28 Apr 2011
Sony has provided more details of the data breach which affected its 77 million customers worldwide.
The company has confirmed that all credit card data on its systems was stored in encrypted form, which should limit its usefulness for financial fraud.
However, other user data, such as passwords and address details, was stored in plain text, and will be open to use by phishers and spammers.
"For your security, we encourage you to be especially aware of email, telephone, and postal mail scams that ask for personal or sensitive information," Sony said in a blog post.
"Sony will not contact you in any way, including by email, asking for your credit card number, social security number or other personally identifiable information. If you are asked for this information, you can be confident Sony is not the entity asking."
Law enforcement and "a recognised technology security firm" are examining the company's servers to gather evidence and assess the extent of the damage from the hacking attack.
Sony said that the network will be up and running again as soon as it is secure and that investigations had finished.
A legal case has already been filed against the company by Rothken Law Firm, which is bringing a class action suit on behalf of all 77 million customers.
"We brought this lawsuit on behalf of consumers to learn the full extent of Sony PlayStation Network data security practices and the data loss, and to seek a remedy for consumers," said Ira P. Rothken, who filed the complaint.
"We are hopeful that Sony will take this opportunity to learn from the network vulnerabilities, provide a remedy to consumers who entrusted their sensitive data to Sony, and lead the way in data security best practices."
Latest stories from Security
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
V3 examines the key strengths and weaknesses of Samsung's latest iPhone killer
Connect with V3.co.uk
Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them
The importance of understanding your infrastructure
Java Deveoper/Programmer/Software Engineer, Algo Trading...
Austin Fraser has the pleasure of appointing a number...
Austin Fraser has the pleasure of appointing a Java Developer...
Austin Fraser has the pleasure of appointing a Senior...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Sony PSN out "r "age
I would just like to say im an avid user of PSN and in no way blame SONY for this outage as there clearly doing everything in thier power to sort this out, im not very happy about the length of time it took to tell us about our personal info being compromised and it would be nice for SONY to personally appoligise or offer something in way of apologie but i cant understand how this law firm can make a case against SONY on behalf of all of us PSN users? how exactly would that work? would we all recive some form of compensation? Im not being funny in any way, i would just like to know how that would work as im not real familiar with this kind of stuff and if someone is acting on my behalf (even if im just one of 77.000.000 users) i would love to know abit more about it! thanx
Posted by: Chris newton 28 Apr 2011