsuit against Sony, because for every lawsuit that is brought against them in every state or every other part of the world it will cost sony millions in legal and attorneys fees plus all the fees it will cost to get there legal team to each place and to put them up and feed them. Each one of us can act as a blood sucking parasite. Get enough of us suck them dry. Have them stretch there funds so far past there legal defensive budget to where it will really hurt them! This is just my own thought process for all I know it could never work. But anyways I've been here at this site for a long time I don't really post just read allot but this place is a great community and great articles for reading I thank all the contributors and the mods for making this place such a great place for info.

    15. slaughter
      05-06-2011
      12:11 PM
      15

      On the topic about another attack on Sony, the only people this will hurt is us PSN account holders. Reason being is our information will be breached again and posted this time if they succeed and now if there was any chance of Sony bringing PSN back online this week is now gone because with a hint of an attack do you think Sony will bring it online just to have it breached again and have everything shut down again ofcourse not they will probably just wait it out to see if these hackers succeed this time around. So we can thank the hackers for the longer wait time even if they are bluffing and also thank them if they do succeed on getting are info again and posting it this time so it can get into the wrong hands this time freely.

    16. Da ToxicFox
      05-06-2011
      12:28 PM
      16

      Originally Posted by slaughter View Post
      On the topic about another attack on Sony, the only people this will hurt is us PSN account holders. Reason being is our information will be breached again and posted this time if they succeed and now if there was any chance of Sony bringing PSN back online this week is now gone because with a hint of an attack do you think Sony will bring it online just to have it breached again and have everything shut down again ofcourse not they will probably just wait it out to see if these hackers succeed this time around. So we can thank the hackers for the longer wait time even if they are bluffing and also thank them if they do succeed on getting are info again and posting it this time so it can get into the wrong hands this time freely.
      If they pull it off it might mean no more PSN for a very very long time cause people will be suing them to bankruptcy. These thief are hurting innocent people just to hurt Sony... Well I must say its working but they aren't even considering the people who's info they will be posting.

    17. $n!pR
      05-06-2011
      12:39 PM
      17

      If someone is stupid enough to try and hack Sony again with 3 different security firms monitoring things, they deserve everything they get.

    18. slaughter
      05-06-2011
      12:58 PM
      18

      I wonder if the game developers will start suing Sony for lost revenue do to the outage for PSN being down? I believe it could be possible supposing they have dlc for there games and or full PSN games? If there is some kind of breach of contract with the game devs and Sony, and only if the outage continues for another month or so. I wonder what's going to happen when PSN goes live again with all the PSN content that was suppose to be released are they going to have one big release or continue on from where they left off with there weekly releases. I personally hope it's one big release. Also everyone should purchase PSN cards or prepaid debit cards from here on out!

    19. killa1b
      05-06-2011
      01:01 PM
      19

      I seriously love my PS3 and I hate all the ***** fags that dont like it. All y'all do is ***** and cry about wtf you ain't got. Ungrateful pirating *******s. If you're PS3 is hacked, you have no right to complain about ****!!! Also the dev servers ****, is totally over the line. I hope you hacked ****s never see PSN access ever again. People blame Sony as a whole company. You all fail to realize that Sony is the [parent] company of SCE. You're really mad at SCE, not Sony as a whole. SCE-PlayStation, is at fault. I hate fags on a PS site *****ing about "selling their PS3 for an Xbox360." GO BUY A ****ING XBOX AND GO ***** ON XBL FORUMS!! Us PS3 lovers cherish this ****, and if you don't like it don't buy it! I hope your PS3 comes alive and ass rape all of yall till you die, and go to hell and get ass raped again by the devil.

    20. Wolfie708
      05-06-2011
      01:09 PM
      20

      Originally Posted by killa1b View Post
      I seriously love my PS3 and I hate all the ***** fags that dont like it. All y'all do is ***** and cry about wtf you ain't got. Ungrateful pirating *******s. If you're PS3 is hacked, you have no right to complain about ****!!! Also the dev servers ****, is totally over the line. I hope you hacked ****s never see PSN access ever again. People blame Sony as a whole company. You all fail to realize that Sony is the [parent] company of SCE. You're really mad at SCE, not Sony as a whole. SCE-PlayStation, is at fault. I hate fags on a PS site *****ing about "selling their PS3 for an Xbox360." GO BUY A ****ING XBOX AND GO ***** ON XBL FORUMS!! Us PS3 lovers cherish this ****, and if you don't like it don't buy it! I hope your PS3 comes alive and ass rape all of yall till you die, and go to hell and get ass raped again by the devil.
      So when you turn 12 you may learn that swearing and insulting people just makes you look stupid and very very very pathetic. I'm an Atheist btw so you can say hi to the Devil for me when you visit him (and Yes, I do see the contradiction in me saying that lol)

      EDIT Not exactly sure where you live, but a quick guess at US, so you probably can marry your PS3 if you love it so much

      Get real, it's a games console, and 99.9% of the complaints on here about the attitude of Sony not the console or rights for a PS3 with CFW, but like I said when you turn 12 you may also learn to read and understand English correctly.

