S5 – Episode 009 – The Sony Hack: When Hollywood went to Cyberwar

S5 – Episode 009 – The Sony Hack: When Hollywood went to Cyberwar

Author: Jason Popillion and Kevin Pentecost August 28, 2026 Duration: 54:51

What happens when a film studio becomes the target of a cyberattack with geopolitical consequences? In this episode of the Cyber Distortion Podcast, we examine the 2014 Sony Pictures Entertainment hack—an incident that blurred the line between criminal extortion, destructive sabotage, and state-linked cyber operations. From the emergence of the Guardians of Peace to the deployment of destructive malware, the attack exposed employee data, internal emails, unreleased films, and the uncomfortable reality that modern entertainment companies can become frontline targets in cyber conflict.

We unpack the controversy surrounding attribution to North Korea, the debate over motive and capability, and the broader significance of the breach as an act of cyber extortion and geopolitical signaling. Along the way, we look at incident response under pressure, executive decision-making, public disclosure, and the lasting lessons for Hollywood and organizations everywhere about resilience, preparedness, and accountability in the face of cyberwarfare.

More than a celebrity scandal or a corporate embarrassment, the Sony hack became a watershed moment in how businesses, governments, and the public think about the strategic use of cyberattacks. It reshaped conversations about digital deterrence, information operations, and the risks of operating in an era where data leaks and destructive malware can carry global consequences. Join Kevin and Jason as they separate myth from reality and explore how one breach changed the way the world sees cyber conflict.

 

Resources:

U.S. Department of Justice – North Korea's Cyber Operations: The Sony Pictures Entertainment Hack (press releases and related materials)

https://www.justice.gov/

 

FBI – Sony Pictures Entertainment Hack and related public statements

https://www.fbi.gov/news

 

CISA – Incident response and destructive malware guidance

https://www.cisa.gov/

 

U.S. Department of State – Public attribution and North Korea sanctions / statements related to the Sony attack

https://www.state.gov/

 

Reuters – Sony Pictures hack coverage and attribution reporting

https://www.reuters.com/

 

The New York Times – Investigative coverage of the Sony hack and aftermath

https://www.nytimes.com/

 

Wired – Technical analysis of the Sony malware and attack infrastructure

https://www.wired.com/

 

SecureWorks / Dell – Analysis of destructive malware and the Sony attack

https://www.secureworks.com/

 

Book:

– Peter Pomerantsev and Anne Applebaum

https://www.hachettebookgroup.com/

 

Documentary:

/ related documentary coverage

https://www.imdb.com/

 

Charicature of Kim Jong Un: SlothParadise

 

Music Used:

  Enigma

  Problem

  Virus Hunter 127S

  Break the Silence

  Mysterious Duduk

  Korean Vibe

  Deep Om

 

Music Sources:

  Filmora

  Audiostock

  Universal Music for Creators 🎧


Ever feel like the world of cybersecurity is explained in a language only experts understand? That's exactly why Cyber Distortion Podcast Series exists. Hosts Jason Popillion and Kevin Pentecost, both seasoned professionals who hold top certifications like the CISSP, cut through the jargon and distortion to talk about digital safety in clear, practical terms. Each episode feels like a conversation with two colleagues who have been in the trenches-Jason as a CIO/CTO and Kevin as an Information Security Manager-and who genuinely want you to walk away with something useful. You won't just hear abstract theories; you'll get actionable advice that applies whether you're protecting your personal data or responsible for an entire organization's security posture. This podcast demystifies the concepts that matter now, from everyday online habits to broader organizational strategies, making crucial knowledge accessible without oversimplifying the real challenges. Tune in for straightforward discussions that equip you with the understanding to navigate an increasingly complex digital landscape with more confidence.
Author: Language: English Episodes: 50

Cyber Distortion Podcast Series
Podcast Episodes
S2 - Episode 006 – You ARE the Weakest link! [not-audio_url] [/not-audio_url]

Duration: 1:01:17
A long time in the making, this episode on the importance of User Awareness may just be the most important episode we've released so far. Kevin Pentecost and Jason Popillion are security veterans and Certified Informatio…
S2 - Episode 005 – Third Party Risk – It's not Me, It's You! [not-audio_url] [/not-audio_url]

Duration: 1:20:01
HE'S BAAAAAAACK!! In this episode, we RE-visit with our very first guest, Benjamin Hall. Ben has served as a virtual CISO, and serves as Sr. Information Security Consultant at Heartland Business Systems. With experience…
S2 - Episode 004 - "AI and ChatGPT is Scary Sh*t! – Part II" [not-audio_url] [/not-audio_url]

Duration: 43:36
In this MUCH anticipated follow-up to our episode 003 on AI an ChatGPT, expect more mind-numbing and terrifying facts about this incredible new technology! Kevin and Jason wrap up their discussion with Justin "Hutch" Hut…
S2 - Episode 003 - "AI and ChatGPT is Scary Sh*t! – Part I" [not-audio_url] [/not-audio_url]

Duration: 55:03
What in the world does AI and ChatGPT have to do with Cybersecurity? Well, this episode is going to answer that question for you, and so much more!! In today's exciting episode, Jason and Kevin discuss the incredible wor…
S2 - Episode 002 – 2022 Breaches and Some Retrospection [not-audio_url] [/not-audio_url]

Duration: 1:21:06
In this exciting second episode of the new season, we're offering up a buffet of delicious options to feast your incessant little cybersecurity appetites on! BREACHES We start by spending time on 5 of the top breaches th…