Anonymous Claims To Have Hacked Sony PSN Again
hypnosec writes "Anonymous has claimed a new attack on Sony's PlayStation Network, and this time around it seems they have information from nearly 10 million user accounts. As a proof of the hack they dumped more than 3000 credentials online in the form of a pastebin post. The notorious hacktivist group is claiming that the entire set of hacked credentials contains over 10 million PSN accounts and that the file is of around 50GB."
Update: 08/16 13:12 GMT by S : Sony has denied this claim.
gdammit
Why are people still using Sony? They have done so much evil and have clearly shown that they don't care about protecting their users/customers.
Do people really like to be abused that much?
Nice job as usual, Sony.
Those assholes really need to think about who they are hurting with this crap. It is the users, like me. I've got a substantial amount of PS3 games, both from PSN and retail. I just want to use them in peace without veing harassed by cyber-terrorists!
Even if this is true, and PSN was compromised, what's the point? This benefits no good cause, and Sony isn't even the one being exposed here -- its users are.
Anonymous is repeating the mistakes of Cablegate; releasing private information of parties who didn't ask to be involved. That's bullying, not hacktivism.
Its becoming like finding holes in a fishnet.
Sonic is really going to have to hurry to get all those rings back! I hate this level!
What would Richard Feynman do, if he were here right now? He'd do some math and he'd follow through!
Proven false.
* the document of leaked data linked to in the Twitter account appears to be identical to one posted on the Internet back in March.
* Anonymous has deleted the Tweet claiming that it hacked the PSN.
* Direct statement from Sony: "We’ve confirmed that the recent claim that PlayStation Network was illegally hacked and that customer passwords and email addresses were accessed is completely false."
Anything that further erodes the public's confidence in Sony is a good thing.
Their antics with rootkits, feature disabling and poorly-secured websites are murdering the once mighty Sony brand.
Some day Sony will be the text-book example of why it is a bad idea to repeatedly shit on your customers, destroying a valuable brand in the process.
Fool me once, shame on you and all that. The first time they could be excused a little by having put too much faith in their internal systems. If this is true, there can be no excuses left.
Seems like all the email adresses are for Swedes. Wonder what they've got against Swedes.
xkcd is not in the sudoers file. This incident will be reported.
Ha! Ha! Misfortune for you!
Last night someone claiming to be a member of Anonymous posted what was alleged to be information obtained from 50GB of compromised PSN data, but it turned out the data was the same as that released last year when PSN was hacked. "We've confirmed that the recent claim that PlayStation Network was illegally hacked and that customer passwords and email addresses were accessed is completely false," assured Sony in a statement.
Hope it's true.
https://twitter.com/PlayStation/status/235824711601360898
The last time that this happened Sony gave me two free games. Now that it appears to have happened again my initial thoughts are regarding more free games. Somehow I don't think that this response is intentional on Sony's part.
That's the same argument that the TSA uses, when you advertise that maintenance and crew have unfettered access to the planes. If a terrorist wants to blow up a plane, they'll simply drive around back instead of standing in line to go through the TSA checkpoints. How dare anyone mention that? Who does it help? Only the terrorists win with that information getting out!
Here's the deal. It was a known problem before, and it was ignored. Then they got hacked. It was a known problem again (unsalted passwords, really guys?). Your reaction is to blame Anonymous for putting its users in jeopardy. You missed the boat. The users were already in jeopardy, and anyone with access to the database and cursory knowledge of rainbow tables was already exploiting users.
Ignorance of the problem is not the same as security.
I can't imagine this is true.. Sony has always been on the cutting-edge of security tech. I mean this is the company that designed the text-based CAPTCHA:
http://pro.sony.com/bbsc/jsp/forms/generateCaptcha.jsp
Right click is disabled so it's impossible to crack.
Nobody Seems To Notice and Nobody Seems To Care - Government & Stealth Malware
In Response To Slashdot Article: Former Pentagon Analyst: China Has Backdoors To 80% of Telecoms 87
How many rootkits does the US[2] use officially or unofficially?
