also @ TechSpot: 'Supercapacitor' could fully charge your phone in less than 30 seconds

Sony: Some PSN user data was unencrypted

By

On April 28, 2011, 8:16 PM

After Sony announced that its servers were hacked, users bombarded the company with concerns about the safety of their personal information. In its announcement earlier this week, Sony admitted that the attacker(s) gained access to customers' names, addresses, email addresses, birth dates, and PSN login credentials.

Naturally, the severity of that breach would be largely dependent on whether the information was encrypted -- something Sony neglected to mention in its initial announcement. Sony has addressed the question in its latest post revealing that some data was in fact stored on the company's servers in an unencrypted state.

Rest assured that your credit card information was encrypted and Sony says that there is still no evidence any financial data was swiped -- though it's entirely possible. However, your personal details were kept as a separate, unencrypted data set. This includes your identity, location and contact information.


Although Sony doesn't directly mention how your username and password were stored, it seem likely that they were housed with your other unencrypted data. Sony makes it abundantly clear that you should change your password for other online services if you're using the same one that you did on PSN/Qriocity.

As for your PSN credentials, Sony is developing a new software update that will require all users to change their password once the service is restored. The company also reminds users to beware of email, telephone and postal scams that request you to reveal further sensitive information such as your Social Security number.

You can bet Sony is furious about the intrusion and regretful about not encrypting your data. The company said it's working on strengthening its network infrastructure and enhancing PSN security across the board. Additionally, it's already in the process of moving its data center to a new, more secure location.

,

User Comments: 29

Got something to say? Post a comment
  1. Hmmm. coincidentally, my PS3 fried a few months back and I think I may have deleted my credit info before it did. Not sure though.

  2. Well last time i checked a mistake was like accidently putting bleach with my blacks, or misspelling someones name. This is to big of a mistake to say we should be nice to Sony because they are trying so hard to fix this. Its been 9 days...They should be smart enough to have a good enough security system to protect themselves. But i also want to add that there is a big difference from illegally playing a game dwnloaded from the computer on the PS3 and simply hacking into Sony and stealing personal information from millions of people. Thats simply F'ed up. I don't like Xbox360, and think PS3 is better, but it looks to me that i might be getting a Xbox.

  3. Aaah! I'm so angry at Sony because obviously they want to drag this out for as long as possible so they looks terrible! What motive could they possible have to improve anything!? ARGH!

  4. Ev01d: This is just PSN cancel all the transaction details you used with it. Problem solved (Other than if they find your account interesting and of worth to them).

Recently commented stories

Post a new comment

Social Login & Guest Posting TechSpot Members
Login here or sign up for free,
it takes about a minute.
Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.
TechSpot on:

Subscribe to TechSpot

Get free exclusive content, learn about new features and breaking tech news.