Sony Pictures falls victim to major data breach

02.06.2011

So far, Sony has hired at least three external firms to help patch its networks. It also recently hired a new chief information security officer to help coordinate its security efforts. With the company's websites having been routinely broken into, despite such measures, many wonder just how porous Sony's networks are.

Sony itself characterized the PlayStation Network and Sony Online Entertainment intrusions as highly targeted and sophisticated cyberattacks. However, all of the publicly disclosed ones since then appear to have been the result of some fundamental security oversights on the part of the company.

Several of the attacks have resulted from SQL injection flaws that hackers have claimed were extremely easy to find and to exploit.

Jaikumar Vijayan covers data security and privacy issues, financial services security and e-voting for Computerworld. Follow Jaikumar on Twitter at or subscribe to . His e-mail address is .

in Computerworld's Network Security Topic Center.