INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

ASOS suffers data breach, hackers steal customer details and searches

| 2026-10-09 10:56 CRITICAL MEDIUM DATA BREACH
Executive Summary
AI-generated
On October 9, 2026, hackers stole customer details and shopping searches from ASOS, a global fashion retailer. The attackers accessed this information after tricking an employee into handing over login credentials, using the stolen login details to access third-party platforms used by ASOS. The exposed data includes names and home addresses, phone numbers and email addresses, customer numbers and dates of birth, as well as shopping-related information such as search terms and browsing history. This breach is categorized under a targeted phishing tactic, with no reported vulnerabilities in the Snowflake or Simon AI platforms used for customer personalization. ASOS has strengthened its security controls and will contact customers directly where necessary to provide further support or action; however, some experts have criticized the company's initial response as inadequate.
Technical Mitigations AI-generated
• Network Intrusion Prevention (ATT&CK mitigation for Phishing): Network intrusion prevention systems and systems designed to scan and remove malicious email attachments or links can be used to block activity. • Restrict Web-Based Content (ATT&CK mitigation for Phishing): Determine if certain websites or attachment types (ex: .scr, .exe, .pif, .cpl, etc.) that can be used for phishing are necessary for business operations and consider bloc • Reset credentials and API keys that may have been exposed, and review access logs for the affected accounts or integrations.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
ShinyHuntersShinyHunters
Target & Sectors
NORTH_AMERICA NORTH_AMERICA NORDICS NORDICS FIVE_EYES FIVE_EYES financefinance healthhealth technologytechnology retailretail
Incident Timeline
‎2026/10/09
Threat actors used social engineering to impersonate Astrana Health personnel and spoof the company's main corporate telephone number.
organisation Denmark’s Central Person Register
organisation Texas Healthcare Firms
organisation Data Breach
organisation Pentagon Personnel Agency Data
data_breach 400,000 Beneficiary Records
organisation ASOS
organisation Astrana Health Data Breach Impacts Private
organisation Confidential Information
threat_actor ShinyHunters
organisation BigCommerce
organisation Premier Medical Group Data Breach
organisation SEC
organisation Veradigm
organisation Social Security
organisation Boston Scientific
organisation BBC
organisation Snowflake
organisation M&S
organisation Telegram
organisation Malwarebytes Personal Data Remover
organisation Astrana Health Management
organisation the US Securities and Exchange Commission
victims 160 organizations
organisation ATB
organisation SecurityWeek
organisation the London Stock Exchange
organisation Forescout Research
organisation Xuanye Group
organisation DataSuckers
financial $400,000 attack
victims 7.9 customers
organisation Astrana Health
financial $972.5 U.S.
organisation the Securities and Exchange Commission
organisation Company
‎early 2026
Threat actors successfully breached the data of ATB's 1,300 stores and employed more than 60,000 people.
general_metric 1,300 stores
general_metric 60,000 people
Tactical Metrics
Metrics
victims
160
Organizations
Metrics
data_breach
400,000
Beneficiary Records
Metrics
financial
400,000
Financial Impact / Stolen Funds
Metrics
victims
7,900,000
Customers
Metrics
financial
972,500,000
U.S.