ASOS app users get apparent hacker push alerts in extortion claim
The messages suggest attackers reached ASOS’s notification system as well as the Snowflake account named in the note.
ASOS app users in the UK received push notifications that appear to have been sent by hackers, and the message says the attackers have compromised a Snowflake instance and will leak it unless contacted. The incident matters because it appears to use ASOS’s own customer notification system as part of an extortion attempt, which would mean access beyond the data platform named in the message. ASOS had not responded to BBC requests for comment, and it was not clear whether ASOS actually uses Snowflake or what data, if any, is stored there. The note also points to a Telegram channel from a newly created group calling itself Xuanye Group, and security researchers said that if the claims are accurate, the attackers may have obtained credentials for more than one system.
Why it matters
If the alerts are genuine, the issue is broader than a threatened Snowflake leak. It would point to access inside ASOS’s own customer notification setup, which changes the scope of the incident for the company and its users and raises the possibility that more than one system was reached.
Keep or strike?
Does this story matter, or is it hype? Mark it before you see what everyone else did.
Sources
- BBC Technology