Recommended Posts

Dunno, if this has been posted yet. But it's worth a read:- Key points from the Sony Conference : gaming

Hirai said that no improper CC usage has been reported and they have no evidence of CC info being compromised. They said that Sony will pay for CC reissuing and assist with monitoring/insurance programs for customers. If there are any improper charges, they will be handled on a case-by-case basis.

CC info was encrypted and stored in a different part of the database from user personal information. Because of this, user information and CC information are being categorized separately.

Needs to be nailed into people's heads.

That actually really moved me, I know how big of a deal it is for Japanese people when they do that...

Exactly, this is a MASSIVE gesture by Sony. Admittedly they had no choice but to come clean and say sorry, but the way they have handled it is pretty much perfect.

Exactly, this is a MASSIVE gesture by Sony. Admittedly they had no choice but to come clean and say sorry, but the way they have handled it is pretty much perfect.

I think it shows they are genuinely wanting to resolve all of this and are sorry, where as you'd be led to believe they don't care/just want your money/are incompetent from the comments everywhere. Most of the fanboys though will still create "funny" photoshops of the picture on the last page, or mock it, but we know absolutely nothing Sony done/will do will in anyway will alter even a slight bit of their perception. That however is not unique to this situation.

Don't think there's much point in trying to laugh at America/West and say companies wouldn't bow here, because, well, they wouldn't and that's just the way it is. The Japanese are typically more modest people than us, and that is reflected in their culture.

At the end of the day it was/is a nice gesture to show humility for the actions/lack of actions leading to and following this situation.

Don't think there's much point in trying to laugh at America/West and say companies wouldn't bow here, because, well, they wouldn't and that's just the way it is.

Here, they would ask for a bail-out, then pay themselves billions of dollars in bonuses, all while proclaiming the new PSN is ten times better than it was before.

This is defintely worth a read: Wrongly Jailed Security Whistleblower Caught Up in PlayStation Hacker Hunt | Threat Level | Wired.com

...

To that end, he used a man-in-the-middle hack to monitor the SSL-encrypted traffic from his home console to Sony?s servers. He loaded a self-signed certificate onto the console, and directed the traffic through a proxy server on his own network. When he pored through the traffic, he noticed that Sony was running outdated versions of the Apache web server.

Sony, it turns out, uses a cluster of Apache servers to authenticate PlayStation consoles, a different cluster to serve downloadable content, another to store image files, etc. All of them are directly accessible from the internet, he says ?- there?s no VPN between the console and the PlayStation Network. And he claims all the servers were all at least a little out of date.

?Literally everything goes through a web server somewhere,? he says. ?Different [sony] divisions maintain different servers. I never saw a current version of Apache on any of them.?

Sony did not respond to an inquiry from Threat Level on Friday.

McDanel admits he doesn?t know that Sony?s web servers were vulnerable to attack. The authentication server he mentioned in the chats was running Apache 2.2.15, which was superseded in June 2010, but has no remote-access vulnerabilities listed on Apache?s website.

...

PlayStation Network Security Update

On Tuesday, April 26 we shared that some information that was compromised in connection with an illegal and unauthorized intrusion into our network. Once again, we?d like to apologize to the many users who were inconvenienced and worried abut this situation.

We want to state this again given the increase in speculation about credit card information being used fraudulently. One report indicated that a group tried to sell millions of credit card numbers back to Sony. To my knowledge there is no truth to this report of a list, or that Sony was offered an opportunity to purchase the list.

One other point to clarify is from this weekend?s press conference. While the passwords that were stored were not ?encrypted,? they were transformed using a cryptographic hash function. There is a difference between these two types of security measures which is why we said the passwords had not been encrypted. But I want to be very clear that the passwords were not stored in our database in cleartext form. For a description of the difference between encryption and hashing, follow this link.

To reiterate a few other security measures for your information: Sony will not contact you in any way, including by email, asking for your credit card number, social security number or other personally identifiable information. If you are asked for this information, you can be confident Sony is not the entity asking. When the PlayStation Network and Qriocity services are fully restored, we strongly recommend that you log on and change your password. Additionally, if you use your PlayStation Network or Qriocity user name or password for other unrelated services or accounts, we strongly recommend that you change them, as well. To protect against possible identity theft or other financial loss, we encourage you to remain vigilant, to review your account statements and to monitor your credit reports.

We continue to work with law enforcement and forensic experts to identify the criminals behind the attack. Once again, we apologize for causing users concern over this matter.

Our objective is to increase security so our customers can safely and confidently play games and use our network and media services. We will continue to provide updates as we have them.

Source: http://blog.us.playstation.com/2011/05/02/playstation-network-security-update/

Glad to see them debunking all those false news stories going around.

well, i just re-joined the Sony family so please don't think i'm badmouthing anyone, but their attitude towards security is lax, certainly laxer than MS. i mean just look at the parental control password for the PS3. it's numbers that show up on the screen as you type them! i mean, come on!

The Sony press conference (particularly the images of Kaz Hirai and the other two people bowing) has definitely tempered a lot of the anger that I initially felt toward the company. After all of those posts on the Playstation Blog that look like they were written by a robot, it is moving indeed to see a more emotional response coming from Sony. That humility and that human touch is worth a lot more than a material compensation in my eyes.

Good for Sony (Y) .

