Supply chain
⛓ Supply Chain
Ticketmaster Third-Party Breach (May 2024)
Primary Source ↗Incident Details
Snowflake account hacks linked to Santander, Ticketmaster breaches. A threat actor claiming recent Santander and Ticketmaster breaches says they stole data after hacking into an employee’s account at cloud storage company Snowflake. However, Snowflake disputes these claims, saying recent breaches were caused by poorly secured customer accounts. Update 6/1/24: Hudson Rock has taken down their report that a hacker breached Snowflake to steal the data, shedding doubt on the hacker’s claims . BleepingComputer reached out to find out why, but the cybersecurity company has yet to reply. Our original report is below. Third-party company: Snowflake.
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- Snowflake
- Supply Chain Attack
- ✅ Confirmed third-party / vendor compromise
Timeline
- 2024-05-01 Breach occurred
- 2024-05-31 Publicly disclosed