View Single Post
  #2 (permalink)  
Old 2nd May, 2011, 02:56 AM
Gizmo's Avatar
Gizmo Gizmo is offline
Chief BBS Administrator
 
Join Date: May 2003
Location: Webb City, Mo
Posts: 16,178
Send a message via ICQ to Gizmo Send a message via AIM to Gizmo Send a message via MSN to Gizmo Send a message via Yahoo to Gizmo Send a message via Skype™ to Gizmo

About bloody time.

However:
"Sony said that although credit card data was encrypted and there was no evidence it was stolen, the theft of the data could not be ruled out."

Ok, so those data are encrypted. How secure was the encryption? Is it something that a hacker could potentially break in, say, a month? Is it possible the attackers could have gained access to the passwords/keys used to encrypt the data?

More importantly, why was Sony storing this data somewhere that the attackers could apparently gain access to? For that matter, why were they storing it at all? Last I checked, the guidelines from the credit-card companies included "Don't store credit card info beyond The Point Of Use, EVER".
Reply With Quote