    21. Da ToxicFox
      05-06-2011
      01:15 PM
      21

      Originally Posted by killa1b View Post
      I seriously love my PS3 and I hate all the ***** fags that dont like it. All y'all do is ***** and cry about wtf you ain't got. Ungrateful pirating *******s. If you're PS3 is hacked, you have no right to complain about ****!!! Also the dev servers ****, is totally over the line. I hope you hacked ****s never see PSN access ever again. People blame Sony as a whole company. You all fail to realize that Sony is the [parent] company of SCE. You're really mad at SCE, not Sony as a whole. SCE-PlayStation, is at fault. I hate fags on a PS site *****ing about "selling their PS3 for an Xbox360." GO BUY A ****ING XBOX AND GO ***** ON XBL FORUMS!! Us PS3 lovers cherish this ****, and if you don't like it don't buy it! I hope your PS3 comes alive and ass rape all of yall till you die, and go to hell and get ass raped again by the devil.
      Well at least he knows grammar...

      Some of us here have 2 PS3's one modded one not so this does effect us. Some here made a PSN account before we modded our PS3. Sony and SCE are apart of the same whole. If a child does something bad the cops come and talk to the parent right?

      Can someone tell me why Can't people have more then one console? I own a Wii (modded) Xbox (modded) Xbox 360 (Official) and a PS3 (modded).

    22. Pockets69
      05-06-2011
      01:26 PM
      22

      Originally Posted by killa1b View Post
      I seriously love my PS3 and I hate all the ***** fags that dont like it. All y'all do is ***** and cry about wtf you ain't got. Ungrateful pirating *******s. If you're PS3 is hacked, you have no right to complain about ****!!! Also the dev servers ****, is totally over the line. I hope you hacked ****s never see PSN access ever again. People blame Sony as a whole company. You all fail to realize that Sony is the [parent] company of SCE. You're really mad at SCE, not Sony as a whole. SCE-PlayStation, is at fault. I hate fags on a PS site *****ing about "selling their PS3 for an Xbox360." GO BUY A ****ING XBOX AND GO ***** ON XBL FORUMS!! Us PS3 lovers cherish this ****, and if you don't like it don't buy it! I hope your PS3 comes alive and ass rape all of yall till you die, and go to hell and get ass raped again by the devil.
      I really prefer Xbox live!

    23. holypuma
      05-06-2011
      01:34 PM
      23

      Originally Posted by killa1b View Post
      I seriously love my PS3 and I hate all the ***** fags that dont like it. All y'all do is ***** and cry about wtf you ain't got. Ungrateful pirating *******s. If you're PS3 is hacked, you have no right to complain about ****!!! Also the dev servers ****, is totally over the line. I hope you hacked ****s never see PSN access ever again. People blame Sony as a whole company. You all fail to realize that Sony is the [parent] company of SCE. You're really mad at SCE, not Sony as a whole. SCE-PlayStation, is at fault. I hate fags on a PS site *****ing about "selling their PS3 for an Xbox360." GO BUY A ****ING XBOX AND GO ***** ON XBL FORUMS!! Us PS3 lovers cherish this ****, and if you don't like it don't buy it! I hope your PS3 comes alive and ass rape all of yall till you die, and go to hell and get ass raped again by the devil.
      Thanks for the well wishes. Sounds rather pleasant.

    24. GregoryRasputin
      05-06-2011
      01:54 PM
      24

      Originally Posted by killa1b View Post
      I seriously love my PS3 and I hate all the ***** fags that dont like it.
      1.) None of us on this forum are cigarette's, i find it weird that you would reference people in this forum, to something you stick in your mouth and suck.

      2.) On a more serious note, no one here hates the PS3, we wouldn't own one if we did, being angry at an irresponsible company, for mistreating its loyal customers, does not make us haters.
      After all this is PS3HaX not WeHatePS3HaX >.<





      Originally Posted by killa1b View Post
      All y'all do is ***** and cry about wtf you ain't got. Ungrateful pirating *******s.

