- Following recent account takeovers of notable PlayStation community members, concerns are mounting over PSN security, customer support, and the risks of an increasingly digital game library.
- Radec explained that the incident began when he unexpectedly received a notification saying that two-factor authentication had been disabled.
- The concern grows even more when you consider how much information a modern PlayStation account holds.
- Another major thrust of the criticism has been a lack of straightforward interaction with the public.
- This is especially sensitive with games coming up, as any leaked footage or information can spread like wildfire.
- For PlayStation, the most significant issue now is not simply whether individual accounts are being targeted.
Following recent account takeovers of notable PlayStation community members, concerns are mounting over PSN security, customer support, and the risks of an increasingly digital game library.
PlayStation is facing renewed concerns about PSN account security after another prominent community member reported having their account taken over. The latest case involves Real Radec, who said his account was compromised even after he changed his password, signed out of all devices, and re-enabled two-factor authentication.
The situation has once again drawn attention to how easily a PlayStation account can potentially be taken away and how difficult it can be for the original owner to regain access. With more of your game library tied to a digital account, losing access to that account can mean losing access to years of purchases, trophies, and other progress.
Radec explained that the incident began when he unexpectedly received a notification saying that two-factor authentication had been disabled.
He immediately realized something was wrong because he hadn't made the change himself, and he tried to secure the account by resetting his password and re-enabling two-factor authentication. Despite taking those steps, the attacker still managed to change the account details and lock him out.
While he was doing this, he said he continued receiving emails from Sony customer support notifying him that additional changes were being made to his account. Eventually, someone changed the email address connected to his PSN account, leaving him completely locked out.

What makes the situation particularly concerning is Radec's claim that he did not fall for a typical phishing attack. He said he was certain he had not clicked on suspicious links or knowingly provided information that would compromise his account. That leaves questions about how the attackers gained access in the first place.
Instead, the account takeover appeared to involve information that attackers could gather from other sources and then present to PlayStation support. That has raised concerns about whether the information currently used to verify account ownership is strong enough to prevent someone else from successfully claiming control.
The case also follows another account takeover involving Colin Morardi, which reportedly caused significant concern within the PlayStation community earlier this year. Morardi eventually regained access, but the circumstances surrounding that recovery have become part of the wider discussion about PSN security.
The transcript argues that Morardi had access to industry contacts who helped move his case through the appropriate channels, while someone without those connections could face a much harder process. That difference is one of the most frustrating aspects of the situation, since account recovery shouldn't depend on how well connected a player is.
The concern grows even more when you consider how much information a modern PlayStation account holds.
Your PSN account can include digital game purchases, trophies, personal information, and years of gaming history, so an attacker doesn't just take away access to one game. If someone successfully takes control of the account, they could potentially gain control over an entire digital library that took years to build.
Some of that information may be easier to get than you think, especially if trophies and other account details are public. There are concerns that if someone can combine publicly available information with purchase details, it could give them enough information to convince customer support that they are the legitimate account owner.

One example discussed in the transcript involves someone testing the process with their sister's permission. According to the account described, the person contacted Sony support and eventually changed the email address and password, taking full control without needing the account's existing PSN password or card information.
The person reportedly said that details about a recent purchase were among the information needed during the process. The example was presented as evidence that the account recovery system could potentially be exploited with surprisingly little private information.
That doesn’t mean all PSN accounts are susceptible to this kind of takeover, but it does highlight the need for account recovery procedures to be well considered. The support system must balance convenience and security; if it is too easy for a legitimate user to recover, it can be too easy for an attacker who has enough information.
Another major thrust of the criticism has been a lack of straightforward interaction with the public.
The transcript said reports of these account takeovers have circulated for months, but PlayStation has not clearly explained what is happening or how it plans to address it. Even if Sony doesn't want to share details that could help attackers, users still need to hear that the problem is being taken seriously.
This is especially significant because these incidents are not just affecting people with large online followings. A big content creator gets more attention when someone compromises their account. But an average player can have the same type of basic problem without an audience to amplify it.
If your account gets hijacked and you don't have industry contacts or a large community behind you, it can be a lot harder to get the attention of customer support. That’s an uncomfortable position to be in, where the visibility of your problem may influence how quickly it gets solved.

If a reviewer had an account with a forthcoming title and an attacker hijacked it, the attacker could access content that has not yet been released. That’s another security headache for publishers and developers with highly anticipated PlayStation projects still in the pipeline.
This is especially sensitive with games coming up, as any leaked footage or information can spread like wildfire.
A compromised account connected to an unreleased title could potentially turn an individual account security problem into a much larger issue for a publisher. Even if the original attack targets the account owner rather than the game itself, access through that account could create another path for sensitive material to escape.
The situation also comes at an awkward time for PlayStation as the company continues pushing toward a more digital gaming future. As purchases, games, and services tie more closely to a single online identity, protecting that identity becomes increasingly important. Physical games can still be stored and played without depending entirely on access to one account, while a digital library is fundamentally connected to the account that owns it.
The transcript also compares PlayStation's communication with how XBOX has handled other service problems. XBOX has experienced its own outages and login issues, but the company has provided public explanations for at least some of those incidents, including what caused the problem and what it did afterward.
Even relatively short service disruptions can affect players with limited time to play. If you have only a couple of hours to sign in and play, an unexpected outage can prevent you from using something you've already paid for. That can make even a brief outage feel especially frustrating.
Clear communication doesn't necessarily solve the technical problem, but it gives users an explanation and shows the company recognizes the disruption. The same principle applies to account security, where players need reassurance that the company is investigating reports of account takeovers rather than ignoring them.

For PlayStation, the most significant issue now is not simply whether individual accounts are being targeted.
It is whether Sony can give users confidence that their accounts are secure and that they have a reliable path to recovery if something goes wrong. Recent reports involving Radec and other members of the PlayStation community have kept that concern alive and have raised questions about whether existing verification procedures need to be strengthened.
A stronger response would not necessarily require Sony to reveal every detail of its security systems. Players want to know these incidents are being investigated, they want clearer guidance on how to protect accounts, and they want to know customer support can consistently tell the difference between legitimate owners and attackers.
Users should not have to depend on personal connections or public attention to retrieve years of purchases and progress. Until PlayStation does more to clear things up, these account takeovers will continue to bring uncomfortable questions regarding just how secure your digital game library really is.






