A hacker is promoting buyer knowledge allegedly stolen from the Australia-based stay occasions and ticketing firm TEG on a well known hacking discussion board.
On Thursday, a hacker put up on the market the alleged stolen knowledge from TEG, claiming to have data of 30 million customers, together with the total title, gender, date of beginning, username, hashed passwords and e-mail addresses.
In late Might, TEG-owned ticketing firm Ticketek disclosed an information breach affecting Australian clients’ knowledge, “which is saved in a cloud-based platform, hosted by a good, world third get together provider.”
The corporate mentioned that “no Ticketek buyer account has been compromised,” because of the encryption strategies used to retailer their passwords. TEG conceded, nevertheless, that “buyer names, dates of beginning and e-mail addresses might have been impacted” — knowledge that might line up with that marketed on the hacking discussion board.
The hacker included a pattern of the alleged stolen knowledge of their publish. TechCrunch confirmed that no less than a few of the knowledge revealed on the discussion board seems reliable by making an attempt to enroll in new accounts utilizing the revealed e-mail addresses. In a variety of circumstances, Ticketek’s web site gave an error, suggesting the e-mail addresses are already in use.
When reached by e-mail, a spokesperson for TEG didn’t remark by press time.
On its official website, Ticketek says the corporate “sells over 23 million tickets to greater than 20,000 occasions every year.”
Whereas Ticketek didn’t title the “cloud-based platform, hosted by a good, world third get together provider,” there’s proof that implies it might be Snowflake, which has been on the heart of a latest collection of knowledge thefts affecting a number of of its clients, together with Ticketmaster, Santander Financial institution and others.
A now-deleted publish on Snowflake’s web site from January 2023 was titled: “TEG Personalises Dwell Leisure Experiences with Snowflake.” In 2022, consulting firm Altis revealed a case research detailing how the corporate, working with TEG, “constructed a contemporary knowledge platform for ingesting streaming knowledge into Snowflake.”
Contact Us
Do you could have extra details about this incident, or different breaches associated to Snowflake? From a non-work system, you may contact Lorenzo Franceschi-Bicchierai securely on Sign at +1 917 257 1382, or through Telegram, Keybase and Wire @lorenzofb, or e-mail. You can also contact TechCrunch through SecureDrop.
When reached for touch upon the Ticketek breach, Snowflake spokesperson Danica Stanczak didn’t reply our particular questions, and as a substitute referred to the corporate’s public assertion. In it, Snowflake chief data safety officer Brad Jones mentioned that the corporate has not “recognized proof suggesting this exercise was brought on by a vulnerability, misconfiguration, or breach of Snowflake’s platform.”
Snowflake’s spokesperson declined to verify or deny whether or not TEG or Ticketek is a Snowflake buyer.
Snowflake offers firms everywhere in the world with providers that assist its clients retailer knowledge within the cloud. Cybersecurity agency Mandiant, owned by Google, mentioned earlier this month that cybercriminals have stolen a “important quantity of knowledge” from a number of Snowflake clients. Mandiant is working with Snowflake to analyze the info breach, and disclosed in a weblog publish that the 2 firms have notified round 165 Snowflake clients.
Snowflake has blamed the hacking marketing campaign on its clients for not utilizing multi-factor authentication, which allowed hackers to make use of passwords “beforehand bought or obtained by infostealing malware.”