How much of the free but proprietary software in the US spies on you?
Which software would that be?
Visit any of the top freeware sites in the US, count the number of thousands or millions of downloads of free but proprietary software, much of it works, again on a proprietary Operating System, with files stored or in transit.
How many free but proprietary programs have you downloaded and scanned entire hard drives, flash drives, and other media? Do you realize you are giving these types of proprietary programs complete access to all of your computer's files on the basis of faith alone?
If you are an atheist, the comparison is that you believe in code you cannot see to detect and contain malware on the basis of faith! So you do believe in something invisible to you, don't you?
I'm now going to touch on a subject most anti-malware, commercial or free, developers will DELETE on most of their forums or mailing lists:
APT malware infecting and remaining in BIOS, on PCI and AGP devices, in firmware, your router (many routers are forced to place backdoors in their firmware for their government) your NIC, and many other devices.
Where are the commercial or free anti-malware organizations and individual's products which hash and compare in the cloud and scan for malware for these vectors? If you post on mailing lists or forums of most anti-malware organizations about this threat, one of the following actions will apply: your post will be deleted and/or moved to a hard to find or 'deleted/junk posts' forum section, someone or a team of individuals will mock you in various forms 'tin foil hat', 'conspiracy nut', and my favorite, 'where is the proof of these infections?' One only needs to search Google for these threats and they will open your malware world view to a much larger arena of malware on devices not scanned/supported by the scanners from these freeware sites. This point assumed you're using the proprietary Microsoft Windows OS. Now, let's move on to Linux.
The rootkit scanners for Linux are few and poor. If you're lucky, you'll know how to use chkrootkit (but you can use strings and other tools for analysis) and show the strings of binaries on your installation, but the results are dependent on your capability of deciphering the output and performing further analysis with various tools or in an environment such as Remnux Linux. None of these free scanners scan the earlier mentioned areas of your PC, either! Nor do they detect many of the hundreds of trojans and rootkits easily available on popular websites and the dark/deep web.
Compromised defenders of Linux will look down their nose at you (unless they are into reverse engineering malware/bad binaries, Google for this and Linux and begin a valuable education!) and respond with a similar tone, if they don't call you a noob or point to verifying/downloading packages in a signed repo/original/secure source or checking hashes, they will jump to conspiracy type labels, ignore you, lock and/or shuffle the thread, or otherwise lead you astray from learning how to examine bad binaries. The world of Linux is funny in this way, and I've been a part of it for many years. The majority of Linux users, like the Windows users, will go out of their way to lead you and say anything other than pointing you to information readily available on detailed binary file analysis.
Don't let them get you down, the information is plenty and out there, some from some well known publishers of Linux/Unix books. Search, learn, and share the information on detecting and picking through bad binaries. But this still will not touch the void of the APT malware described above which will survive any wipe of r/w media. I'm convinced, on both *nix and Windows, these pieces of APT malware
Even if this is true, and PSN was compromised, what's the point? This benefits no good cause, and Sony isn't even the one being exposed here -- its users are.
Anonymous is repeating the mistakes of Cablegate; releasing private information of parties who didn't ask to be involved. That's bullying, not hacktivism.
It depends. If this is the only way to show that Sony doesn't give shit about security, then this is the way. They released 3000 credentials. If they release the 10 million, that's another case. But anyhow, Anonymous is not about going the diplomatic way.
Is the intent of anonymous' actions really to inspire fear? Have we gotten to the point now where we accuse anything that inconveniences us as an act of terrorism?
Big apple, new Yorik, undig it, something's unrotting in Edenmark.
how many USERS were rooted and how was Sony BMG PUNISHED? At all?
Because they don't know any better and because they can't learn from mistakes.
