The worldwide hacker group Anonymous may have played a role--even unwittingly--in the theft of personal data from 77 million Sony PlayStation Network customers, according to a letter from Sony's chairman to a Congressional committee.
Forensics teams have tracked the attack that netted the information to a file named "Anonymous" on an internal Sony server including the words "We are Legion", which is part of the hacker group's motto.
"Just weeks before, several Sony companies had been the target of a large-scale, coordinated denial of service attack by the group called Anonymous," says Kazuo Hirai, Sony's chairman, in the letter.
That attack and the threat of more had Sony network security staff focused on DDoS defense, which might have distracted them from discovering the breach earlier, the letter says, "perhaps by design."
"Whether those who participated in the denial of service attacks were conspirators or whether they were simply duped in to providing cover for a very clever thief, we may never know. In any case, those who participated in the denial of service attacks should understand that - whether they knew it or not - they were aiding in a well planned, well executed, large scale theft that left not only Sony a victim, but also Sony's many customers around the world."
Anonymous earlier issued a statement that it wasn't responsible, but acknowledged that individual members might have acted independently to break in and steal the data.
Congressional Letter
The letter to Congress was prompted by a set of questions sent from a Congressional committee to Sony seeking information about the breach, how it happened and what Sony was doing about it.
The letter says that the attackers exploited a software vulnerability in one of the applications in the network that supports PlayStation Network, the online gaming site for Sony PlayStation customers.
The network consists of 130 servers, 50 software programs and 77 million registered accounts, the letter says. In all, Sony came to believe 10 of those servers had been compromised.
The letter says Sony knows the personal data was compromised because it found records of queries being made for it and large data transfers being made out in response. There were no logs of request for credit card information or corresponding outbound transfers, which is why Sony says credit card information might have been compromised but it just doesn't know.
"Among other things, the intruders deleted log files in order to hide the extent of their work and activity within the network," the letter says, which led Sony to conclude that "very sophisticated and aggressive techniques to obtain unauthorized access, hide their presence from system administrators, and escalate privileges inside the servers" had been used.
"At the same time that the experienced attackers were carrying out their attack, they also attempted to destroy the evidence that would reveal their steps."
Action Taken
Sony says it has taken six steps to prevent future breaches:
* Added automated software monitoring and configuration management to help defend against new attacks;
* Enhanced levels of data protection and encryption;
* Enhanced ability to detect software intrusions within the network, unauthorized access and unusual activity patterns;
* Implementation of additional firewalls;
* Expediting a planned mover of the system to a new data center in a different location with enhanced security;
* Naming of new chief information security officer directly reporting to the chief information officer of Sony Corp.
To make up to its customers, Sony plans to offer U.S. members complementary identity theft protection services.
It is creating a Welcome Back program including selected PlayStation entertainment content for free. All consumers returning to PSN will get 30 days free membership in PlayStation Plus premium subscription service. Current PlayStation Plus customers will have subscriptions extended for the number of days PSN and Qriocity services were unavailable and get an additional 30 days of free service, Sony says.
Subscribe to:
Post Comments (Atom)
Silahkan Comment sesuka hati ^^
Blog Archive
-
▼
2011
(277)
-
▼
May
(132)
- Cheat Point Blank Update Wallhack 31-05-2011 Just ...
- Cheat Point Blank Update Cheat Wallhack Glasses 31...
- Cheat Point Blank Wallhack + Charms Update 30 Mei ...
- Cheat Point Blank No Respon + Pasang Bom 0 Detik +...
- Cheat Point Blank Black Evolution 3.2 FullHack 30 ...
- Shane Kelly Hacker Termuda di Dunia
- Cheat Point Blank Black Evolution 3.1
- Cheat Point Blank 1 Hit Shotgun Hitam/Pabrik + No ...
- Cheat Point Blank Wallhack + Chrosshair Update 29-...
- Tutorial Cheat Pengganti FlashDisk
- Cheat Point Blank Black Evolution 3.0 WallHack
- Cheat Point Blank Wallhack Black And Yellow Webs S...
- Cheat Archievement Ninja Saga Permanent By Kurokum...
- Cheat Ninja Saga
- 26 Underground Hacking Exploit Kit available for D...
- Cheat Point Blank My Suhu CoLoNeL FinaL CHEAT POIN...
- Cheat Point Blank 1 Hit SG Update 28 Mei 2011 2805...
- Koleksi Hacking Tools
- Cheat Point Blank Wallhack Updated Fixed 27 - 05 -...
- Cheat Point Blank 1 Hit Sg Pemerintah [SG Hitam] U...
- Cheat Ninja Saga Token Hack with .Swf | Ninja Saga
- Cheat Ninja Saga ATM EXP Update | Ninja Saga
- Cheat Point Blank Wallhack Update 27-05-2011 Dilar...
- Cheat Point Blank WALLHACK WARNA NO FD BY DIKHA 27...
- Trik Memperkebal Cheat Tanpa Memakai FlashDisk Dan...
- Cheat Point Blank WALLHACK WARNA BY ME 27 Mei 2011
- RPE GB AUTO EXP
- Cara Menggunakan atau Memakai Rpe Untuk Cheat Exp ...
- Cheat Point Blank Black Evolution 2.8
- Cheat Point Blank Update Cheat 1 Hit Sg Kosong/Pab...
