Supply chain ⛓ Supply Chain

Ticketmaster Third-Party Breach (May 2024)

📅 2024-05-01 🏢 Snowflake
Primary Source ↗

Incident Details

Snowflake account hacks linked to Santander, Ticketmaster breaches. A threat actor claiming recent Santander and Ticketmaster breaches says they stole data after hacking into an employee’s account at cloud storage company Snowflake. However, Snowflake disputes these claims, saying recent breaches were caused by poorly secured customer accounts. Update 6/1/24: Hudson Rock has taken down their report that a hacker breached Snowflake to steal the data, shedding doubt on the hacker’s claims . BleepingComputer reached out to find out why, but the cybersecurity company has yet to reply. Our original report is below. Third-party company: Snowflake.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Snowflake
Supply Chain Attack
✅ Confirmed third-party / vendor compromise

Timeline

  1. 2024-05-01 Breach occurred
  2. 2024-05-31 Publicly disclosed