How to check if Sony Pictures hack affects you
- 05 June, 2011 02:30
- Comments
A few computer clicks is all it takes to learn if you were a victim of the Sony Pictures hack attack, but be careful.
Gizmodo has a created a form where you can type in your email address and see instantly whether the LulzSec hackers know where you live, your date of birth, phone number, and more.
Sony confirmed in a statement that a group of criminal hackers known as LulzSec claimed to have breached some of its websites. Sony said a breach had indeed occurred and the company has taken action to protect against further intrusion.
As with the PlayStation Network hack, Sony said it was hiring a "respected team of outside experts" to make things right, but observers question why such experts aren't already in place among Sony's staff.
LulzSec claims the hack exploited extremely basic deficiencies, such as storing passwords in plain text rather than encrypted.
It's not clear from Gizmodo's write-up if they have access to all LulzSec's hacked data, which includes over 1 million records, or whether it's the 51,000 or so account details already released and freely available.
The hackers apparently were only able to download a portion of what was available. Users of SonyPictures.com are left hanging as to whether their personal details are part of the haul.
Gizmodo, which has experience dealing with the authorities as demonstrated last year with the stolen iPhone 4 prototype, said it won't store the email addresses you test. Still, you will want to be cautious. Its site hardly has a first-class record when it comes to security, having itself been hacked at the end of last year.
There may be a far better way of checking user details against stolen data, as was illustrated by security researcher HD Moore, who provided a way for users to check their data against the Gizmodo theft. Moore required users first encrypt their data on a third-party website before checking it against a publicly accessible Google Docs spreadsheet that contains similarly encrypted data. This way no data was revealed, nor was anybody able to log it.
Sony's been a regular victim of hack attacks recently with the PlayStation Network, Qtrocity, Sony Online Entertainment, Sony Ericsson, and a Japan-based ISP subsidiary all falling victim. Experts are divided as to whether this is down to a sustained hacker campaign against the entertainment giant or whether Sony's systems simply have poor security. The hardware hacker that may have inspired the run of attacks and who cracked the PlayStation 3's encryption system, George Hotz, recently claimed that Sony had itself to blame for the attacks.
Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.
- Bookmark this page
- Share this article
- Got more on this story? Email CIO
- Follow CIO on twitter
- Find Out if Your Sony Pictures Subscriber Information Was Leaked Right Here
- Sony Hacked Again: How Not to Do Network Security : PCWorld Business Center
- Police Raid Gizmodo Editor's Home: The Fallout Continues : PCWorld
- Gawker Media Hacked, Warns Users to Change Passwords : PCWorld Business Center
- How to check if your password was exposed in Gawker hack - Computerworld
- Survey: PSN Outage Hasn't Impacted PlayStation Network Loyalty : PCWorld
- PlayStation Network Hack Timeline : PCWorld
- Sony Online Entertainment Hacked, 12,700 Credit Cards Stolen : PCWorld
- Sony Says Hacker Stole 2,000 Records From Canadian Site : PCWorld
- Yep, Looks Like Sony's Been Hacked Again : PCWorld
- PlayStation Hacker: Sony Has Only Itself to Blame for Breach : PCWorld Business Center
- Setting a strategy for secure mobile printing
- Seven Steps to Effective Data Governance
- Advanced Malware Exposed - How advanced malware, zero-day and targeted APT attacks are evading today's network defences
- 10 Mobile Security Requirements for the Bring Your Own Device (BYOD) Enterprise
- Managing IBM License Complexity
-
Google Jumps Into Social Bookmarks Game
-
NBN build gaining momentum daily: Quigley
-
Face Time - Interview with John Brennan and Robert DiStefano
-
Monday Grok: Will Siri crack the walls of GOOG?
-
Face Time - Interview with John Brennan and Robert DiStefano
-
HP and Closed Circuit Print Security Podcast featuring Quorcirca
Managing Security risks within Enterprise printing environments -
Avaya Deploys the Avaya Desktop Video Device with the Avaya Flare® Experience
A revolutionary new video collaboration device, the Avaya Desktop Video Device has been making waves in the communications industry ever since Avaya introduced the product in the fall of 2010. Avaya’s own employees have been among the earliest users and have seen first-hand how the product can improve collaboration and make people more efficient and effective. Read more. -
TestPro achieves visibility over software defect management - Reducing project risk and improving quality
In delivering specialised software testing products and services, TestPro aims to add value to its clients by assisting them to deliver software projects at a higher quality with less risk. It saw significant opportunity to reduce effort and resources during the product development life cycle.TestPro uses IBM Rational Team Concert software to help achieve greater visibility and reduce effort involved in managing product builds and defects during application development, maintenance and enhancement projects. Read more.
-
Mastering Data Mining
-
Creating the Virtual Classroom
-
Microsoft PowerPoint 2002 Step By Step Courseware
-
Access 2000 Programming for Dummies
-
Final Cut Pro 4 Complete Course
-
Excel 2010 All-In-One for Dummies®
-
The Data Model Resource Cd-rom, Revised Edition, Volume 1
-
Find Gold in Windows Vista
-
Introduction to Object Cobol








Comments
Post new comment