Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News

      Takealot taps Mr D to deliver toys, pet food and future growth

      18 July 2025

      Cut electricity prices for data centres: Andile Ngcaba

      18 July 2025

      ‘Oh, Ani!’: Elon’s edgy bot stirs ethical storm

      18 July 2025

      Trump U-turn on Nvidia spurs talk of grand bargain with China

      18 July 2025

      Netflix premieres first AI-generated scene

      18 July 2025
    • World

      Grok 4 arrives with bold claims and fresh controversy

      10 July 2025

      Samsung’s bet on folding phones faces major test

      10 July 2025

      Bitcoin pushes higher into record territory

      10 July 2025

      OpenAI to launch web browser in direct challenge to Google Chrome

      10 July 2025

      Cupertino vs Brussels: Apple challenges Big Tech crackdown

      7 July 2025
    • In-depth

      The 1940s visionary who imagined the Information Age

      14 July 2025

      MultiChoice is working on a wholesale overhaul of DStv

      10 July 2025

      Siemens is battling Big Tech for AI supremacy in factories

      24 June 2025

      The algorithm will sing now: why musicians should be worried about AI

      20 June 2025

      Meta bets $72-billion on AI – and investors love it

      17 June 2025
    • TCS

      TCS+ | Samsung unveils significant new safety feature for Galaxy A-series phones

      16 July 2025

      TCS+ | MVNX on the opportunities in South Africa’s booming MVNO market

      11 July 2025

      TCS | Connecting Saffas – Renier Lombard on The Lekker Network

      7 July 2025

      TechCentral Nexus S0E4: Takealot’s big Post Office jobs plan

      4 July 2025

      TCS | Tech, townships and tenacity: Spar’s plan to win with Spar2U

      3 July 2025
    • Opinion

      A smarter approach to digital transformation in ICT distribution

      15 July 2025

      In defence of equity alternatives for BEE

      30 June 2025

      E-commerce in ICT distribution: enabler or disruptor?

      30 June 2025

      South Africa pioneered drone laws a decade ago – now it must catch up

      17 June 2025

      AI and the future of ICT distribution

      16 June 2025
    • Company Hubs
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • AvertITD
      • Braintree
      • CallMiner
      • CambriLearn
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • Incredible Business
      • iONLINE
      • Iris Network Systems
      • LSD Open
      • NEC XON
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SevenC
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Tenable
      • Vertiv
      • Videri Digital
      • Wipro
      • Workday
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Public sector
      • Retail and e-commerce
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Neil Campbell » Lessons from the PlayStation attack

    Lessons from the PlayStation attack

    By Editor27 April 2011
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp

    [By Neil Campbell]

    The news that Sony has discovered an attack against its PlayStation Network servers, leading to the potential theft of the data of 77m users, sends a strong message to the business community. IT security risks are not theoretical: they are real and they happen all too regularly.

    Organisations should continually monitor their IT infrastructure, not only for threats but for new approaches to managing threats.

    Though little detail is available yet about the attack, organisations need to recognise that people can be both their strongest and the weakest link when it comes to IT security and continually invest in security awareness training, building strong and well-managed security processes, and backing up those processes with technology fail-safes wherever possible.

    IT security risks are not theoretical, they are real. They are realised all too often and their impact is felt by both customers and the organisation involved. That said, there’s no such thing as perfect security and the security failures that are allowing these breaches to occur are due to a number of different factors.

    One of the IT security industry’s core beliefs is that the only way to secure a computer properly is to turn it off and lock it in a vault. Anything else involves real risk. If we look at a simple risk management model, it involves listing the threats that face a given asset, then assigning a frequency (which determines the likelihood that a risk will be realised in a given period) and an impact (generally the financial impact).

    This provides a risk score that can then be used to manage the risk appropriately in the context of the other risks and the resources and options available to manage them. If there is no frequency there is no risk. If there is no impact there is no risk.

    Given the large number of data breaches that have occurred, this could point to a breakdown in one of three areas:

    • Organisations are misjudging the risk by failing to understand the frequency or the impact.
    • IT security is so fast-moving and complex that even with appropriate measures the controls are being rapidly invalidated.
    • There’s an inherent problem with the controls in the first place.

    While the precise method by which the hacker broke into the systems has not been revealed, the answer will probably be found somewhere between the three. Although there’s no perfect answer, organisations should keep these three considerations in mind.

    IT security risk is often underestimated. When budgets are tight, security can be cut without an immediately obvious impact on the deliverables. IT security is also a very fast-moving area involving what amounts to an arms race — the best illustration of which can be found in the struggle between zero-day exploits and patches. And there is indeed an inherent problem in the controls that are being applied: they generally rely upon people following processes, and that is one of the most difficult challenges to address.

    Companies must accept that IT security risks are often realised and the impact can be huge, not only to the organisation itself but to customers who placed their trust in them. Although data breaches will continue to occur, the goal must be to reduce the frequency and impact of those breaches.

    • Neil Campbell is Dimension Data’s global GM for information security
    • Subscribe to our free daily newsletter
    • Follow us on Twitter or on Facebook


    Neil Campbell PlayStation Sony Sony PlayStation
    Subscribe to TechCentral Subscribe to TechCentral
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous ArticleLTE not the answer for Africa – yet
    Next Article iPad 2 goes on sale in SA this Friday

    Related Posts

    AI to replace line judges at Wimbledon

    11 June 2025

    PS5 prices could be headed higher in South Africa

    14 April 2025

    Bookmarks | Elon Musk is a national security risk – Wired 

    17 September 2024
    Company News

    Vertiv to acquire custom rack solutions manufacturer

    18 July 2025

    SA businesses embrace gen AI – but strategy and skills are lagging

    17 July 2025

    Ransomware in South Africa: the human factor behind the growing crisis

    16 July 2025
    Opinion

    A smarter approach to digital transformation in ICT distribution

    15 July 2025

    In defence of equity alternatives for BEE

    30 June 2025

    E-commerce in ICT distribution: enabler or disruptor?

    30 June 2025

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2025 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.