Get the latest tech news
Snowflake data breach claims spark war of words over culpability
Snowflake CISO Brad Jones hit back at claims the Ticketmaster and Santander data breaches were caused by platform vulnerabilities
Cyber crime intelligence firm Hudson Rock published a report last week claiming the attacks stemmed from a hacker who had broken into an employee account at Snowflake, using stolen credentials to bypass Okta’s secure authentication system. Cloud security company Mitiga also published an investigation into the incident and found evidence of an extensive campaign of data theft and extortion targeting organizations utilizing Snowflake databases. As a result, Jones said organizations should immediately ensure they have MFA enforced on all accounts, they set up network policy rules to only allow authorized users or only allow traffic from trusted locations, and to reset and rotate all Snowflake credentials.
Or read this on r/technology