logo
allyourlawarebelongtous.com
    •  
    •  
    •  
    •  
    •  
    28
    Feb

    United Kingdom Fines Sony £250,000 for PSN Data Breach

    Posted by Michael Twomey | (1) Comment

    2013-playstation-network-logo_620x350The fallout continues from the massive security breach of Sony’s online PlayStation Network (PSN) in April of 2011, where the network was shut down for over three weeks following an external hack that compromised the personal financial data of almost seventy-seven million user accounts.  Recently, the United Kingdom’s Information Commissioner’s Office (ICO) levied a £250,000 ($396,000) fine on Sony for violating the country’s Data Protection Act, calling the breach “preventable” had Sony properly strengthened PSN’s security.

    The Data Protection Act 1998 is the governing legislation in the United Kingdom on the “…processing of information relating to individuals, including the obtaining, holding, use or disclosure of such information.”  Passed to bring the UK into line with the European Union’s data protection directive of 1995, the DPA spells out the conditions under which personal data can be collected, accessed, stored, and transmitted under UK law.  The DPA establishes eight separate principles for data protection, the seventh of which states that “Appropriate technical and organisational measures shall be taken against unauthorised or unlawful processing of personal data and against accidental loss or destruction of, or damage to, personal data.”  It is this principle that, in the eyes of the ICO, Sony violated as evidenced by the PSN breach.

    According to David Smith, Deputy Commissioner and Director of Data Protection for the ICO, the significant amount of personal financial data that Sony possessed in operating PSN, as well as its reputation for technological skill, placed a high obligation on Sony to act responsibly in protecting that data.  “[T]here’s no doubt in my mind that [Sony] had access to both the technical knowledge and the resources to keep this information safe. The penalty we’ve issued today is clearly substantial, but we make no apologies for that. The case is one of the most serious ever reported to us. It directly affected a huge number of consumers, and at the very least put them at risk of identity theft.”

    Sony released a statement after the fine was announced, in which they “strongly disagreed” with the ICO and announced plans to appeal.  Sony claims in their defense what the ICO acknowledges, that Sony was the victim of “a focused and determined criminal attack”, and takes the position that “there is no evidence that encrypted payment card details were accessed”, going further to claim that any “personal data [accessed in the breach] is unlikely to have been used for fraudulent purposes”.

    Sony’s appeal could possibly face complications in light of advancing changes in the European Union regarding data protection.  American and European companies are waging a lobbying war against the EU’s recently released draft revisions to the 1995 data protection directive, which would dramatically increase individual protections as well as the maximum amount of fines to which violators are subject.  As a member state of the EU, the United Kingdom is required to bring its laws in line with that of the larger organization, as evidenced by the existing DPA under which Sony has been fined.  If Sony wants to fight the case, they may well wish to move quickly lest their exposure for the breach grows even worse.

    •  
    •  
    •  
    •  
    •  
    •  
    •  
    No TweetBacks yet. (Be the first to Tweet this post)
    Category : Uncategorized

    1 comment on “United Kingdom Fines Sony £250,000 for PSN Data Breach”

    1. Teresia Purkey said: (Sunday 19 May, 2013 )

      Identity theft is a form of stealing someone’s identity in which someone pretends to be someone else by assuming that person’s identity, typically in order to access resources or obtain credit and other benefits in that person’s name. The victim of identity theft (here meaning the person whose identity has been assumed by the identity thief) can suffer adverse consequences if they are held accountable for the perpetrator’s actions. Identity theft occurs when someone uses another’s personally identifying information, like their name, identifying number, or credit card number, without their permission, to commit fraud or other crimes.;*..,

      http://www.calaguas.org

      Please do visit our new web-site

    Post a comment.

    SEARCH

    Events

    • No events
    twitter

    JOIN THE CONVERSATION

    Twitter: aylabtu

    NYLSVideoGameLaw
    • New blog posting, Used Digital Games: A Foreign Concept? - http://t.co/BmTR8Hb2GS 07:37:48 PM April 04, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Video Games a Bigger Problem than Guns? - http://t.co/fKvouyfmlp 06:48:02 PM March 14, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Video Games and Violence - http://t.co/4bkx7fBSGk 12:31:30 PM March 02, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Test - http://t.co/TIjgL0ZSNG 12:05:30 AM March 02, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, The Building Blocks of Copyright Protection: Final Injunction Issued in Tetris v. Xio - http://t.co/FitxBPdUtR 08:02:37 AM March 01, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, United Kingdom Fines Sony £250,000 for PSN Data Breach - http://t.co/9QaZAvTVqM 07:32:11 PM February 28, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Used No More! - http://t.co/Htvc00NmMf 04:56:19 AM February 27, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Due to Rocker’s Delay, Axl Rose’s Activision Lawsuit in Jeopardy. - http://t.co/D4bfuY1Ygj 10:44:52 AM February 24, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Contracts in eSports - http://t.co/aylUUEMkgK 10:37:58 AM February 23, 2013 from WordTwit Plugin ReplyRetweetFavorite
    • New blog posting, Proposed Cybercrime Reforms in Response to Martyr - http://t.co/zuGiBDcE 10:31:14 PM February 18, 2013 from WordTwit Plugin ReplyRetweetFavorite
    @aylabtu

    RECENT COMMENTS

    • Shaquita Vredenburgh: Intellectual property (IP) is …
    • Teresia Purkey: Identity theft is a form of st…
    • Kizzy Mcquillen: The second amendment to the U.…
    • Marsha Leigh: Gambling is also a major inter…
    • Marquita Kough: Speaking of the top level doma…
    • Corey Prada: The modern credit card was the…
    • Elinore Kava: About 69 million tonnes of app…

    RECENT ARTICLES

  • Used Digital Games: A Foreign Concept?
  • Microsoft Answers Back – Your Move Pirates
  • Video Games a Bigger Problem than Guns?
  • Video Games and Violence
  • The Building Blocks of Copyright Protection: Final Injunction Issued in Tetris v. Xio
  • United Kingdom Fines Sony £250,000 for PSN Data Breach
  • Used No More!
  • Due to Rocker’s Delay, Axl Rose’s Activision Lawsuit in Jeopardy.
  • Contracts in eSports
  • Proposed Cybercrime Reforms in Response to Martyr
  • SUBSCRIBE

    RSS feed

    In a Reader

    Desktop Reader Bloglines Google Live Netvibes Newsgator Yahoo! What's This?

    Via E-mail:

    'Splosion Man Apple App Store Blizzard Capcom Mobile celebrity rights Content-based restriction cyberbullying DMCA DRM EA ESA Facebook Farmville First Amendment foursquare gambling gambling device gambling machine Licensing MaXplosion Medal of Honor Michael Phelps video game Microsoft NPD OnLive privacy Property Rights right of publicity social games social media Social Networks sports video games Theme music Trademark Twisted Pixel U.S. Copyright Act Video Game Bar Association Viewpoint based restriction Virtual Goods Virtual Property win or lose money Xbox 360 Zelda Zynga

    WP Cumulus Flash tag cloud by Roy Tanck requires Flash Player 9 or better.

    LINKS

  • Case Clothesed
  • Edge Magazine
  • For The Rechord
  • Gamasutra
  • Game Politics
  • Institute For Information Law And Policy
  • Kotaku
  • Legal As She Is Spoke
  • New York Law School
  • Terra Nova
  • The Escapist
  • © 1997-2010 New York Law School | 185 West Broadway, New York, NY 10013 | 212.431.2100 | Privacy | Terms | Non-Discrimination Policy | Webmasters