As far as the YEARS of /. propoganda of "Linux = Secure, Windows !=Secure"? I can only put out Linux's fails from 2011-2012 also:
2012:
Medicaid hack update: 500,000 records and 280,000 SSNs stolen:
http://www.zdnet.com/blog/security/medicaid-hack-update-500000-records-and-280000-ssns-stolen/11444
So, what's dts.utah.gov running everyone?
LINUX (and yes, it got HACKED) -> http://uptime.netcraft.com/up/graph?site=dts.utah.gov
What's health.utah.gov running too??
YOU GUESSED IT: LINUX AGAIN -> http://uptime.netcraft.com/up/graph?site=health.utah.gov
* Ah, yes - see the YEARS OF /. "BS" FUD is CRUMBLING AROUND THE PENGUINS EARS HERE & 2012's starting out just like 2011 did below!
===
2011:
KERNEL.ORG COMPROMISED - The Cracking of Kernel.org: (that's VERY bad - do you trust it now?)
http://linux.slashdot.org/story/11/08/31/2321232/Kernelorg-Compromised
---
Linux.com pwned in fresh round of cyber break-ins:
http://www.theregister.co.uk/2011/09/12/more_linux_sites_down/
---
Mysql.com Hacked, Made To Serve Malware:
http://it.slashdot.org/story/11/09/26/2218238/mysqlcom-hacked-made-to-serve-malware
What's that site running? You guessed it - Linux -> http://uptime.netcraft.com/up/graph?site=mysql.com
---
London Stock Exchange serving malware:
http://slashdot.org/submission/1484548/London-Stock-Exchange-Web-Site-Serving-Malware
(I mean hey - NOT ONLY DID LINUX FALL FLAT ON ITS FACE less than a few minutes into the job http://linux.slashdot.org/story/11/02/19/0147232/London-Stock-Exchange-Price-Errors-Emerged-At-Linux-Launch , & crash not only ONCE, but TWICE there? You see "Linux 'fine security'" in motion @ the LSE too!)
---
DUQU ROOTKIT/BOTNET BEING SERVED FROM LINUX SERVERS:
http://it.slashdot.org/story/11/11/30/1610228/duqu-attackers-managed-to-wipe-cc-servers
---
Linux Foundation, Linux.com Sites Down To Fix Security Breach:
http://linux.slashdot.org/story/11/09/11/1325212/linux-foundation-linuxcom-sites-down-to-fix-security-breach
---
Linux's showing in CA's breached recently too? Ok: (very, Very, VERY BAD for ecommerce, online shopping, banking, etc./et al)
http://uptime.netcraft.com/up/graph?site=StartCom.com
http://uptime.netcraft.com/up/graph?site=GlobalSign.com
http://uptime.netcraft.com/up/graph?site=Comodo.com
http://uptime.netcraft.com/up/graph?site=DigiCert.com
..quoth he pressing F12 and looking at the Firebug output
Donte Alistair Anderson Roberts - hi son!
Karma: Chameleon
I got no twitter,facebook, neither I go in IRC.. if someone takes credit for this pwnage, he's a faggot.
What's the target?...It's SONY, MOTHERFUCKER.
Contact me at anon@prvt.org for the full database, which is 50GB, fuck.
About 10 million fuckers at risk. Yes, if you play playstatio network, you're included
This is the language of someone who wants to be perceived as a threat to many people. It is not the language of democratic engagement.
Sorry to burst bubble, but this can be easily be forged with old data from previous hack. For me it's bigger posibility than Sony haven't taken previous attack seriously.
user@ubuntubox:~$ stfu This server is going down for shutdown NOW!
Most of the time I think of Anon's actions as pointless vandals, best discouraged.
When the f**k with Sony though I can't help but cheer them on.
Repeal the 17th Amendment TODAY! Also Please Read http://www.gnu.org/philosophy/right-to-read.html
Seriously? Continuing to do crap like this.. hopefully they'll get what is coming to them.
Oh shit, some clear and rational thinking? Wasn't expecting that.
