Asos says hackers sent unauthorised push notification to app users
Asos warned customers not to click a hacker‑sent notification that claimed its Snowflake data was compromised.
Key facts
- On Tuesday morning, Asos app users received a pop‑up message that BBC identified as sent by hackers.
- The message said the Snowflake instance was fully compromised and threatened a leak unless engaged.
- Asos said basic personal information may have been accessed but does not believe payment‑card data or passwords were impacted.
- The retailer emailed customers on Tuesday night urging them not to click the link and to change passwords.
- Snowflake told BBC its investigation found no compromise of its platform.
BBC reported that Asos users across the UK saw a notification on the app’s home screen at around 10:00 BST on Tuesday. The message was addressed to the company’s data protection officer and IT teams and claimed the Snowflake instance had been fully compromised.
Asos acknowledged the unauthorised notification in an email to customers later that day. The company said the website and app were operating as usual and advised users not to engage with the message or click its link.
Asos said it took immediate action to restrict the apparent hackers’ access and was working with advisers and relevant authorities. Snowflake, the data‑storage service mentioned in the notification, told BBC its investigations found no compromise of its platform.
Check Point head of enterprise Charlotte Wilson described the attack as deeply serious and warned that the biggest immediate risk may be subsequent exploitation attempts. BBC advised customers to change passwords, enable two‑step verification, and monitor transactions.
Context
Asos stores customer data on the cloud platform Snowflake. The unauthorised message appeared as a pop‑up on the app’s home screen.
How outlets headlined it
How this was made
Compiled by our AI newsroom from 1 independent outlets, checked by a separate AI editor against the sources. Only claims found in the sources are reported. Spot an error? Every source is linked below.
Factual additions, source corrections, and primary references welcome. Strict zero-troll and zero-spin policy.
No notes yet. Be the first to provide factual context.
Reader Discussion & Community Notes
0 Contributions