Ncsc.Uk ASOS Confirms Data Breach Following Unauthorized Notification to Customers
Article Content
- •ASOS confirmed a data breach after unauthorized notifications were sent to customers.
- •Basic personal information may have been accessed, but payment details are reportedly safe.
- •Customers are advised to be cautious of phishing attempts following the incident.
On October 6, 2026, ASOS confirmed a data breach after an unauthorized push notification was sent to customers via its app, claiming that hackers had compromised their Snowflake data instance. The notification, which was addressed to ASOS's data protection officer and IT teams, warned of potential leaks of basic personal information, including names and details, but ASOS stated that payment card information and account passwords were not impacted. The company is currently investigating the incident and has restricted access to its notification platforms. ASOS has reassured customers that its website and app are operating normally, and it has cyber-security insurance in place. The incident has raised concerns about potential phishing scams targeting customers, as attackers may exploit the situation to gain further access to sensitive information. ASOS's shares fell by over 12% following the incident, highlighting the potential financial and reputational impact of the breach.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (77)
Following this threat?
Track Xuanye Group and ASOS in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What information was compromised?
What should customers do now?
Is ASOS's app safe to use?
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…