Snowflake Warns: Targeted Credential Theft Campaign Hits Cloud Customers
ID: 5a6255ed-ca7b-5f7f-a522-a8b0649aa043
STIX ID: report--5a6255ed-ca7b-5f7f-a522-a8b0649aa043
Feed Name: The Hacker News
Threat Score
Snowflake, alongside CrowdStrike and Mandiant, reported a targeted campaign where attackers are compromising some customer Snowflake tenants by using credentials stolen via infostealer malware against accounts with single-factor authentication. The advisory includes indicators such as client identifiers 'rapeflake' and 'DBeaver_DBeaverUltimate', notes no evidence of a Snowflake platform breach, and urges organizations to enable MFA and restrict network access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
