195

Access was gained through a third-party cloud database provider, which we know to be Snowflake.

you are viewing a single comment's thread
view the rest of the comments
[-] tal@lemmy.today 23 points 5 months ago* (last edited 5 months ago)

To put it bluntly, a single credential resulted in the exfiltration of potentially hundreds of companies that stored their data using Snowflake, with the threat actor himself suggesting 400 companies are impacted. The goal of the threat actor, as in most cases, was to blackmail Snowflake into buying their own data back for $20,000,000.

Santander, a major financial organization, had been breached, and all customer data was offered for sale: the price was $2 million.

Uh huh. A bank. So probably a lot of companies with important stuff.

goes to Snowflake website

Ah, they have a "customer" section that lists some customers with 202 entries.

Albertsons looks like the first.

https://www.snowflake.com/en/customers/all-customers/

Pfizer. Sainsbury's. PlayStation. AT&T. Euintelsat OneWeb (that's the sorta-kinda Starlink competitor). NHS Greater Manchester Integrated Care Partnership. Freddie Mac (large US government-backed mortgage lender). Capital One, a bank. Anthem, a major health insurer. A bunch of California government institutions. NatWest, a bank. Western Union. Vimeo. Siemens. Comcast. Cedar Health, a company that provides healthcare billing services. Aflac, an insurance company.

Yup, sounds like this isn't good.

Well, I've said before that it'd probably take some kind of really catastrophic computer security event for things to change.

[-] roofuskit@lemmy.world 6 points 5 months ago

The cyber insurance market has already hardened a lot over the last few years. It was just starting to ease up but I'm guessing this will cause even stricter underwriting requirements.

this post was submitted on 01 Jun 2024
195 points (98.5% liked)

Technology

59598 readers
3602 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS