Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Sony Pictures attack was enabled by stolen sys admin credentials

by The Gurus
December 19, 2014
in Editor's News
Share on FacebookShare on Twitter

The Sony Pictures hackers reportedly gained access to Sony’s systems by obtaining the login credentials of a high-level systems administrator.
 
According to CNN, an anonymous US official who was reportedly privy to government briefings on the topic of the Sony hack, said that once they got these credentials, they were granted the “keys to the entire building”
 
Trey Ford, global security strategist at Rapid7 noted that when the attack was first reported, it was that the attacker had ability to change all the PC screensavers on the Sony network. “This attack technique is trivial for an insider with valid network credentials and only incrementally harder for an external actor,” he said. “I do not believe this data point is a useful indicator identifying an external or internal actor. The police likely have additional information which is leading them to believe the credentials were stolen.
 
“Gaining administrator credentials is one of the most sought after tactics by attackers because it enables them to access nearly anything they desire and it enables them to impersonate a valid user on the network, evade detection and stay on the network for days, months or even years.  Identifying bad actors on the network, quickly, will be a key area of investment for organisation’s networks in the coming years.”
 
According to CIO, the identity of the hackers was further clarified by tracing “signal intelligence” in addition to other methods which were not detailed.
 
Ken Westin, security analyst at Tripwire, said that it would also be useful to know who the anonymous US officials are, especially those speaking to the media regarding the North Korean connection. “Cyber security has become an increasingly political topic thanks to recent NSA revelations and increased defence spending being allocated to cyber defence (and offense), not to mention issues of pirating, net neutrality, privacy and related topics all of which the Sony breach touches on,” he said.
 
Last night it was reported that the US was viewing this as a serious national security, as White House spokesman Josh Earnest said that the US believed the hacking was the work of a “sophisticated actor” – but refused to confirm if North Korea was responsible.
 
At a White House briefing on Thursday, Earnest said US officials had held daily discussions about the Sony cyber attack and were considering an “appropriate response”. However, he refused to comment on who was responsible, saying he did not wish to pre-empt an investigation by the Department of Justice and the FBI.
 
Ian Pratt, co-founder of Bromium, said: “The attack has clearly been more sophisticated that the average hacktivist attack, but the current state of software security is such that it would not have been particularly difficult or expensive to execute, and at very little risk to the attackers.
 
“It’s not that the security team at Sony Pictures did a bad job, it’s that security teams at all corporations currently face a nigh impossible challenge of keeping hackers out. We need to demand that software and hardware vendors to a better job of security by design, making systems that are less vulnerable and more resistant to attack. Only then
will we be able to change the economics and make the cost of such attacks prohibitive, putting the advantage back in the hands of the security teams that defend our networks.”

Tags: attackCredentials. Sony
ShareTweet
Previous Post

RandomStorm to be acquired by Accumuli

Next Post

Cons umers aware of unsecure websites, as Google ramps up HTTPS plans

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol