June 29th, 2024

Ticketmaster has begun warning customers about data breach

Ticketmaster notifies customers of a data breach involving personal information theft. 1.3 terabytes of data were compromised and sold on the dark web. Snowflake denies involvement. Ticketmaster enhances security measures.

Read original articleLink Icon
Ticketmaster has begun warning customers about data breach

Ticketmaster has started notifying customers about a data breach where personal information was stolen, including names, addresses, phone numbers, order details, and partial credit card information. The breach involved 1.3 terabytes of data and was offered for sale on the dark web for $500,000. The breach was attributed to a third-party cloud environment being compromised. Snowflake, the cloud platform allegedly involved, denied any vulnerability on their end. Ticketmaster has informed the U.S. Securities and Exchange Commission about the breach but did not issue a public warning initially. The company has taken measures to enhance security, such as changing passwords and checking access permissions. While the exact number of affected customers remains undisclosed, it is speculated to be in the millions based on credible sources. The stolen data includes full names, addresses, email addresses, hashed credit card numbers, phone numbers, and financial history. Ticketmaster advises customers to be cautious of phishing attempts following the breach.

Related

Snowflake breach snowballs as more victims, perps, come forward

Snowflake breach snowballs as more victims, perps, come forward

The Snowflake data breach expands to include Ticketek, Ticketmaster, and Advance Auto Parts. ShinyHunters claim involvement, Snowflake enforces security measures. CDK faces ransomware attack, Juniper and Apple vulnerabilities identified. Jetflicks operators convicted.

ID verification service for TikTok, Uber, X exposed driver licenses

ID verification service for TikTok, Uber, X exposed driver licenses

A cybersecurity researcher found AU10TIX's admin credentials exposed online, risking data breach for TikTok, Uber users. Concerns rise over ID verification services' vulnerability to cyberattacks, emphasizing the need for enhanced security measures.

Microsoft blamed for million-plus patient record theft at US hospital giant

Microsoft blamed for million-plus patient record theft at US hospital giant

A former Nuance Communications employee stole personal data from over a million Geisinger patients, prompting an investigation and arrest. Microsoft is cooperating with authorities amid concerns over data security practices.

Identity Verification Used by X, TikTok, and Uber Exposed Driver's Licenses

Identity Verification Used by X, TikTok, and Uber Exposed Driver's Licenses

An identity verification firm, AU10TIX, exposed login credentials, risking access to sensitive data like driver's licenses. Despite claims of prompt revocation, functional credentials were found. AU10TIX partners with major platforms.

Former IT employee accessed data of over 1M US patients

Former IT employee accessed data of over 1M US patients

A former IT employee accessed data of over 1 million US patients in a breach at Nuance, a contractor for Geisinger. Patient info was compromised, excluding financial data. The employee was arrested. Geisinger advised affected individuals to monitor their accounts. A law firm is investigating a potential lawsuit. Geisinger emphasized vigilance.

Link Icon 5 comments
By @sys_64738 - 7 months
This company has allowed customers to be exposed to criminal fraud. This is the way these "data breaches" should be framed. Ticketmaster should be criminally liable for punitive damages that will make them take security seriously.
By @baxtr - 7 months
> In a joint statement with Mandiant and CrowdStrike, Snowflake stated there is no evidence suggesting that compromised credentials of Snowflake personnel caused the unauthorized activity. Instead, they attribute the breach (which has also affected companies like Pure Storage, Advance Auto Parts, and Ticketek) to Snowflake customers’ fault, who failed to implement proper authorization protections on their accounts.

It will be interesting to see how that plays out. The companies will blame each other.

By @cjk2 - 7 months
Only because they had to and couldn’t write it off in any way.