People search Sony data breach timeline because the brand sits on billions of accounts, credentials, and cloud workloads. BreachHistory indexes 15 Sony-linked incidents, with headline counts up to 160M+ in catalog rows. This page maps every attested event through 2026 with internal links to canonical records.
Why Sony breach history matters
Sony operates in Technology (Japan). Across indexed rows, recurring themes include ransomware and extortion, third-party and supply-chain exposure, unverified actor or scraping claims. Understanding the chronological pattern helps security teams, customers, and regulators separate confirmed disclosures from forum marketing.
Full timeline through 2026
2023 — MOVEit breach — 6,791 employees notified
Cataloged incident. Sony notified 6,791 current/former employees of breach in late May (MOVEit attacks). Intrusion detected June 2; no customer data. Exposed categories include Employee data. BreachHistory cites approximately 7K+ affected records in this row. See the tsny2310 and canonical BreachHistory entry.
2023 — RansomedVC claims 260GB theft — under investigation
Unverified claim — treat actor counts cautiously. RansomedVC claimed 260GB Sony data; posted 6k file sample. MajorNelson also claimed credit. Sony investigating; no customer data confirmed. Exposed categories include Credit/financial data. No attested victim count is published for this row yet. See the tsny2309 and canonical BreachHistory entry.
2017 — OurMine accesses PlayStation social accounts
Unverified claim — treat actor counts cautiously. OurMine gained access to Sony PlayStation social accounts; claimed PSN database access (usernames, names, emails). Sony retook accounts. Group positioned as security firm. Exposed categories include Email addresses, Usernames, Names. No attested victim count is published for this row yet. See the tsny1708 and canonical BreachHistory entry.
2014 — Lizard Squad DDoS — PSN down over Christmas
Unverified claim — treat actor counts cautiously. DDoS took down PSN for up to 160M gamers. Lizard Squad claimed responsibility. Attacker later sentenced to 27 months. Exposed categories include Details not publicly disclosed. BreachHistory cites approximately 160M+ affected records in this row. See the tsny1412 and canonical BreachHistory entry.
2014 — Guardians of Peace — 100TB Sony Pictures stolen (North Korea)
Cataloged incident. North Korea-linked group stole massive data from Sony Pictures: films, scripts, employee PII, emails, salaries. Shamoon-style wiper used. Threats over 'The Interview'; Sony paid up to $8M to employees. Exposed categories include Email addresses, Personal identifiable information, Employee data. No attested victim count is published for this row yet. See the tsny1411 and canonical BreachHistory entry.
2014 — — Sony: Data breach reported, 10.0M records
Cataloged incident. Data breach reported. Reference: http://www.buzzfeed.com/tomgara/sony-hack BreachHistory cites approximately 10M+ affected records in this row. See the sony2014 and canonical BreachHistory entry.
2011 — — Sony: Hackers called LulzSec obtained over one million…
Cataloged incident. Hackers called LulzSec obtained over one million Sony customer passwords. The hackers located data that included passwords, email addresses, phone numbers, home addresses, and dates of birth. The information was not encrypted and was posted on LulzSec's website. People wishing to enter online sweepstakes entered their real or fake information. Anyone who used their Sony Pictures sweepstakes password for another account should immediately change their passwords so that they do not match each Exposed categories include Personal information. BreachHistory cites approximately 1M+ affected records in this row. See the sony2011 and canonical BreachHistory entry.
2011 — Sony Pictures sites hacked — 1M+ accounts
Unverified claim — treat actor counts cautiously. LulzSec claimed compromise of 1M+ accounts, 75k music codes, 3.5M coupons, admin and employee info via 'simple SQL injection.' Exposed categories include Employee data. BreachHistory cites approximately 1M+ affected records in this row. See the tsny1106 and canonical BreachHistory entry.
