Recommended Posts

SOME PLAYSTATION?NETWORK AND QRIOCITY? SERVICES TO BE AVAILABLE THIS WEEK

Phased Global Rollout of Services to Begin Regionally;

System Security Enhanced to Provide Greater Protection of Personal Information

Following a criminal cyber-attack on the company?s data-center located in San Diego, California, U.S.A., SNEI quickly turned off the PlayStation Network and Qriocity services, engaged multiple expert information security firms over the course of several days and conducted an extensive audit of the system. Since then, the company has implemented a variety of new security measures to provide greater protection of personal information. SNEI and its third-party experts have conducted extensive tests to verify the security strength of the PlayStation Network and Qriocity services. With these measures in place, SCE and SNEI plan to start a phased rollout by region of the services shortly. The initial phase of the rollout will include, but is not limited to, the following:

Restoration of Online game-play across the PlayStation?3 (PS3) and PSP? (PlayStation?Portable) systems

-This includes titles requiring online verification and downloaded games

Access to Music Unlimited powered by Qriocity for PS3/PSP for existing subscribers

Access to account management and password reset

Access to download un-expired Movie Rentals on PS3, PSP and MediaGo

PlayStation?Home

Friends List

Chat Functionality

.....

Complimentary Offering and ?Welcome Back? Appreciation Program

While there is no evidence at this time that credit card data was taken, the company is committed to helping its customers protect their personal data and will provide a complimentary offering to assist users in enrolling in identity theft protection services and/or similar programs. The implementation will be at a local level and further details will be made available shortly in each region.

The company will also rollout the PlayStation Network and Qriocity ?Welcome Back? program, to be offered worldwide, which will be tailored to specific markets to provide our consumers with a selection of service options and premium content as an expression of the company?s appreciation for their patience, support and continued loyalty.

Central components of the ?Welcome Back? program will include:

Each territory will be offering selected PlayStation entertainment content for free download. Specific details of this content will be announced in each region soon.

All existing PlayStation Network customers will be provided with 30 days free membership in the PlayStation Plus premium service. Current members of PlayStation Plus will receive 30 days free service.

Music Unlimited powered by Qriocity subscribers (in countries where the service is available) will receive 30 days free service.

Additional ?Welcome Back? entertainment and service offerings will be rolled out over the coming weeks as the company returns the PlayStation Network and Qriocity services to the quality standard users have grown to enjoy and strive to exceed those exceptions.

Read More

SOME PLAYSTATION NETWORK AND QRIOCITY SERVICES TO BE AVAILABLE THIS WEEK

Phased Global Rollout of Services to Begin Regionally; System Security Enhanced to Provide Greater Protection of Personal Information.

Tokyo, May 1, 2011 ? Sony Computer Entertainment (SCE) and Sony Network Entertainment International (SNEI, the company) announced they will shortly begin a phased restoration by region of PlayStation?Network and Qriocity? services, beginning with gaming, music and video services to be turned on. The company also announced both a series of immediate steps to enhance security across the network and a new customer appreciation program to thank its customers for their patience and loyalty.

Following a criminal cyber-attack on the company?s data-center located in San Diego, California, U.S.A., SNEI quickly turned off the PlayStation Network and Qriocity services, engaged multiple expert information security firms over the course of several days and conducted an extensive audit of the system. Since then, the company has implemented a variety of new security measures to provide greater protection of personal information. SNEI and its third-party experts have conducted extensive tests to verify the security strength of the PlayStation Network and Qriocity services. With these measures in place, SCE and SNEI plan to start a phased rollout by region of the services shortly. The initial phase of the rollout will include, but is not limited to, the following:

? Restoration of Online game-play across the PlayStation?3 (PS3) and PSP? (PlayStation?Portable) systems

? This includes titles requiring online verification and downloaded games

? Access to Music Unlimited powered by Qriocity for PS3/PSP for existing subscribers

? Access to account management and password reset

? Access to download un-expired Movie Rentals on PS3, PSP and MediaGo

? PlayStation?Home

? Friends List

? Chat Functionality

Working closely with several outside security firms, the company has implemented significant security measures to further detect unauthorized activity and provide consumers with greater protection of their personal information. The company is also creating the position of Chief Information Security Officer, directly reporting to Shinji Hasejima, Chief Information Officer of Sony Corporation, to add a new position of expertise in and accountability for customer data protection and supplement existing information security personnel. The new security measures implemented include, but are not limited to, the following:

? Added automated software monitoring and configuration management to help defend against new attacks

? Enhanced levels of data protection and encryption

? Enhanced ability to detect software intrusions within the network, unauthorized access and unusual activity patterns

? Implementation of additional firewalls

The company also expedited an already planned move of the system to a new data center in a different location that has been under construction and development for several months. In addition, PS3 will have a forced system software update that will require all registered PlayStation Network users to change their account passwords before being able to sign into the service. As an added layer of security, that password can only be changed on the same PS3 in which that account was activated, or through validated email confirmation, a critical step to help further protect customer data.

