Snowflake says there’s no evidence attackers breached its platform to hack Ticketmaster

Share via:


We have not identified evidence suggesting this activity was caused by a vulnerability, misconfiguration, or breach of Snowflake’s platform;

We have not identified evidence suggesting this activity was caused by compromised credentials of current or former Snowflake personnel;

This appears to be a targeted campaign directed at users with single-factor authentication;

As part of this campaign, threat actors have leveraged credentials previously purchased or obtained through infostealing malware; and 

We did find evidence that a threat actor obtained personal credentials to and accessed demo accounts belonging to a former Snowflake employee. It did not contain sensitive data. Demo accounts are not connected to Snowflake’s production or corporate systems. The access was possible because the demo account was not behind Okta or Multi-Factor Authentication (MFA), unlike Snowflake’s corporate and production systems.



Source link

Disclaimer

We strive to uphold the highest ethical standards in all of our reporting and coverage. We StartupNews.fyi want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.

Popular

More Like this

Snowflake says there’s no evidence attackers breached its platform to hack Ticketmaster


We have not identified evidence suggesting this activity was caused by a vulnerability, misconfiguration, or breach of Snowflake’s platform;

We have not identified evidence suggesting this activity was caused by compromised credentials of current or former Snowflake personnel;

This appears to be a targeted campaign directed at users with single-factor authentication;

As part of this campaign, threat actors have leveraged credentials previously purchased or obtained through infostealing malware; and 

We did find evidence that a threat actor obtained personal credentials to and accessed demo accounts belonging to a former Snowflake employee. It did not contain sensitive data. Demo accounts are not connected to Snowflake’s production or corporate systems. The access was possible because the demo account was not behind Okta or Multi-Factor Authentication (MFA), unlike Snowflake’s corporate and production systems.



Source link

Disclaimer

We strive to uphold the highest ethical standards in all of our reporting and coverage. We StartupNews.fyi want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.

Website Upgradation is going on for any glitch kindly connect at office@startupnews.fyi

More like this

Grok targeted in UK law over sexually-explicit AI image...

The British government has just announced it will criminalize...

This gold standard sleep hygiene rule is helping me...

You know that feeling in winter when you wake...

Popular

iptv iptv iptv