- Cheat Point Blank EVOLUTION 2.5 WALLHACK
- Cheat Point Blank Injection V.10.9 POINT BLANK
- Cheat Point Blank RPE zAyA Pe v.4
- Cheat Point Blank Snutz TKJ V10 25-26 Mei 2011
- Untuk Mengganti nama processor
- Rahasia Pada Menu RUN
- Cheat Point Blank RPE undetect + AltTab | RPE unde...
- Cara Pencurian Akun Facebook
- 1 Million Serial Number | sofware & program
- Setting Router Mikrotik Pada Virtual PC
- WINDOWS KEYS WINDOWS 7 | WINDOWS VISTA | WINDOWS ...
- Collection Serial Number
- Cheat Point Blank Fullhack Pasang Bom/Defuse/Respo...
- Cheat Point Blank Wallhack I.C.S.6 Update 25052011
- Cheat Point Blank Wallhack 25-26 Mei 201
- Mengintai dan Merekam Semua Aktivitas Dalam Komput...
- Registry Tricks and Tips for Windows
- Situs Pemerintah Dibobol 3 Juta Kali | Tifatul
- Jadi Hacker Kini Semakin Mudah
- How to Remove Autorun Virus | Autorun Virus Remover
- Windows 7 CMD Help And Tips
- Hacking Fb FaceBreak
- Deface Website Using Shell Injection R57, C99, C99...
- Cheat Point Blank Special WallHack Which Passes Ma...
- Cheat Point Blank Wallhack All WINDOWS Updated 24-...
- Cheat Ayodance | Hack Paket 3 AYODANCE 24 Mei 2011
- Cheat Point Blank zAyA PE v3 | Buat GB No BT POINT...
- Virus script *.txt | Belajar Virus Computer dengan...
- Tips SEO | Cara Paling Tepat dan Ampuh Menembak Ke...
- Membuat Virus Menggunakan Notepad
- Manifesto dan kode etik Hacker
- Mengoptimalkan "OPTIMALISASI" pendapatan google ad...
- Facebook Freezer Software Terbaru 2011 Hacking Fac...
- Cheat Point Blank Paket GB WINMODE + ZAYAPE V3 New...
- Cheat Point Blank WallHack 23-05-11 Just For PB In...
- Cheat Point Blank GrEtZ ™ V1.0 | Wallhack 23240520...
- Cheat Point Blank 23 Mei 2011 VIP Crosszzerro
- Free Download Counter Strike Xtreme V5 2011
- Cheat Point Blank Black Evolution 2.7
- Cheat Point Blank GC|EVOLUTION 2.4
- Cheat Point Blank 22 Mei 2011 Snutz_TKJ™ V1.0 Fix WH
- Applying WiFu Cheat Sheet | Videos
- Dunia Lain di Internet | HACKER
- Cheat Point Blank Wallhack 21-05-2011 Special MalMing
- Cheat Point Blank UNLIMITED HP / Cheat Darah VIP H...
- Cheat Point Blank Do Game target Point Blank 21 Me...
- Cheat point blank Minimized Fixed 21 Mei 2011
- Cheat Point Blank 1 Hit SG Kosong/SG Item No Off G...
- Improve Your Page Rank,Back links & Alexa Rank
- Google adsense | 1001 ways to select the Keywords ...
- How to get serial number of any Software !!!
- Easily Change the Windows7 Administrator password ...
- All about Key loggers - the Complete FAQ
- Cheat Point Blank [FON][PAG]-Injection V.10.3
- Cheat Point Blank Minimized Fixed 20 and 21 Mei 2011
- Hacker RI Unggul Jauh dari Malaysia
- Cheat Point Blank FULLHACK TERBARU VIP F2F
- Mengatur konfigurasi windows dengan x-setup pro
- Cheat Point Blank RPE + WinMode for GB EXP Update ...
- Cheat Point Blank wh work for Windows 7 From N3
- Cheat Point blank Master Medal Title 18 Mei 2011 B...
- Cheat Point Blank SHARE Wallhack 17 mei 2011
- Cheat Point Blank Shadowz WinMode Tidak Bisa untuk...
- Free download UltraISO Premium Edition
- Atlantica Arena Analyzer Betting
- Cheat Point Blank Wallhack-winmode 16052011
- Cheat Point Blank Wallhack All Window | Window Xp2...
- EVOLUTION 2.3 140511
- Cheat Pointblank PKL Injection V 166 No Respon + P...
- Hack Deep Freeze 4, 5, 6 Standard, 6 Evolution, 7
-
▼
May
(132)
Popular Posts
-
|| DOWNLOAD || Status: Undetected Features: Wallhack Chams Crosshair No Smoke
-
( DOWNLOAD ) ======= Fiture : ======= Numpad1 = Hack title + rank + name + point Numpad2 = Cheat Dewa Numpad4 = Spion mode Numpad5 -...
-
Cheat Point Blank RINOCOMP 3.4 Special Valentine Card RINOCOMP V3.4 Silent Special Valentine Card Buka rinocomp 3.4 muncul pesan terus ok, ...
-
Anastacia.1 & DLLCreditUSN-Donald ( DOWNLOAD ) FITUR & HOTKEY [*] COMPLETED CARD = F5 [*] UNCOMPLETED CARD = F6 [*] QUIT PB ...
-
( DOWNLOAD ) Cheats : Frezee Lag on : F1 Frezee Lag off : F2 Caranya : masuk room lalu play lalu tekan F1 (Effect 100% jika jd RM dan E...
No comments:
Post a Comment
Mohon komentarnya gan, jangan lupa di share juga ke Facebook