ASOS app users in the United Kingdom received pop-up messages that appear to have been sent by hackers attempting to extort the company. The attackers, identifying themselves as Xuanye Group, claimed they had fully compromised ASOS’s Snowflake instance and used the app itself as a ransom note. #ASOS #Snowflake #XuanyeGroup
Information
- Victim: ASOS
- Website: asos.com
- Country: United Kingdom
- Date Reported: 2026-10-06
Keypoints
- ASOS app users in the UK received unexpected pop-up messages allegedly sent by hackers.
- The messages were aimed at ASOS’s DPO and IT team in an extortion attempt.
- The attackers claimed they had fully compromised ASOS’s Snowflake instance.
- Security experts said the attack was serious because the app itself was used as a ransom note.
- The criminal group identified itself as Xuanye Group.
- Xuanye Group also created a Telegram channel to communicate.