英国ASOS应用用户收到疑似黑客发送的推送通知,消息宣称已完全攻破该公司的Snowflake数据存储实例1。通知内容称:"亲爱的ASOS数据保护官和IT部门,我们已完全攻破Snowflake实例。与我们沟通,否则我们将泄露数据。"1
自称Xuanye Group的黑客组织创建了Telegram频道用于沟通1。数十名英国用户向BBC报告了此事1。网络安全专家Dan Bird分析认为,黑客能够成功发送推送通知说明其已获取多个系统的凭证,不仅仅限于Snowflake数据库本身1。
Users of the ASOS mobile application in the UK received push notifications allegedly sent by hackers demanding engagement or threatening to leak data 1. The messages stated: "Dear ASOS DPO and IT, we have fully compromised the Snowflake instance. Engage with us, or we will leak it." 1 Dozens of users reported the incident to the BBC 1.
The breach was attributed to a group calling itself Xuanye Group, which created a Telegram channel on the day of the incident to facilitate communication 1. Security analyst Dan Bird noted that the attackers' ability to send push notifications indicates they had obtained credentials for multiple systems beyond just the Snowflake data storage platform 1. This capability suggests a particularly severe compromise, as the threat actors demonstrated control over both ASOS's notification infrastructure and its cloud database instance 1.
评论
还没有评论,欢迎留下第一条。