Author Topic: Sony's IT department  (Read 332 times)

Offline Perrine

  • Nickel Member
  • ***
  • Posts: 654
Sony's IT department
« on: June 02, 2011, 06:46:50 PM »
... Or both?

 :headscratch:

Quote
Our goal here is not to come across as master hackers, hence what we're about to reveal: SonyPictures.com was owned by a very simple SQL injection, one of the most primitive and common vulnerabilities, as we should all know by now. From a single injection, we accessed EVERYTHING. Why do you put such faith in a company that allows itself to become open to these simple attacks?

What's worse is that every bit of data we took wasn't encrypted. Sony stored over 1,000,000 passwords of its customers in plaintext, which means it's just a matter of taking it. This is disgraceful and insecure: they were asking for it.

http://www.huffingtonpost.com/2011/06/02/sony-pictures-hacked-lulzsec_n_870615.html

« Last Edit: June 03, 2011, 01:02:56 PM by Skuzzy »

Offline APDrone

  • Gold Member
  • *****
  • Posts: 3385
Re: Does Sony have a lazy IT department,...
« Reply #1 on: June 02, 2011, 08:21:08 PM »
Since Sony is a publically traded company( Corporation ), any expense in IT/IS that does not generate additional revenue will be avoided like the plague unless it can be proven, beyond any doubt, that there may be more pain if such an expense is not taken.

I suspect they'll have some capitalizable projects in the works for the short term.



AKDrone

Scenario "Battle of Britain" 602nd Squadron


Offline Vulcan

  • Plutonium Member
  • *******
  • Posts: 9913
What they got hit with is pretty easy to mitigate.

Most likely they went with a certain brand of network equipment as an 'end to end solution' that begins with "C". Unfortunately that brand's security solution is renowned for being absolutely rubbish.

Offline Reschke

  • Platinum Member
  • ******
  • Posts: 7724
      • VF-17 "The Jolly Rogers"
Re: Sony's IT department
« Reply #3 on: June 03, 2011, 01:31:23 PM »
They sound a lot like some of the other companies I know of.
Buckshot
Reschke from March 2001 till tour 146
Founder and CO VF-17 Jolly Rogers September 2002 - December 2006
"I'm baaaaccccckkk!"

Offline Babalonian

  • Platinum Member
  • ******
  • Posts: 5817
      • Pigs on the Wing
Re: Does Sony...
« Reply #4 on: June 03, 2011, 01:37:22 PM »
I'm not surprised at all, and neither should anyone else that's had experience with SOE (Sony Online Entertainment) in the past... and they've been around setting their company's standard for a very very long time.  Would be nice if someone did actually do something that finally got them to change a few if not many of their ways, but I wouldn't hold your breath for that to finally happen tomorrow after the last 15 years.


-Babalon
"Let's light 'em up and see how they smoke."
POTW IIw Oink! - http://www.PigsOnTheWing.org

Wow, you guys need help.