      1.) Its a discussion forum, its for speaking about what we wish, so i will say that you are partially right, we "aint" got PSN, PSN "aint" got decent security.

      2.) Hacking/modifying does not make us pirates, piracy is the act of downloading game for free off the internet, which you are meant to pay for, now that brings me to a tiny fact i found out about you, you are a game trader, you skim the thin line between legality and piracy, you get gets you are meant to pay for, for free, doesn't that make you a pirate ?


      Originally Posted by killa1b View Post
      If you're PS3 is hacked, you have no right to complain about ****!!!
      If you had bothered to use that grey matter, between your head, you would have realized that this thread has nothing to do with PS3 hacking, rather it is to do with PSN hacking, i for one have PSN+ as do many other members of this forum, we are losing out due to the PSN downtime, so we have just as much right to moan and complain about Sony as anyone else.


      Originally Posted by killa1b View Post
      I hate fags on a PS site *****ing about "selling their PS3 for an Xbox360."
      With the cigarette's again, though i tend to agree with you, they are smelly and cause disease, but what does that have to do with the PS3 ?




      Originally Posted by killa1b View Post
      GO BUY A ****ING XBOX AND GO ***** ON XBL FORUMS!!
      Most of us already own a Xbox.



      Originally Posted by killa1b View Post
      Us PS3 lovers cherish this ****, and if you don't like it don't buy it!
      Kinda late to not buy something when it is already bout, if we hadn't bought a PS3, then we wouldn't be complaining about Sony's rubbish security and you wouldn't be here crying your little fanboy heart out.



      Originally Posted by killa1b View Post
      I hope your PS3 comes alive and ass rape all of yall till you die, and go to hell and get ass raped again by the devil.
      This is what you dream happens to you isn't it, go on don't be shy, we wont hate you for admitting that you wish your PS3, would give you some of that old time butt loving.

    25. AnotherCleverMisnomer
      05-06-2011
      04:25 PM
      25

      http://blog.us.playstation.com/2011/...comment-522560

      Again, I'm just sayin...

      Now to contact that attorney.

    26. Amendment01
      05-06-2011
      11:08 PM
      26

      @Greg, thanks for puttin it down for killa1b.... Saved me some time,

      And I would like to state that this petition is not rubbish... The only thing that is bad about this petition is that hardly anyone one is signing....
      well, the demand are a trade off for an xbox... which may sound childish to you, is actually more of a point! I personally purchased my 40gig @ $500, which was advertised with OtherOS....The xbox sitting next to it was about a $150 difference... You obviously can see why I paid more! buts thats beyond the scope of this..

      My bottom line is

      Be Heard! Stand Up! Sign Something! Be Mad!

      You have every right, just stop letting your rights slip away!

      And again.... Im just sayin......
      http://www.petitiononline.com/sonyfa...ion-sign.html?

    27. Amendment01
      05-07-2011
      03:09 AM
      27

      Sony>> Hey check out our new tablet, its so shiny and NEW...
      Me>> Ya, Gimme that NOW!

    28. $n!pR
      05-08-2011
      07:33 AM
      28

      Apache was up to date.

      One member of the Beyond3D forum, deathindustrial, was curious about the outdated server software claim and did a very brief amount of very interesting research into the issue....
      (Beyond3D's community has a unique combination of technically knowledgeable users with a low rate of console fanboyism, allowing for an honest discussion of things like the PSN data breach without the conversation devolving into another proxy battle in the great fanboy wars.)

      As it turns out, it is fairly simple to use Google's webcache to show what version of Apache the PSN servers were using back in March. According to a page request archived by Google on March 23, 2011, at that time Sony was running version 2.2.17 of the software. You can see from Apache's website that 2.2.17 is the latest stable version of the webserver available even today. This is a direct repudiation of the claims being made that Sony's webservers were out of date by as much as five years.

    29. Amendment01
      05-08-2011
      03:26 PM
      29

      Ignorance??? Sorry to say.... but the only ignorance is that, 77 some million private informations have been breached, and......... Nobody Cares

      Maybe you may not care that Sony addressed these attacks with
      "Care and Caution"

      But I do, and so should everyone else!
      Stand Up! Fight For Your Rights!
      The more you put it on the backburner, the more rights we lose!
      And the more people become "Ignorant" and just don't see whats happening!