Sorry but Sony deserves all the lumps/bruises they get for this, clearly not taking their data security seriously enough. If you want to play the cultural sensitivity card and buy into emotional arguments feel free, but those guys can bow all day, my personal data and CC# (luckily for me an expired CC, not so much for others) is in the wild and their apologies do little for people scrambling to protect their identities and credit scores.

Sorry but Sony deserves all the lumps/bruises they get for this, clearly not taking their data security seriously enough. If you want to play the cultural sensitivity card and buy into emotional arguments feel free, but those guys can bow all day, my personal data and CC# (luckily for me an expired CC, not so much for others) is in the wild and their apologies do little for people scrambling to protect their identities and credit scores.

Wish I could + this one. While I do appreciate the humility, it doesnt change what happened. How any of you can change your opinion based on an apology and a bow is odd to me. I do wish we would get more concrete answers from Sony instead of "to my/our knowledge". There has to be server logs that would contain exact details of what information the hackers got.

Wish I could + this one. While I do appreciate the humility, it doesnt change what happened. How any of you can change your opinion based on an apology and a bow is odd to me. I do wish we would get more concrete answers from Sony instead of "to my/our knowledge". There has to be server logs that would contain exact details of what information the hackers got.

to my knowledge is what politicians say when they caught effing around with money or hookers. sony just refuses to full out admit the full extent of damages that may cause any sort of fear and hurt their stock prices anymore.

This will be thrown out. How naive she is to think that our data is secure in anyone's hands. The US Government has had many more leaks of my information than I believe any company ever has, but they can't be sued for it. They just give a , "oopsie, someone did something" excuse, and that's all we can take. So to think a company will do a better job than one of the top leading nations in the world... that is just stupid.

Nothing they got anyway you couldn't get from any phone book or open facebook profile. People too sensitive about things that aren't even personal. Your name, address, email, all given away at the whim anyway whenever anyone basically ask for them about anything.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • This seems backwards. You should have to explicitly authorize files for outside use. It shouldn't be the default.
    • Wow you are right, I never even noticed this until you said it! (870E Aorus Master) Before testing this card I had a TP-Link tx401 10GbE PCIe card in that slot (now using XikeStor 310 Thunderbolt to Ethernet adapter).
    • Lack of 5.1 makes this a no sale. What I really wish creative would make would be a USB version that supports 5.1 analog audio for speakers, can switch to headphone mode, and matches the specs of their top tier cards. The current X870E AMD motherboards dont have a great option for adding a PCIE x1 card without cutting down pcie lanes to the graphics card.
    • The Microsoft Office feature that time forgot by Usama Jawad I have been actively using Microsoft Word for the past couple of decades in academic, professional, and personal capacities. Although I used it through the perpetual version of Office apps at the start, I have been an active subscriber of Microsoft 365 Family subscription for over five years now. This means that my Word installation is regularly updated with new features, some of which I don't really like, but that's beside the point. As new features get continuously added, old ones that used to be a staple of Word have started to take a backseat. While I was reminiscing over my Windows experiences from my childhood today, I suddenly remember one such capability that I heavily used in my younger years but have not really touched in over a decade, and haven't seen in documents created by others either. That feature is WordArt. Just to clarify, WordArt is not a Microsoft product specific to Word, and is included in other Office apps like PowerPoint and Excel too. However, Microsoft Word is the app that I used Word Art in heavily, while making assignments or other deliverables for school. If you're unaware, WordArt offers a collection of styling techniques for text, introducing 3D effects like shadows and reflections in the text. It used to be one of the coolest things ever when I was at school and me and my classmates would often compete to ensure that our assignment's title in WordArt was truly the best and stood out above the rest. See some examples of WordArt, still present in the latest versions of Word below: Although WordArt is undeniably cool, it has taken a bit of a backseat, and has been relegated from the Home tab to the Insert toolbar, along with a bunch of other utilities, making it very easy to miss. This isn't exactly surprising because WordArt doesn't really have a place in academic and professional documents anymore, and while I have seen some creatives using it while developing promo material, even that sector has gravitated more towards dedicated graphic designing tools in the past years. For the vast majority of us, WordArt doesn't really exist, and that's alright. At least, it's still an option that can allow us to reminisce our childhood or even make some quick text stylization, if we really need it. Perhaps its usage has waned over time or the novelty has worn off, but I haven't even seen children use it in their academic assignments anymore. In fact, many don't even know that it exists. Maybe that's the fate of every beloved feature. What once felt cutting edge eventually becomes a relic, quietly tucked away as tastes, trends, and technology move on. WordArt may no longer dominate school assignments or decorate the covers of classroom projects, but for those of us who grew up with it, it remains a colorful reminder of a time when making text glow, bend, and cast giant shadows felt like the height of creativity. Hidden behind a few clicks in modern Word, it still survives not as a productivity tool, but as a small piece of computing nostalgia that refuses to disappear.
  • Recent Achievements

    • First Post
      DrWankel earned a badge
      First Post
    • Reacting Well
      DrWankel earned a badge
      Reacting Well
    • Week One Done
      Supreme Spray LV earned a badge
      Week One Done
    • One Month Later
      Genuinetonerink- Dubai earned a badge
      One Month Later
    • Week One Done
      Genuinetonerink- Dubai earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      495
    2. 2
      +Edouard
      158
    3. 3
      PsYcHoKiLLa
      88
    4. 4
      Steven P.
      74
    5. 5
      Michael Scrip
      70
  • Tell a friend

    Love Neowin? Tell a friend!