Skip to content

PlayStation on alert: a flaw allows the hacking of secure PSN accounts



A few days before Christmas, while connections to the PlayStation Network are exploding, a security alert puts players on alert. PSN accounts have been hacked despite the activation of two-factor authentication, a protection presented as an effective barrier against intrusions. The facts were revealed on December 24, 2025 and directly concern Sony’s PlayStation ecosystem.

This situation affects players using a PlayStation 4 or PlayStation 5, with immediate consequences on access to games, digital purchases and personal data. The information quickly circulated in the community, because it calls into question one of the pillars of online account security.

PlayStation accounts hacked despite double authentication

The highlighted case shows that a PlayStation Network account was compromised while all recommended security measures were enabled. According to the specialized media PlayStation Lifestyle, the hacker managed to access the account a first time, then a second time after a recovery validated by Sony.

The problem does not come from a technical bypass of two-factor authentication, but from a flaw in the identity verification procedure. The hacker would have used information linked to the account, without ever needing to intercept a security code sent by SMS or dedicated application.

How a PSN transaction number allowed account access

The central element of this matter lies in a detail often overlooked by players. The account holder publicly shared a PSN transaction number on social media in 2023. This information, combined with the account name, would have been enough to convince PlayStation Support to allow access.

Local sources also indicate that the last digits of a bank card would have been accepted as proof of account ownership. Once logged in, the hacker was able to modify the associated email address, change the password and make purchases using the payment methods stored in the PSN account.

Risks for players’ personal and banking data

Beyond the temporary loss of a PlayStation account, the consequences can be serious. A hacker who takes control of a PSN account can access purchase history, personal information and banking details. In some cases, victims discover unauthorized transactions several hours after the fact.

Hacking attempts often seem to take place very early in the morning, at a time when players are sleeping and cannot immediately respond to connection alerts. This window of time allows hackers to lock down legitimate access before any intervention.

Precautions to take in the face of PlayStation Network vulnerabilities

Even if no solution is foolproof, certain practices remain essential to limit risks. We strongly advise against sharing information related to your PSN account online, such as purchase confirmations or transaction numbers. Security settings should be regularly checked and passwords changed frequently.

This affair now puts pressure on Sony, which is expected to rapidly evolve its account recovery procedures. As long as such simple elements can be used as proof of identity, PlayStation accounts will remain a prime target for hackers, especially during peak periods.