Asos app delivers a data leak threat instead of fast fashion
ASOS customers received a rogue app alert claiming its Snowflake instance was compromised and threatening a data leak.
ASOS shoppers reported a rogue in-app notification claiming attackers had fully compromised the retailer's Snowflake instance and would leak data unless the company engaged. The message addressed ASOS's data protection and IT teams and linked to a Telegram channel called Xuanye Wen Gateway. The Register says the alert alone does not show that customer data was stolen, and both ASOS and Snowflake were asked for comment. ASOS shares dropped about 12 percent after the reports before recovering slightly.
- ASOS customers received a push notification alleging a Snowflake compromise.
- The message linked a Telegram channel and threatened to leak data.
- The alert alone does not prove that any customer data was stolen.
- ASOS shares fell about 12 percent after the reports.
- A 2024 Snowflake theft campaign previously hit major companies.
Full article225 words · extracted from theregister.com · click to collapse
security
Rogue notification claims Snowflake instance compromised, but customer info theft remains unverified
Asos customers have reported receiving a rogue app notification claiming the online clothing retailer's Snowflake instance has been compromised and threatening to leak data.
The notification included a link to a Telegram channel named "Xuanye Wen Gateway" and addressed Asos's data protection officer and IT team.
"Dear ASOS DPO and IT, we have fully compromised the Snowflake instance. Engage with us, or we will leak it," it says.
REG AD
The Register has asked Asos and Snowflake to comment.
REG AD
The notification does not, by itself, establish that the sender accessed Asos's Snowflake instance or sensitive customer data. How the message was sent remains unclear.
Asos's share price fell by around 12 percent following reports of the notification, although it has recovered slightly since.
Customers of Snowflake, a cloud platform for storing and analyzing data, were targeted in a major data theft campaign in 2024, including Ticketmaster, Santander, AT&T, and dozens of others.
Connor Riley Moucka, 26, of Kitchener, Ontario, later pleaded guilty to computer fraud, wire fraud, aggravated identity theft, and conspiracy charges over a hacking spree that compromised more than 165 organizations, exposed billions of customer records, and brought in about $2.5 million in ransom payments.
Snowflake subsequently introduced controls allowing administrators to require multi-factor authentication. ®
Text extracted automatically; images, tables and formatting may be missing. Original: https://www.theregister.com/security/2026/10/06/asos-app-delivers-a-data-leak-threat-instead-of-fast-fashion/5301332