Suspect behind Snowflake data-theft attacks arrested in Canada

Teilen:

Canadian authorities have arrested a man suspected of having stolen the data of hundreds of millions after targeting over 165 organizations, all of them customers of cloud storage company Snowflake.

According to Canada’s Department of Justice, Alexander “Connor” Moucka (aka “Waifu” and “Judische”) was taken into custody on Wednesday at the request of the United States and is scheduled to appear in court again today, as first reported by Bloomberg and confirmed by 404 Media.

“Following a request by the United States, Alexander Moucka (a.k.a. Connor Moucka) was arrested on a provisional arrest warrant on Wednesday October 30, 2024,” Ian McLeod, a spokesperson for Canada’s Department of Justice, told BleepingComputer on Tuesday.

“He appeared in court later that afternoon and his case was adjourned to Tuesday November 5, 2024. As extradition requests are considered confidential state-to-state communications, we cannot comment further on this case.”

A joint investigation by SnowFlake, Mandiant, and CrowdStrike found that an attacker (tracked at the time as UNC5537) used customer credentials stolen using infostealer malware to target at least 165 organizations that failed to configure multi-factor authentication (MFA) protection on their SnowFlake accounts.

Snowflake attack flow
Snowflake attack flow (Mandiant)

That is just a tiny part of the 9,400 Snowflake customers, with the complete list including some of the largest companies worldwide, such as Mastercard, Micron, NBC Universal, Capital One, Adobe, AT&T, Kraft Heinz, Doordash, HP, Okta, PepsiCo, Siemens, US Foods, Western Union, Yamaha, and many others.

Data breaches linked to these attacks, which started in April 2024, have affected hundreds of millions of individuals using the services of AT&T, Ticketmaster, Santander, Pure Storage, Advance Auto Parts, Los Angeles Unified, QuoteWizard/LendingTree, and Neiman Marcus.

In late May, Ticketmaster confirmed that data was stolen from its Snowflake account after a threat actor known as ShinyHunters began the data of 560 million Ticketmaster customers.

In July, AT&T also warned of a massive data breach after threat actors stole the call logs of approximately 109 million customers (nearly all of its mobile customers) from an online database on the company’s Snowflake account between April 14 and April 25, 2024.

Snowflake has since announced that it will enforce multi-factor authentication (MFA) for accounts created starting in October 2024 and require that all passwords be at least 14 characters long.

Sergiu Gatlan

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
4:57 am, Feb. 2, 2025
Wetter-Symbol 0°C
L: -1° | H: 0°
aufgelockerte Bewölkung
Luftfeuchtigkeit: 96 %
Druck: 1022 mb
Wind: 6 mph E
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 44%
Regen Chance: 0%
Sichtbarkeit: 7 km
Sonnenaufgang: 7:37 am
Sonnenuntergang: 4:51 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 9:00 pm
Wetter-Symbol
-1° | 0°°C 0 mm 0% 7 mph 95 % 1025 mb 0 mm/h
Tomorrow 9:00 pm
Wetter-Symbol
3° | 10°°C 0 mm 0% 7 mph 92 % 1025 mb 0 mm/h
Di. Feb. 04 9:00 pm
Wetter-Symbol
6° | 10°°C 1 mm 100% 12 mph 92 % 1026 mb 0 mm/h
Mi. Feb. 05 9:00 pm
Wetter-Symbol
4° | 7°°C 0 mm 0% 9 mph 86 % 1045 mb 0 mm/h
Do. Feb. 06 9:00 pm
Wetter-Symbol
2° | 7°°C 0 mm 0% 9 mph 87 % 1045 mb 0 mm/h
Today 6:00 am
Wetter-Symbol
0° | 2°°C 0 mm 0% 5 mph 95 % 1022 mb 0 mm/h
Today 9:00 am
Wetter-Symbol
1° | 3°°C 0 mm 0% 5 mph 89 % 1022 mb 0 mm/h
Today 12:00 pm
Wetter-Symbol
5° | 7°°C 0 mm 0% 7 mph 73 % 1023 mb 0 mm/h
Today 3:00 pm
Wetter-Symbol
8° | 8°°C 0 mm 0% 7 mph 56 % 1022 mb 0 mm/h
Today 6:00 pm
Wetter-Symbol
5° | 5°°C 0 mm 0% 4 mph 72 % 1024 mb 0 mm/h
Today 9:00 pm
Wetter-Symbol
4° | 4°°C 0 mm 0% 4 mph 78 % 1025 mb 0 mm/h
Tomorrow 12:00 am
Wetter-Symbol
3° | 3°°C 0 mm 0% 4 mph 79 % 1025 mb 0 mm/h
Tomorrow 3:00 am
Wetter-Symbol
3° | 3°°C 0 mm 0% 4 mph 83 % 1025 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€96,265.61
-2.56%
Ethereum(ETH)
€2,991.73
-6.08%
XRP(XRP)
€2.76
-6.24%
Fesseln(USDT)
€0.96
-0.02%
Solana(SOL)
€202.87
-9.39%
USDC(USDC)
€0.96
0.01%
Dogecoin(DOGE)
€0.290018
-8.79%
Shiba Inu(SHIB)
€0.000016
-8.82%
Pepe(PEPE)
€0.000012
-12.72%
Nach oben scrollen