Skip to main content

Sony fined almost $400,000 for 2011 PlayStation security breach

Sony Computer Entertainment Europe has been fined almost $400,000 by the British Information Commissioner’s Office for the hacker attack its PlayStation network suffered in April 2011. The ICO said Sony was in part responsible for the subsequent breach of customer privacy through negligence in keeping its security software and protocols up to date.

Describing the hacking attack as “a serious breach of the Data Protection Act,” the Information Commissioner’s Office fined the Sony subsidiary £250,000, noting that “the attack could have been prevented if the [security] software had been up-to-date, while technical developments also meant passwords were not secure.” The organization does, however, note that “following the breach, Sony has rebuilt its Network Platform to ensure that the personal information it processes is kept secure.”

Recommended Videos

In a statement accompanying the ICO’s announcement of the fine, David Smith, the British Deputy Commissioner and Director of Data Protection, admitted that “the penalty we’ve issued today is clearly substantial, but we make no apologies for that,” going on to describe the PlayStation breach as “one of the most serious ever reported to us [as well as one that] directly affected a huge number of consumers, and at the very least put them at risk of identity theft.”

“If you are responsible for so many payment card details and log-in details then keeping that personal data secure has to be your priority,” Smith said. “In this case that just didn’t happen, and when the database was targeted – albeit in a determined criminal attack – the security measures in place were simply not good enough. There’s no disguising that this is a business that should have known better. It is a company that trades on its technical expertise, and there’s no doubt in my mind that they had access to both the technical knowledge and the resources to keep this information safe.”

However, it wasn’t all bad news, he continued. “If there’s any bright side to this, it’s that a PR Week poll shortly after the breach found the case had left 77 percent of consumers more cautious about giving their personal details to other websites.”

Payment of the fine is due by February 14, with a 20 percent discount (bringing the total to £200,000, or $315,740 USD) if the amount is paid in full by February 13.

In response to the ICO statement, a spokesman at Sony Computer Entertainment Europe said that the company felt that the fine was undeserved. “Sony Computer Entertainment Europe strongly disagrees with the ICO’s ruling and is planning an appeal,” a spokesman for the company said in a statement. “SCEE notes, however, that the ICO recognizes Sony was the victim of ‘a focused and determined criminal attack,’ that ‘there is no evidence that encrypted payment card details were accessed,’ and that ‘personal data is unlikely to have been used for fraudulent purposes’ following the attack on the PlayStation Network.”

Graeme McMillan
Former Digital Trends Contributor
A transplant from the west coast of Scotland to the west coast of America, Graeme is a freelance writer with a taste for pop…
PS6: everything we know about the PlayStation 6 so far
A PS5 DualSense controller.

It sounds like we're going to learn more about a next-generation PlayStation sooner rather than later.

In early 2024, Sony Senior Vice President Naomi Matsuoka told Bloomberg the following: "Looking ahead, PS5 will enter the latter stage of its life cycle." While she didn't outright say that a PlayStation 6 is in the works, we can assume that the company is already looking ahead at its next console.

Read more
Concord didn’t fail PlayStation. PlayStation failed Concord
A character wields a rocket launcher in Concord.

Ever since its disastrous launch, there’s a lot of discussion about how Concord failed for PlayStation. It's a fair conversation, but it's not the only one that needs to be had in order to understand how we got here. We can't ignore how PlayStation failed Concord and its developers.

Tuesday afternoon, Hermen Hulst announced that Concord, which was shut down two weeks after its launch earlier this summer, would not be coming back. On top of that, he explained that Sony was shutting down Concord developer Firewalk Studios and mobile game developer Neon Koi. He cites the move as “part of our ongoing efforts to strengthen SIE’s Studio Business.”

Read more
Best PlayStation Plus Deals: Save on Essential, Plus and Premium
Best PS Plus deals

Gaming on consoles can be a lot of fun, and while some gaming PCs can be a lot more powerful, they also tend to be a lot more expensive. Of course, if you're on the PlayStation 4 or the PlayStation 5, then you're likely going to need to grab yourself a PlayStation Plus subscription service from Sony directly. That allows you to play multiplayer games and access online servers and, depending on your subscription, also gives you access to a library of free games every month, so you don't have to spend your money on extra games except for titles that don't appear on PS Plus on release.

Also, while you're here, be sure to check out these excellent PS5 game deals and PlayStation deals that include some great games and accessories you can get for a great price.
What is PlayStation Plus?
Along with online multiplayer and other in-game network features, a PlayStation Plus Essential membership grants you access to exclusive discounts and other promotions. Perhaps the most notable benefit of PlayStation Plus is that every month, Sony gives subscribers one PlayStation 5 and two PlayStation 4 games that are free to download. You have one month to add these free PlayStation Plus games to your library.

Read more