The company is conducting a thorough and on-going investigation and working with law enforcement to track down and prosecute those responsible for the illegal intrusion.

?This criminal act against our network had a significant impact not only on our consumers, but our entire industry. These illegal attacks obviously highlight the widespread problem with cyber-security. We take the security of our consumers? information very seriously and are committed to helping our consumers protect their personal data. In addition, the organization has worked around the clock to bring these services back online, and are doing so only after we had verified increased levels of security across our networks,? said Kazuo Hirai, Executive Deputy President, Sony Corporation. ?Our global audience of PlayStation Network and Qriocity consumers was disrupted. We have learned lessons along the way about the valued relationship with our consumers, and to that end, we will be launching a customer appreciation program for registered consumers as a way of expressing our gratitude for their loyalty during this network downtime, as we work even harder to restore and regain their trust in us and our services.?

Complimentary Offering and ?Welcome Back? Appreciation Program

Read the rest at Sony's Blog

The "Welcome Back" program is looking pretty nice, I was going to buy PS+ before it went down so this just gives me even more incentive now :)

? Each territory will be offering selected PlayStation entertainment content for free download. Specific details of this content will be announced in each region soon.

? All existing PlayStation Network customers will be provided with 30 days free membership in the PlayStation Plus premium service. Current members of PlayStation Plus will receive 30 days free service.

? Music Unlimited powered by Qriocity subscribers (in countries where the service is available) will receive 30 days free service.

2:36 JST: Q: Was this hack exploiting a known vulnerability, or a new one? A: The one at this time was a known vulnerability, but SNEI management was not aware of it. We're creating an information security officer to improve that. (Sony declined to discuss details of the exploit... it sounds like protections against it aren't in place yet.)

Source

This eliminates the new CFW being the cause, essentially.

3:01 JST: Sony decided to correct an earlier statement, saying that PSN passwords were not encrypted but rather hashed.

Well, that's better than nothing. But if you were doing it right, you wouldn't be "asking customers to change all their passwords too, and change all passwords used on other websites that happen to be the same as the PSN ones".

2:36 JST: Q: Was this hack exploiting a known vulnerability, or a new one? A: The one at this time was a known vulnerability, but SNEI management was not aware of it. We're creating an information security officer to improve that. (Sony declined to discuss details of the exploit... it sounds like protections against it aren't in place yet.)

Baffling...

We will never know what really happened in the attack (at least not for a few years) because it would be foolish of SONY to release the details. We can debate it all we want but we'll never know for sure unless someone inside SONY leaks it. I, for one, am pretty happy that PSN is coming back online and hope that this situation never happens again and that there aren't any long or short term consequences for the people possibly affected.

Well, that's better than nothing. But if you were doing it right, you wouldn't be "asking customers to change all their passwords too, and change all passwords used on other websites that happen to be the same as the PSN ones".

A hash would actually be pretty decent for security as it is one-way (no decryption, although it is still possible to crack it as with anything). Not sure why they'd do that if they have good encryption though (as they'd need for the CC info). If they are hashing the passwords then they shouldn't need to make everyone change them. My guess is they possibly hadn't salted the hash (addition of a random or user-specific value), or the salting method/value has also been exposed making it easier to crack the hashes.

Of course, salting a hash/encrypting only makes it difficult once the attacker has the database of passwords. They shouldn't really get it in the first place, so how they got in is more important IMO.

But if you were doing it right, you wouldn't be "asking customers to change all their passwords too, and change all passwords used on other websites that happen to be the same as the PSN ones

It's standard practice in the scenario of any leakage of information of any kind. If for example our business would leak customer information we would still send out warning to our customers and urge them to change passwords in any related services and/or services that they may have used the same authentication on.

Better to be safe than sorry.

Whole event here - http://www.engadget.com/2011/05/01/sonys-kaz-hirai-will-address-playstation-network-hack-at-1am-et/

2:46 JST: Sony says that there's some speculation, but that it doesn't have any proof that Anonymous is behind the attacks. "It's not that we don't have any infomation at all, but it's still within the realm of speculation," says Sony's translator.
3:38 JST: Sony is presently looking into structured ways to refund customers who wish to cancel their service, but don't presently have such a mechanism in place.