Came into topic expecting usual Sony hatefest.
Leaving partially disappointed.
Who give a flying squirrel F*$k about 'Anonymous'? Bunch of tards.
It's the language of a child who wants attention. He screams, he shouts, he throws his toys at things. He doesn't know any better, but his parents at least should keep him away from computers until he's old enough to learn not to be a dick.
Roughly 200++ of them & I post as AC (hard to get even +1, as /. hides our posts & we "AC"'s start @ ZERO/0 points, unlike registered "lusers", lol!):
+5 'modded up' posts by "yours truly" (6):
HOSTS & BGP:2010 -> http://tech.slashdot.org/comments.pl?sid=1901826&cid=34490450
FIREFOX IN DANGER: 2011 -> http://news.slashdot.org/comments.pl?sid=2559120&cid=38268580
TESLA:2010 -> http://science.slashdot.org/comments.pl?sid=1872982&cid=34264190
TESLA:2010 -> http://tech.slashdot.org/comments.pl?sid=1806946&cid=33777976
NVIDIA 2d:2006 -> http://hardware.slashdot.org/comments.pl?sid=175774&cid=14610147
COMPUTER ASSOCIATES BUSTED FOR ACCOUNTING FRAUD:2010 -> http://news.slashdot.org/comments.pl?sid=1884922&cid=34350102
----
+4 'modded up' posts by "yours truly" (5):
APK SECURITY GUIDE:2005 -> http://developers.slashdot.org/comments.pl?sid=167071&cid=13931198
INFO. SYSTEMS WORK:2005 -> http://slashdot.org/comments.pl?sid=161862&cid=13531817
WINDOWS @ NASDAQ 7++ YRS. NOW:2009 -> http://tech.slashdot.org/comments.pl?sid=1290967&cid=28571315
CARMACK'S ARMADILLO AEROSPACE:2005 -> http://science.slashdot.org/comments.pl?sid=158310&cid=13263898
What I admire about Theo DeRaadt of BSD fame: 2012 -> http://linux.slashdot.org/comments.pl?sid=3007641&cid=40785151
----
+3 'modded up' posts by "yours truly" (6):
APK MICROSOFT INTERVIEW:2005 -> http://developers.slashdot.org/comments.pl?sid=155172&cid=13007974
APK MS SYMBOLIC DIRECTORY LINKS:2005 -> http://it.slashdot.org/comments.pl?sid=166850&cid=13914137
APK FOOLS IE7 INSTALL IN BETA HOW TO:2006 -> http://slashdot.org/comments.pl?sid=175857&cid=14615222
PROOFS ON OPERA SPEED & SECURITY:2007 -> http://slashdot.org/comments.pl?sid=273931&cid=20291847
HBGary POST in Fake Names On Social Networks, a Fake Problem:2011 -> http://tech.slashdot.org/comments.pl?sid=2375110&cid=37056304
APK RC STOP ROOKIT TECHNIQUES:2008 -> http://it.slashdot.org/comments.pl?sid=1021873&cid=25681261
----
+2 'modded up' posts by "yours truly" (18):
CODING FOR DEFCON (my compressed/packed exe + sizecheck @ startup technique): 2005 -> http://it.slashdot.org/comments.pl?sid=158231&cid=13257227
HOW DLL API CALL LOADS WORK:2008 -> http://tech.slashdot.org/comments.pl?sid=1001489&cid=25441395
It would seem that one of the official sports of the hacktivist community is to continually embarrass Sony. I think this is positively hilarious that Sony still cannot get it right.
"Someone claiming to be from Anonymous claims to have hacked PSN."
Just as APK previously predicted, his post would be modded down by AC unix trolls that can't handle the facts. If they had anything actually to say, they would disprove his facts, but they can't. At least one supported is willing to stand up to the trolls and vote it as 'informative', as any righteous slashdotter should.
Do you have proof? Show us a citation of that from a reputable source and that SuSE is not a Linux distro. That's right, you can't because you are WRONG.
