WorkThe story, in brief

Asos users report concerns after receiving push notification from cyber criminals

Ransomware group sent push notifications to thousands of Asos customers—a brazen extortion tactic that exposes how cloud breaches hit consumers directly.

Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
People, judgement and the changing nature of work.AI illustration by KeyNews
The KeyNews take

Why it matters

A cyber criminal group compromised Asos's Snowflake data warehouse and notified UK customers via push notification—a rare public extortion move that underscores cloud data exposure risks and the operational visibility of breaches in consumer-facing businesses.

The key facts

9 to know
  1. Asos Snowflake instance compromised by cyber criminal group

  2. Extortion notification delivered via push notification to UK customers

  3. Breach discovery: October 2026

  4. Attack method: direct notification to affected users (unusual tactic)

  5. Data exposure: customer data stored in Snowflake cloud warehouse

  6. Attackers sent direct push notifications to UK customers

  7. Breach disclosed via attacker notification, not vendor advisory

  8. Implies ransomware extortion or data exfiltration demand

  9. Published October 6, 2026

Go to the source

ITProitpro.com

Publisher excerpt: A cyber criminal group has notified customers across the UK that it compromised an Asos Snowflake instance
Read original report
Back to today's editionMore work news

Keep reading

Related stories

More from Work