Skip to content
ASOS Data Breach: Employee Credentials Compromised by Xuanye Group

ASOS Data Breach: Employee Credentials Compromised by Xuanye Group

First seen 8 Oct 2026, 15:33 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 8, 2026 at 16:42 UTC
  • •The Xuanye Group exploited social engineering to gain employee login credentials.
  • •Customer personal information was accessed, but payment details remain secure.
  • •Hackers are threatening customers directly, raising concerns about further data exposure.

ASOS confirmed a data breach on October 6, 2026, where hackers, identified as the Xuanye Group, accessed customer data by tricking an employee into revealing their login credentials. The attackers utilized these credentials to infiltrate third-party platforms used by ASOS, allowing them to send unauthorized push notifications to customers. The breach reportedly exposed personal information, including names, addresses, and email addresses, but ASOS stated that payment information was not compromised. Following the breach, hackers began sending threatening messages to customers, demanding payment to avoid data leaks. The U.K. Information Commissioner's Office has been notified and is assessing the situation. ASOS shares initially fell but later rose as the scope of the breach appeared narrower than feared. The company is working with cybersecurity specialists to investigate the incident and has secured access to affected platforms.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-10-06
Data breach confirmed by ASOS
ASOS disclosed that hackers accessed customer data through compromised employee credentials.
Infosecurity-Magazine
2026-10-08
Unauthorized notifications sent to customers
Customers received push notifications claiming a breach of ASOS's Snowflake system, leading to increased concern.
Cybersecurity-Insiders
2026-10-08
Investigation initiated by ASOS
ASOS announced it is investigating the breach and has secured access to the affected platforms.
Insurancejournal

More articles in this cluster (10)

Following this threat?

Track Xuanye Group and ASOS in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What type of information was compromised?
The breach exposed customer names, addresses, phone numbers, and email addresses, but not payment information.
How did the attackers gain access?
The attackers used social engineering to trick an ASOS employee into providing their login credentials.
What should affected customers do?
Customers should be cautious of suspicious messages and avoid sharing personal information or payments.