2011 — Sony Online Entertainment — 25M customer details stolen
Cataloged incident. Personal details of 25M SOE accounts stolen (names, addresses, birthdates, phones, game purchases). Database from 2007 with 10k+ EU direct debit records also compromised. Taken Apr 16–17. Exposed categories include Names, Addresses, Phone numbers. BreachHistory cites approximately 25M+ affected records in this row. See the tsny1105 and canonical BreachHistory entry.
2011 — 3M UK users (77M global)
Cataloged incident. PlayStation Network hacked. 77M global, ~3M UK. Names, addresses, emails, DOB, passwords, potentially cards. ICO fined Sony £250K in 2013. Exposed categories include Names, addresses, emails, DOB, passwords. BreachHistory cites approximately 3M+ affected records in this row. See the sony-psn-uk2011 and canonical BreachHistory entry.
2011 — PlayStation Network — 77M accounts, multi-week outage
Cataloged incident. PSN hacked; names, emails, addresses, birthdates, passwords stolen. Service down weeks. Sony delayed disclosure; credit card numbers possibly at risk (no CVV). Exposed categories include Email addresses, Passwords, Names, Addresses, Credit card numbers, Card numbers, Credit/financial data. BreachHistory cites approximately 77M+ affected records in this row. See the tsny1104 and canonical BreachHistory entry.
2011 — — Sony Online Entertainment: Hacking, 24,600,000 records
Cataloged incident. Data breach reported. gaming organization. Method: hacked. Source: Wikipedia List of data breaches. Exposed categories include Personal and demographic data. BreachHistory cites approximately 24.6M+ affected records in this row. See the sony2011-24600000-wiki2 and canonical BreachHistory entry.
2011 — 77M accounts
Cataloged incident. PSN and Qriocity shut down April 2011. One of largest gaming breaches. 77M accounts compromised. Exposed categories include Names, addresses, emails, passwords, purchase history. BreachHistory cites approximately 77M+ affected records in this row. See the sony-playstation2011 and canonical BreachHistory entry.
2010 — — Sony: Customers who placed orders through Sony Style…
Cataloged incident. Customers who placed orders through Sony Style Telesales Department between May 23rd and June 3rd 2010 may have had their credit card information illegitimately copied and sent to parties outside of the TeleTech network. TeleTech is a third party service provider of Sony. Exposed categories include Personal information. No attested victim count is published for this row yet. See the sony2010 and canonical BreachHistory entry.
2008 — PlayStation site — SQL injection, fake antivirus prompt
Cataloged incident. Site compromised; visitors saw prompt to download fake 'antivirus scanner.' Malware load unclear. Exposed categories include Details not publicly disclosed. No attested victim count is published for this row yet. See the tsny0807 and canonical BreachHistory entry.
Patterns and analysis
- Ransomware and extortion — appears across multiple Sony catalog entries; prioritize controls that address this class of failure.
- Third-party and supply-chain exposure — appears across multiple Sony catalog entries; prioritize controls that address this class of failure.
- Unverified actor or scraping claims — appears across multiple Sony catalog entries; prioritize controls that address this class of failure.
- Record-count hygiene — BreachHistory indexes actor-cited figures separately from company-confirmed totals; read each row's technicalWriteup before treating counts as fact.
- 2026 monitoring — New disclosures roll into this timeline as they are verified or labeled unverified per catalog policy.
What to do if you may be affected
- Step 1: Enable phishing-resistant MFA on every account tied to this brand.
- Step 2: Use unique passwords and a password manager—breach rows often involve credential reuse.
- Step 3: Monitor official company breach notices and regulator filings, not dark-web downloads.
- Step 4: Review OAuth app permissions and revoke unused third-party integrations.
- Step 5: Bookmark the Sony company page for new 2026+ disclosures.
Canonical BreachHistory hub
Explore every indexed row: breachhistory.com/sony · Latest: tsny2310.
Sources: BreachHistory catalog (15 rows for Sony), company and regulator disclosures cited in individual breach records.