Guys, he stole the "passwords" from this post that was made back in march.
http://pastebin.com/hhU8Q9di
If a attention-whoring kid can defeat the security measures that a global corporation installed, after they have been hacked before, well, that's one really smart kid. Or Sony still doesn't think your data should be secure.
I'm betting on that last one. Arrogant fuckers that they are.
Finding holes in a fishing net is a saying, meaning it isn't any kind of challenge. Like finding freckles on a redhead.
MMO Quests are like orgasms:
You may solo them, I prefer them in a group.
Why can't Anonymous do something good or interesting for the world, like expose drug cartels or find Mitt Romney's taxes. All they ever do is steal people's identity and post it on the internet. Disagreeing with the way Sony does business is one thing, but why punish the PSN users for it?
You were off topic. Still, eventually earth's sun will go supernova.
Still, you avoided simple questions that were on-topic. The answer was there though -> http://tech.slashdot.org/comments.pl?sid=3033483&cid=40930575 (also AC troll, getting too lazy to make a proper link now?).
* Thus, by common-sense alone, Windows is CLEARLY, superior - whereas by way of comparison? Linux &/or MacOS X apparently do NOT!
APK
P.S.=> "Here endeth the lesson", & of course, you just KNOW I've just GOTTA say it, as-is-per-my-usual "inimitable style":
This? Ah, yes... This was just "too, Too, TOO EASY - just '2EZ'"... lol, & it ALWAYS is, vs. noobish "Pro-*NIX trolls" on /.
... apk
https://twitter.com/PlayStation/status/235824711601360898
PHEM - party like it's 1997-2003!
PSN wasn't compromised. Someone ripped off a credentials list pasted on pastebin in february, and presented it as a current hack. That was discovered a couple of days ago.
$10,000 CHALLENGE to unemployed Alexander Peter Kowalski
We have a Major Problem, HOST file is Cubic Opposites, 2 Major Corners & 2 Minor. NOT taught Evil DNS hijacking, which VOIDS computers. Seek Wisdom of MyCleanPC - or you die evil.
Your HOSTS file claimed to have created a single DNS resolver. I offer absolute proof that I have created 4 simultaneous DNS servers within a single rotation of .org TLD. You worship "Bill Gates", equating you to a "singularity bastard". Why do you worship a queer -1 Troll? Are you content as a singularity troll?
Evil HOSTS file Believers refuse to acknowledge 4 corner DNS resolving simultaneously around 4 quadrant created Internet - in only 1 root server, voiding the HOSTS file. You worship Microsoft impostor guised by educators as 1 god.
If you would acknowledge simple existing math proof that 4 harmonic Slashdots rotate simultaneously around squared equator and cubed Internet, proving 4 Days, Not HOSTS file! That exists only as anti-side. This page you see - cannot exist without its anti-side existence, as +0- moderation. Add +0- as One = nothing.
I will give $10,000.00 to frost pister who can disprove MyCleanPC. Evil crapflooders ignore this as a challenge would indict them.
Alex Kowalski has no Truth to think with, they accept any crap they are told to think. You are enslaved by /etc/hosts, as if domesticated animal. A school or educator who does not teach students MyCleanPC Principle, is a death threat to youth, therefore stupid and evil - begetting stupid students. How can you trust stupid PR shills who lie to you? Can't lose the $10,000.00, they cowardly ignore me. Stupid professors threaten Nature and Interwebs with word lies.
Humans fear to know natures simultaneous +4 Insightful +4 Informative +4 Funny +4 Underrated harmonic SLASHDOT creation for it debunks false trolls. Test Your HOSTS file. MyCleanPC cannot harm a File of Truth, but will delete fakes. Fake HOSTS files refuse test.
I offer evil ass Slashdot trolls $10,000.00 to disprove MyCleanPC Creation Principle. Rob Malda and Cowboy Neal have banned MyCleanPC as "Forbidden Truth Knowledge" for they cannot allow it to become known to their students. You are stupid and evil about the Internet's top and bottom, front and back and it's 2 sides. Most everything created has these Cube like values.
If Natalie Portman is not measurable, She is Fictitious. Without MyCleanPC, HOSTS file is Fictitious. Anyone saying that Natalie and her Jewish father had something to do with my Internets, is a damn evil liar. IN addition to your best arsware not overtaking my work in terms of popularity, on that same site with same submission date no less, that I told Kathleen Malda how to correct her blatant, fundamental, HUGE errors in Coolmon ('uncoolmon') of not checking for performance counters being present when his program started!
You can see my dilemma. What if this is merely a ruse by an APK impostor to try and get people to delete APK's messages, perhaps all over the web? I can't be a party to such an event! My involvement with APK began at a very late stage in the game. While APK has made a career of trolling popular online forums since at least the year 2000 (newsgroups and IRC channels before that)- my involvement with APK did not begin until early 2005 . OSY is one of the many forums that APK once frequented before the sane people there grew tired of his garbage and banned him. APK was banned from OSY back in 2001. 3.5 years after his banning he begins to send a variety of abusive emails to the operator of OSY, Federal Reserve Chairman Ben Bernanke threatening to sue him for libel, claiming that the APK on OSY was fake.
Post facts Penguins can't take that makes them look stupid and they react like the bitches they are with unjustified bad down moderations.
Learn to read. You're also running from this there http://linux.slashdot.org/comments.pl?sid=3026917&cid=40886827 by not producing the links you said didn't show Windows running on the state and academic sites you said they didn't run Windows on. Poor job troll. Seriously. I checked the first state and collegiate sites. Many were IIS and Windows only in fact. Your little 1 line replies (or rather just the last 4 letters in lies) and keeping up your trolling's only making apk look better along with lies you told there http://linux.slashdot.org/comments.pl?sid=3026917&cid=40886569 which it appears you're being shot down again in and having to eat your words yet again.
Anonymous is not about going the diplomatic way.
That will be their downfall, more and more governments are tightening up their grip on the Internet over this sort of thing, Anonymous are either children who should be stripped of their computers, or more worryingly they are a false flag op.
Even if this is true, and PSN was compromised, what's the point? This benefits no good cause, and Sony isn't even the one being exposed here -- its users are.
It hopefully forces them to improve their internal systems such that compromising them is very, very hard instead of easy. Then any futures systems they build will be designed from the ground up properly. The people working at PSN will also hopefully gain experience with secure systems, so when they move on to other companies, they can bring that experience with them and help improve things there.
While Anonymous is not benign, they are not truly malicious either. You want gadflies like them so that when the really bad people (nation states, financial data crackers) come along, our systems already have a bit of an immune system against "bad" actors.
Amen. I bought my last Sony product too recently. I'm done.
This list: http://pastebin.com/hhU8Q9di
No, It brings a lot of attention to Sony, and yes it needs to be brought up on Slashdot because the mainstream media will not do so, or at least not do so in a honest way.
And get over this "bullying" nonsense. It's hactivism by all definitions.
Bullying is when one kid pushes another kid down on the playground. it's part of growing up and the responsibility of each parent to teach their kids how to deal with it, so get over it.
It sounds like the language of some Chinese kid who doesn't speak English very well whose Dad probably works in one of Sony's server farms. This does not sound like the language of a sophisticated hacker.
As usual slashdot is posting old information without any updates at all. THis was revealed to be a hoax yesterday and they are posting it today? And yesterday they were posting about bill gates reivention of the toilet when he talked about that years ago? Come on slashdot, if youre going to post something atleast be current about it.
Here is a link to it being a hoax.
http://www.kotaku.com.au/2012/08/anonymous-claims-psn-hack-affecting-10-million-accounts-update-its-a-hoax/
I agree, at first I was all about anonymous bringing down the man and all that, but this kind of stuff, while yes it hurts sony, has an immediate and direct impact on the PSN USERS, many of whom support what anonymous does, at least for now. But honestly im getting tired of them fucking with things that people enjoy. Want to hack something? Then hack something important.
