INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).
ASOS Confirms Data Breach After Being Hacked in-App Notifications
| 2026-10-06 16:33 HIGH LOW DATA BREACH
Executive Summary
AI-generated
On October 6, 2026, UK-based online fashion retailer ASOS confirmed a data breach after hackers sent unauthorized push notifications through its mobile app while claiming to have stolen customer data from the company's Snowflake environment. The attackers allegedly targeted third-party platforms used to communicate with customers without authorization and may have exposed basic personal information of multiple customers worldwide, including in the United States. The hackers directed ASOS to a Telegram channel operated by the "Xuanye group," which claimed that payment-card information or account passwords were not impacted but later published a statement claiming customer information was stolen during the attack; however, no evidence showing how many customers were affected or what specific data was compromised has been provided.
Technical Mitigations AI-generated
• Reset credentials and API keys that may have been exposed, and review access logs for the affected accounts or integrations.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Target & Sectors
NORTH_AMERICA
NORTH_AMERICA
retailretail
Incident Timeline
2026/10/06
Threat actors sent unauthorized push notifications through ASOS's mobile app, claiming to have stolen customer data from the company's Snowflake environment.
Click on any entity below to view its context and source!
organisation
ASOS
ASOS confirms data breach after “HACKED” in-app notifications.
organisation
Signal
If you have any information regarding this incident or other undisclosed attacks, you can contact us confidentially via Signal at 646-961-3731 or at [email protected].
organisation
BleepingComputer
Hackers abuse ASOS mobile app
The notifications began appearing at approximately 5:00 a.m. ET on Tuesday, with multiple BleepingComputer readers contacting us after receiving the alerts on their phones.
organisation
Snowflake
"Dear Asos DPO and IT, we have fully compromised the Snowflake instance.
organisation
Telegram
The notification directs ASOS to a Telegram channel operated by a threat actor calling itself the "Xuanye group.
organisation
NFL
Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.
organisation
CHANEL
Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.
Intelligence Sources
BleepingComputer
2026-10-06
ASOS confirms data breach after “HACKED” in-app notifications
BleepingComputer
Unpublish from Social Media?
Are you sure you want to delete this podcast video from all synchronized social networks (YouTube, Facebook, Threads)?
Important:
Due to Meta API restrictions, Instagram Reels cannot be deleted automatically via API by third-party apps.
View Profile to Delete Manually
View Profile to Delete Manually
Tactical Intelligence
Report Intelligence Issue
Podcast Options
Generate
Incident Version History
CURRENT VERSION
Last Updated: 2026-10-07T07:05
Comprehensive Tactical Telemetry
Highly Correlated Entities
7x
organisation
Identified Entity
Signal
entity
2x
target region
Target Country
United Kingdom
country
Contextual Telemetry
Context Block
2 METRICS
tactic
Cyber Operation Type
Data Breach
tactic
industry
Targeted Sector
Retail
sector
Click on any entity below to view its context in the main text!
Selective Unpublish
Selecciona las redes de las que quieres eliminar esta publicación. El sistema intentará borrar el post real de la API y limpiará la base de datos para que puedas volver a lanzarlo.
By navigating this website, you accept the use of strictly necessary technical cookies for session security and basic platform functionality. We do not use tracking or advertising cookies.
Read our Privacy Policy.