Menu
Browse

Cyber Incident Victim: Sony

Date:

Dec 2016

Location:

United States of America

Summary

A Sony Music Global Twitter account was compromised to falsely announce a celebrity death, which was subsequently debunked by the hacking group OurMine during their unauthorized access. OurMine characterized this as both a security breach and an act of rumor mitigation, suggesting potential future similar actions. This incident followed a significantly more severe prior compromise attributed to the "Guardians of Peace," a breach that resulted in extensive corporate data exfiltration, executive communications leaks, and temporary distribution uncertainties regarding a film release. The earlier intrusion was attributed to state-sponsored actors with retaliatory motives.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
2 actors Available to members Available to members

Description

On December 26, 2016, Sony Music Global's Twitter account was compromised to falsely announce the death of pop singer Britney Spears. The unauthorized tweet briefly circulated online before being identified as fraudulent. The hacking group OurMine intervened by accessing Sony's account to publicly debunk the death hoax, marking the first instance they used a hack to disprove misinformation. OurMine communicated via email with Mashable, indicating they might employ similar tactics in the future. This incident represented a comparatively minor security breach for Sony, contrasting sharply with their catastrophic 2014 cyberattack. No data theft, financial impacts, or system disruptions beyond the Twitter compromise were reported in the 2016 event. Sony did not issue public statements regarding remediation efforts for this specific breach.

Cyber Incident Image

The 2014 Sony Pictures Entertainment hack, attributed to the "Guardians of Peace," constituted a far more severe incident motivated by retaliation against the planned release of *The Interview*, a comedy depicting the assassination of North Korean leader Kim Jong Un. Attackers infiltrated corporate networks, exfiltrating vast quantities of sensitive data including unreleased films, executive emails, and employees' personal information. The leaked materials caused significant reputational damage and operational disruption, leading Sony to initially cancel the film's theatrical premiere before reversing course with a limited December 25 release in 330 independent theaters. The FBI formally attributed the attack to North Korea, citing geopolitical tensions surrounding the film's content. While the 2016 Twitter breach required minimal containment, the 2014 intrusion necessitated federal investigation and corporate restructuring of release strategies.

Sources
Sources available to members
1 source