Friday, June 3, 2011

Sony Hit Yet Again; Consumer Passwords Exposed

 



The hacker group that took over the website of PBS NewsHour last weekend has returned to its first love — hacking Sony.

LulzSec announced Thursday it hacked servers at Sony Pictures and Sony BMG. The group posted what appear to be the stolen e-mail addresses and passwords of about 50,000 consumers who’d registered for one of three Sony promotional sweepstakes: last year’s “Seinfeld — We’re Going to Del Boca Vista!” giveaway, a January contest Sony conducted with AutoTrader, and a Sony contest to promote the film Green Hornet.

The announcement said the group pulled off the hack using a simple SQL injection vulnerability — a common website weakness. LulzSec said more than 1 million consumer accounts were accessible in the breach, but it wasn’t able to grab all the data “due to a lack of resources on our part.” It tweeted a plea for donations to fund further attacks.     Read More