logo

Snowflake Warns: Targeted Credential Theft Campaign Hits Cloud Customers

ID: 5a6255ed-ca7b-5f7f-a522-a8b0649aa043

STIX ID: report--5a6255ed-ca7b-5f7f-a522-a8b0649aa043

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-06-04

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

Snowflake, alongside CrowdStrike and Mandiant, reported a targeted campaign where attackers are compromising some customer Snowflake tenants by using credentials stolen via infostealer malware against accounts with single-factor authentication. The advisory includes indicators such as client identifiers 'rapeflake' and 'DBeaver_DBeaverUltimate', notes no evidence of a Snowflake platform breach, and urges organizations to enable MFA and restrict network access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.