Skip to main content

Share story

Security

Snowflake confirms data theft attacks on customer accounts via third-party compromise

Representational image of data security Image: Primary
Snowflake has confirmed that multiple customers experienced data theft following a security incident involving a third-party service provider. The company acknowledged "unusual activity" affecting customer accounts in a statement issued Wednesday. The cloud data platform provider said the attacks stemmed from compromised credentials rather than a vulnerability in Snowflake's core infrastructure. Security researchers have linked the incident to previous breaches affecting data management services connected to the platform. Affected customers have been notified and are working with Snowflake's security team to assess the scope of data exposure. The company has not disclosed the number of customers impacted or the specific data accessed. Snowflake stated it is implementing additional security measures and working with law enforcement on the investigation.
Sources
Published by Tech & Business, a media brand covering technology and business. This story was sourced from TechRadar and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Security Products
Security Products

Texas disclosure puts Oracle healthcare breach at nearly 20 million people

Information released by the Texas attorney general puts the scope of last year's cybersecurity breach at Oracle's healthcare unit at nearly 20 million people, Bloomberg reported. The breach compromised personal information belongi...

Security AI
Security AI

AWS reports 89.0% success for Continuum on code security benchmark

AWS says its Continuum security system passed 819 of 920 tasks on CyberGym-E2E within the benchmark's 90-minute limit, achieving an 89.0% success rate. That exceeds the previous public high of 65.9% by 23.1 percentage points. The...

Security AI
Security AI

Google, JPMorgan and government teams fix flaws in AI tool servers

Google, JPMorgan Chase, Weaviate and two government teams have fixed flaws that could let attackers direct AI tool servers toward internal systems, The Next Web reported. Researcher Syed Anas Mohiuddin reported all five vulnerabil...