ASOS hacked as users receive strange push notifications

ASOS customers received an unusual notification today from the retailer's mobile app, with apparent hackers claiming they had compromised the company's systems. ASOS is currently investigating the incident, but the company is yet to confirm the full extent of the breach or whether customer data was accessed.
The notification appeared with the title “ASOS hacked” and was addressed directly to the company's Data Protection Officer and IT team. In the message, the attackers claimed they had “fully compromised” an ASOS Snowflake instance and threatened to leak information unless the company contacted them. Customers were also given a link to a Telegram channel, which seems to belong to a group calling itself Xuanye Group.
For those unaware, Snowflake is a cloud platform that businesses use to store, process, and analyze large amounts of data. At the moment, it’s unclear what information ASOS had stored on the platform, and what the attackers have managed to access.
The worrying part is that the message was delivered through the official ASOS app. And according to Cybersecurity experts, sending a push notification to customers could indicate access to systems beyond a database, although the attackers' claims have not yet been independently confirmed.
It’s also important to keep in mind that until the company provides more details, customers should be cautious of suspicious emails, texts, or other messages claiming to be connected to the incident and avoid opening unfamiliar links.








