Gone Phishing: Sony Thailand Site Hacked

May 23, 2011

Antivirus and security firm F-Secure said over the weekend that it found a "live" phishing site active on Sony’s servers in Thailand. The malicious site was found on Sony’s official web site for Thailand, running under " hdworld.sony.co.th" and targeting an "Italian credit card company."

From the F-Secure website:

"We know you're not supposed to kick somebody when they're already down… but we just found a live phishing site running on one of Sony's servers.

However, this incident has nothing to do with the Sony PSN hack."

The security firms says that Sony has "been hacked again" but adds that the "server is probably not very important." The company closes by saying that its software has blocked the site for its customers.

F-Secure adds that it has told Sony about the site.

Source: SlashDot


Comments

Re: Gone Phishing: Sony Thailand Site Hacked

Another hit: Sony BGM Greece was breached, and usernames, real names, and email addresses were exposed.

Quote of the day: "It is nearly impossible to run a totally secure Web presence, especially when you are the size of Sony."

That might be a viable answer if it were to the original DDoS attack, the SOE breach, the phishing site hidden on their servers, the theft of sweesptakes entries, the exploit allowing PSN accounts to be stolen using the password recovery page, or the theft of email addresses from the BGM site... It's really pushing it to use that on the big PSN breach, but to use it to answer all of them, in the space of a few weeks?

Re: Gone Phishing: Sony Thailand Site Hacked

Yeah, two really big possibilities: Someone REALLY has it in for them or their security was/is abysmal. Of course, the two are also possible combined.

Forgot your password?
Username :
Password :

Shout box

You're not permitted to post shouts.
E. Zachary KnightGamasutra explores the failure of Streetfighter X Tekken and has one of the best arguments against on-disk DLC I have ever read: http://tinyurl.com/d399ylu05/25/2012 - 1:46pm
ddrfr33kabout the xbox live hacks from last year, now we know: http://kotaku.com/5913228/report-how-scammers-are-stealing-xbox-live-accounts-and-what-they-do-with-them05/25/2012 - 12:31pm
tallimarhttp://news.cnet.com/8301-1035_3-57440902-94/microsoft-legal-win-over-google-may-signal-ceasefire/05/24/2012 - 10:17pm
ZippyDSMleeTIme or an operation!05/24/2012 - 6:43pm
ZippyDSMleePC parts are in wish me luck or hell!!05/24/2012 - 6:43pm
MaskedPixelante38 Studios and Big Huge Games are pretty much dead now. http://www.joystiq.com/2012/05/24/38-studios-and-big-huge-games-lay-off-entire-staffs05/24/2012 - 4:39pm
DorthLousActually, nop, I did miss the emoticon for some reason (getting used to pics?) and I didn't know you changed it since (since I posted previous to my shout and it was still there.) Anyhow, thanks for taking it out!05/23/2012 - 6:01pm
james_fudgeWell we were just testing it. but it is still on the submission to fight $pam.05/23/2012 - 5:48pm
E. Zachary KnightJames, No I don't have it. I was just wondering who does and why. More curiosity than anything.05/23/2012 - 5:38pm
james_fudgeDid you not see the emoticon and did you not see that it has already been changed back?05/23/2012 - 5:10pm
james_fudgeLOL05/23/2012 - 5:07pm
DorthLousWhy? Not shocked that people are barking to an additional hoop to jump through when posting from their already logged in account or just mentionning this to try to paint me as one always complaining?05/23/2012 - 4:45pm
james_fudgebig shock there ;)05/23/2012 - 4:30pm
DorthLousI'll add my voice to those wanting it gone :S I'm already logged in, I don't need a captch'a. That's for those registering.05/23/2012 - 3:54pm
james_fudgeEt tu EZK?!?05/23/2012 - 3:51pm
Craig R.I'm a One Man Quorum! And it's working for me now, thanks. :)05/23/2012 - 3:48pm
E. Zachary KnightHow do we determine who get's the game/captcha thingy? Is there a certain posting threshhold users have to meet before it is turned off?05/23/2012 - 2:25pm
james_fudgeGive it a chance, we're still adjusting it ;)05/23/2012 - 11:20am
james_fudgeOne does not a Quorum make Craig.05/23/2012 - 11:16am
Craig R.If I complete the stupid game, and it just deletes my comment, what's the point?05/23/2012 - 11:15am

Be Heard - Contact Your Politician