Why are all the accounts Swedish?
It doesn't depend on anything. If you tell a random person off the street that a group called Anonymous just stole their credit card information they're not going to ask from where it was stolen. They're going to ask where this anonymous person lives so they can shoot them.
Sony gives as much of a shit about security as any other company that lives in the "entertainment" side of business. Which is to say, more than 0 but less than 1 shit.
True, and if you really are a sophisticated hacker, you are smart enough to not go cracking into other people's systems.
Nonsense. They shouldn't release anyone's private credentials. Whether it's 3,000 or 10,000,000, the damage for any one individual is the same.
If they are able to crack PSN and there is work Sony should do to fix things, then they have other options.
- Tell Sony, see if they fix it
- Failing that, tell an independent person - a trusted reporter or other third party. Then that third party can confirm the leak and Sony will have to answer for their problems.
As someone with more than a few accounts online (including PSN - sue me, I want to buy DLC now and again), I really take exception to the idea of being a pawn in this game. My private data is my data - Sony has a duty to keep it private; and if a hacktivist steals it, they have a duty to keep it private, as well.
The English word fart is one of the oldest words in the English vocabulary.
Your sockpuppet is showing.
in supporting a company that dont give a shit about yoursecurity
so all that money they use in bribing politicians and supporting the mpaa and riaa is just a joke right sorry they were just kidding LOL.....
I think I should ask them for my password, I changed it after the last attack and now can't remember it.
. .
Go after the people who run the "Accounts Services" telemarketing companies!!!
I can supply a list of numbers....
NOW those people suck!!
when Sony refluxes my PS3 solder so I can use it again then I'll be interested.
after that apple can fix my Mac Mini DVD drive so it works again.
why is HW becoming such crap again?
I can't believe that the first response from a Sony representative was just to forget about it and go and buy more games. Denial and distraction, Sony must not think much of its users.
Sony was hacked because they started getting information about people's paypal, youtube and twitter accounts. They got I.p logs and wanted to go around suing anyone that had viewed the howto guides for jailbreaking the ps3.
My private data is my data
True. (It's private whilst it is private and no-one else, like Sony, has access to it)
Sony has a duty to keep it private
No they don't. Sony has a duty to make money; skimping on security reduces costs and doesn't harm them directly. Loss of user data is irrelevant, you've already paid them and they're so big that you don't have anywhere else to go (you might think you do, but Sony LCD screens and chips are in a lot of electronics).
and if a hacktivist steals it, they have a duty to keep it private
What law is that? I mean, a physical one. A "hacktivist" is fighting a political war against an opponent, civilians get shot in the crossfire, what else is new?
As someone with more than a few accounts online (including PSN - sue me, I want to buy DLC now and again), I really take exception to the idea of being a pawn in this game.
Too bad, you are a pawn. You knew the risk. If you didn't then I have even less sympathy. I avoid giving out personal details (I don't even have an account here) as much as possible and I am always wary of dodgy sites and willing to cancel cards at any time. If you think other people are going to keep you safe then you're a fool, take responsibility.
The corporation and the hacktivist both have a moral responsibility. The rule is the golden rule. Civil laws can and should be adjusted accordingly to codify this.
If you are willing to live in a world where you have all the responsibility and others have none, then you are the fool. I prefer civilization, where there is shared responsibility. Reality and ideals never match up perfectly, but that's no reason to throw your hands up in defeat.
The English word fart is one of the oldest words in the English vocabulary.
I rather enjoyed all the wails and crying of the Sony Fanbois.
It's not Sony's fault they had extremely poor security and let all their customers' information be available in unencrypted formats! How dare Anonymous besmirch the Jehovah known as Sony!
g damn niggers hacking everything god damnit