Anyway, get service back, get the welcome pack rolled out, and if there is no proof of foul play 1~2 months down the line, I'm sorry to say for those incredibly upset about all of this, but business will get back to normal.

I just want my service/online functionality back, nothing has happened to my account in 2 weeks.

All existing PlayStation Network customers will be provided with 30 days free membership in the PlayStation Plus premium service. Current members of PlayStation Plus will receive 30 days free service.

It's standard practice in the scenario of any leakage of information of any kind. If for example our business would leak customer information we would still send out warning to our customers and urge them to change passwords in any related services and/or services that they may have used the same authentication on.

Better to be safe than sorry.

That. If my house key gets stolen and I manage to get it back I would still change the locks as I can't be sure that the thief hasn't made a copy :p

Question: If i've bought something off the PSN store, but not a member of PSN+ (ie, my details shouldn't be stored in anyway - i'm not sure i've never checked) does this mean my details definitely wont be on the servers?

The only thing i've ever bought is the COD:First Strike map pack a couple of weeks a go.

Question: If i've bought something off the PSN store, but not a member of PSN+ (ie, my details shouldn't be stored in anyway - i'm not sure i've never checked) does this mean my details definitely wont be on the servers?

The only thing i've ever bought is the COD:First Strike map pack a couple of weeks a go.

If you used a CC and then didn't remove it from the acount details, then it will have been stored. If you removed it from your acount details, only then it wouldn't be in storage. If you used a PSN card, there shouldn't be any problem.

Free stuff is always nice, but I just want PSN back on-line, the day before it went off-line I was going to buy PixelJunk Shooter 2, and figured I would put it off and do it tomorrow, I go back on and everything is off-line, typical lol.

Question: If i've bought something off the PSN store, but not a member of PSN+ (ie, my details shouldn't be stored in anyway - i'm not sure i've never checked) does this mean my details definitely wont be on the servers?

The only thing i've ever bought is the COD:First Strike map pack a couple of weeks a go.

Not sure why you mentioned Playstaion+, storing details has nothing to do with having or not having P+, if you bought something with your card from the Playstation Store and haven't removed the details yourself then they would have been stored somewhere for future use, just like most other on-line shops do.

Free stuff is always nice, but I just want PSN back on-line, the day before it went off-line I was going to buy PixelJunk Shooter 2, and figured I would put it off and do it tomorrow, I go back on and everything is off-line, typical lol.

Not sure why you mentioned Playstaion+, storing details has nothing to do with having or not having P+, if you bought something with your card from the Playstation Store and haven't removed the details yourself then they would have been stored somewhere for future use, just like most other on-line shops do.

AH i thought it was an reoccurring subscription?

