Your data. Your choice.

If you select «Essential cookies only», we’ll use cookies and similar technologies to collect information about your device and how you use our website. We need this information to allow you to log in securely and use basic functions such as the shopping cart.

By accepting all cookies, you’re allowing us to use this data to show you personalised offers, improve our website, and display targeted adverts on our website and on other websites or apps. Some data may also be shared with third parties and advertising partners as part of this process.

Shutterstock
News + Trends

Snowflake security leak: Is the Ticketmaster hack just the tip of the iceberg?

Florian Bodoky
3.6.2024
Translation: machine translated

Was Ticketmaster not the only victim of the ShinyHunter hack? Experts suspect that they were able to capture the data through a hack of the cloud supplier Snowflake. Around 10,000 companies are customers of the company.

Update from 4 June 2024: Allegations against Snowflake refuted

The two security companies CroudStrike and Mandiant have also investigated the security incident at SnowFlake. Both companies concluded their report with the realisation that the hacks at Ticketmaster and Bank Santander cannot be linked to what happened at Snowflake. This reinforces the statement from Snowflake itself, which had already ruled out a connection beforehand.

Original report

Last week, it was revealed that the hacker collective ShinyHunters had infiltrated the ticket provider Ticketmaster and captured the data of over 500 million customers.

After the tech portal Heise classified some data records from the sample as genuine, Ticketmaster finally confirmed the data leak.

More companies affected?

Now, however, the incident appears to be spreading. Security researcher Kevin Beaumont has written on his blog that there has been another, much more far-reaching security incident. The victim is the cloud supplier Snowflake. The company counts around 10,000 companies among its customers.

In another blog post, Beaumont writes that he is currently in contact with six other Snowflake customers. These were all affected by the security incidents at Snowflake and had suffered data theft.

In his opinion, it is therefore quite possible that the data leak at Ticketmaster, Bank Santander and the other companies was ultimately due to a cyber attack on Snowflake. The ShinyHunters group obtained the access rights using a tool called Rapeflake.

Header image: Shutterstock

21 people like this article


User Avatar
User Avatar

I've been tinkering with digital networks ever since I found out how to activate both telephone channels on the ISDN card for greater bandwidth. As for the analogue variety, I've been doing that since I learned to talk. Though Winterthur is my adoptive home city, my heart still bleeds red and blue. 


News + Trends

From the latest iPhone to the return of 80s fashion. The editorial team will help you make sense of it all.

Show all