作者cassine (Savannah)
看板Modchip
標題[PS3 ] PSN網頁登入漏洞公開 線上登入緊急關閉
時間Thu May 19 11:09:49 2011
http://goo.gl/HWSRp
You have to be surprised at how such a big corporation can fail so
badly at keeping their security up to date. It seems that the PSN
online login page with password reset was exploited again by hackers.
Though not a big as issue as the first, if you go to reset your PSN
password all it asks for is your E-mail and date of birth. Hmm lets
see, database stolen... they probably have this information....you see
where its going.
簡單說就是駭客手上有了使用者的E-mail、出生年月日,所以有心人士可以搶先
一步綁架使用者的帳號,重設密碼。
As a result all webpage logins/password reset options are now
offline. If you legitimately don't remember your PSN logins, well
seems like your out of luck for a while. Looks like everyone should
have followed Japans decision eh?
Whats interesting about the whole situation that a website Nyleveia
discovered this exploit and posted about it online (via Twitter), and
contacted Sony to take a look at it. Sony took the tip, had the
tweets removed and now have the reason for downtime as:
"Clarification: this maintenance doesn't affect PSN on consoles,
only the website you click through to from the password change email.
"
"Fortunately we have got ISPs to release outstanding emails;
unfortunately, a small amount of maintenance is required to improve
this process"
******
所以說JB或主機壞掉而無法登入 PSN的人暫時就沒辦法拿回帳號了,現在就看
SONY要怎麼補救了。
--
○ ____ _ _ _ _ ____ _ _ ____ _____ ____
。 ★(_ _)( \( )( \/ )( ___)( \( )(_ _)( _ )( _ \
o _)(_ ) ( \ / )__) ) ( )( )(_)( ) / ● ‧
(____)(_)\_) \/ (____)(_)\_) (__) (_____)(_)\_) ★
o
--
※ 發信站: 批踢踢實業坊(ptt.cc)
◆ From: 140.120.31.137
推 ggyyhippo:我怎覺得這個出包方式很爆笑... 114.47.84.57 05/19 11:35
推 howar31:沒救了... 211.79.140.134 05/19 12:59
推 mrporing:跟別人借沒jb的主機改不行嗎,我可不想為 140.117.44.76 05/19 15:31
→ mrporing:了改密碼而放棄jb 140.117.44.76 05/19 15:31
推 eva123eva:真沒品的駭客,要弄去弄$ony就好了 113.61.182.199 05/19 15:41
→ eva123eva:一直牽連用戶,賣個資很賺也不要這樣 囧 113.61.182.199 05/19 15:42
推 mild7no1: SONY真的沒救了 218.160.183.57 05/22 09:10