vz-risk / VCDB

VERIS Community Database
Other
569 stars 182 forks source link

Hundreds of Snowflake customers may have been hit by breach that stole "significant" data #20778

Open swidup opened 2 weeks ago

swidup commented 2 weeks ago

https://www.techradar.com/pro/security/hundreds-of-snowflake-customers-may-have-been-hit-by-breach-that-stole-significant-data

https://securityboulevard.com/2024/06/breach-debrief-series-snowflake-mfa-meltdown-creates-data-leak-blizzard/

"Ticketmaster is not the only company that came forward with news of a breach and data theft. Advance Auto Parts also confirmed suffering an attack, with news reports claiming hundreds of millions of customers being compromised, as well as hundreds of thousands of employees. LendingTree, an online lending marketplace, also fell prey to the attack."

Advanced Auto Parts https://www.bleepingcomputer.com/news/security/advance-auto-parts-stolen-data-for-sale-after-snowflake-attack/

swidup commented 2 weeks ago

https://cloud.google.com/blog/topics/threat-intelligence/unc5537-snowflake-data-theft-extortion/

swidup commented 2 weeks ago

https://thehackernews.com/2024/06/snowflake-breach-exposes-165-customers.html

swidup commented 2 weeks ago

https://www.securityweek.com/snowflake-attacks-mandiant-links-data-breaches-to-infostealer-infections/

swidup commented 1 week ago

Pure Storage https://www.techradar.com/pro/security/pure-storage-confirms-data-breach-snowflake-attack-again-thought-to-be-involved

swidup commented 1 week ago

https://www.wired.com/story/epam-snowflake-ticketmaster-breach-shinyhunters/

"Hackers Detail How They Allegedly Stole Ticketmaster Data From Snowflake A ShinyHunters hacker tells WIRED that they gained access to Ticketmaster’s Snowflake cloud account—and others—by first breaching a third-party contractor."

swidup commented 1 day ago

https://www.insurancejournal.com/news/national/2024/06/24/780774.htm

"Hackers are selling data about consumers of the LendingTree Inc. subsidiary QuoteWizard after the company detected unauthorized access on a cloud database hosted by Snowflake Inc., according to a person familiar with the matter."

swidup commented 1 day ago

Los Angeles school board data breach sees data on thousands of students stolen LAUSD confirms its Snowflake account was breached https://www.techradar.com/pro/security/snowflake-data-breach-hits-los-angeles-school-board-data-on-thousands-of-students-stolen

https://www.informationweek.com/cyber-resilience/snowflake-linked-breach-strikes-los-angeles-school-district

swidup commented 1 day ago

https://siliconangle.com/2024/06/17/ransom-demands-issued-snowflake-users-amid-alleged-third-party-contractor-breach/

"The alleged attack path is said to have involved ShinyHunters compromising a company called EPAM Systems Inc., a New York Stock Exchange-listed company with a market cap of $10.11 billion as of the close of regular trading today. EPAM specializes in software engineering services, digital platform engineering and digital product design."

swidup commented 13 hours ago

Data Breach Impacts More than 64,000 Neiman Marcus Shoppers https://www.channelfutures.com/security/data-breach-impacts-neiman-marcus-shoppers

https://www.dallasnews.com/business/2024/06/25/data-breach-exposes-info-for-64000-neiman-marcus-shoppers/

https://www.wfaa.com/article/news/local/dallas-luxury-retailer-neiman-marcus-says-some-customer-information-was-leaked-in-data-breach/287-c1b44861-da57-4d85-b154-bb9a20271a59