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft confirms Windows 11 26H2, urges IT admins to prepare for release by Usama Jawad Windows 11 typically follows an annual update cycle, but Microsoft recently broke that tradition a bit by releasing a "26H1" version in the first half of this year as a "scoped" build for select new silicon PCs only. This version was not available for customers using 24H2 and 25H2 builds, as Microsoft is busy preparing version 26H2 for them, confirmed officially for the first time. In a Windows IT Pro blog, Microsoft has urged IT admins to prepare for the upcoming release of Windows 11 version 26H2. The company has confirmed that this will be a small enablement package (eKB) that will simply light up certain disabled features that are already present in the operating system's code base. This means that the "refined" Windows update and deployment experience will be simpler and quicker, with minimal disruptions, as the feature update will simply toggle a few flags rather than performing a complete replacement. Microsoft has explained that this is all possible because the standard Windows 11 releases share the same servicing branch and hence, the same source code. However, this also means that Windows 11 26H1 users won't be able to upgrade to 26H2 as that is a different branch, but this is something we have known for a while now. Similar to previous annual feature updates, Windows 11 26H2 will offer the following support cycles: 24 months of support for Home, Pro, Pro EDU, and Pro for Workstations editions 36 months of support for Enterprise, Education, IoT Enterprise, and Enterprise Multi-session editions Microsoft has not confirmed a concrete release date for Windows 11 26H2, but noted that it is "coming soon". If we go by the ongoing release cadence, we can expect it to begin rolling out in early October 2026. As such, IT admins have been encouraged to begin validating Windows Insider releases in the Experimental Channel, plan rollout rings, and strategize the utilization of their existing deployment tools.
    • Windows 11 gets new audio improvements in the latest builds by Taras Buria Today's Experimental builds (26H1 and Future Platforms, formerly Canary) pack several audio-related improvements. If your device is enrolled in the Experimental Channel (26H1), you can download build 28120.2315, while those in the Future Platforms version have build 29613.1000 to try. Here is what is new in build 29613.1000: [Audio] Following up on our previous improvements, we’re making some more adjustments to Settings > System > Sounds based on your feedback. Namely, we’ve updated the “All sound devices” page so: You now have the ability to change default devices from this page. Each of the devices displayed on this page now has a little volume meter next to it to show if there is audio actively playing. We’ve adjusted the page design slightly so now you can filter whether you’re viewing input or output devices. We’ve added toggles so you can choose if you want to hide or show disabled, disconnected, and unplugged devices on this page. We’ve also updated the input and output audio properties page for devices in Settings to now include jack information for those that need it. And here is the changelog for build 28120.2315: This update includes a small number of minor bug fixes and improvements. [Accessibility] This update improves caption style responsiveness by redrawing captions immediately for caption style changes. If no current caption is visible, a sample caption string is displayed. [Audio] This update improves the reliability of the inbox HD Audio driver. You can find the official release notes for build 28120.2315 here and for build 29613.1000 here.
    • I agree with what I think you are saying, just not in the way you are saying it. Like any tool, the amount it represents your work is perorational to the effort you put into it. It is similar to why 2nd grade math students learning to add and subtract are not allowed to use calculators, but a high-school calculous student is. For the 2nd grader, that tool would completely replace the work they are doing, for the calculous student the same tool allows them to work far more effectively while in no way replacing their effort or knowable. If you spend 30 seconds writing a prompt, then the image that comes out is no more "yours" than if you found the same image with a Google Image search. However, many of these generative tools also support highly iterative processes that allow back and forth, and merging generated images with photos or human created images. I am sure you would agree that a human spending hours of time working on a project, even if AI was involved in the process, still reflects that human's work.
    • Windows 11 version 26H2 is now available for testing in the latest preview build by Taras Buria Friday Windows 11 preview builds are here. Insiders in the Experimental (formerly Dev) and Beta Channel can download builds 26300.8697 and 26220.8690. There are no new features, but Microsoft is officially moving the Experimental Channel to version 26H2. In addition, Microsoft is improving the copy dialog in File Explorer, the Start menu reliability, and fixing virtualization issues. Here is the changelog: [General] With today’s build, Windows Insiders in the Experimental channel will see the versioning updated under Settings > System > About (and winver) to version 26H2. For more information, see the Windows Insiders blog. [File Explorer] We’ve improved the visual consistency and reliability of the Copy dialog in Dark mode, including its launch experience and the expanded progress view. [Start menu] - Also available in Beta Improved reliability of Start menu reflecting newly installed or removed apps without requiring sign-out or restart. [Taskbar] Fixed an issue for Insiders using the new smaller taskbar option, where the system tray might get cut off or pushed off screen. [Settings] - Also available in Beta Improved reliability of Settings > Apps > Startup. [Virtualization] - Also available in Beta This update addresses an issue that could result in bugchecks citing HYPERVISOR_ERROR (0x20001) and KMODE_EXCEPTION_NOT_HANDLED (0x1E) errors after installing the latest flights on some devices during system restarts, virtual machine operations, or while running some gaming applications. You can find the official changelog for the Experimental build here and for the Beta build here.
    • I've always preferred this possibility. There is something that feels good about the idea that all matter in the universe will eventually come back together and maybe even result in another big bang. The idea that the universe would fizzle out over the eons and forever drift apart is a little depressing. I realize it is not logical to let a basic human desire for life to have a grand everlasting meaning change the way I feel about a scientific theory, but I am human, so that is how I feel :-).
  • Recent Achievements

    • Collaborator
      ryansurfer98 went up a rank
      Collaborator
    • Week One Done
      Eurosoft10 earned a badge
      Week One Done
    • One Month Later
      Eurosoft10 earned a badge
      One Month Later
    • One Year In
      Skeet Campbell earned a badge
      One Year In
    • One Month Later
      Sharbel earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      574
    2. 2
      +Edouard
      188
    3. 3
      Michael Scrip
      77
    4. 4
      PsYcHoKiLLa
      76
    5. 5
      neufuse
      71
  • Tell a friend

    Love Neowin? Tell a friend!