Tech
AT&T Confirms Massive Data Breach, Exposing Call and Text Records of Millions of Customers
American telecommunications giant AT&T has made a startling revelation today, confirming that a significant data breach has occurred, potentially affecting the phone call and text message records of millions of its customers.
The breach, affecting customers of AT&T and its mobile virtual network operators (MVNOs) like Black Wireless, Boost Infinite, Cricket Wireless, and many others, involved unauthorized access to an AT&T workspace on a third-party cloud platform.
Among the impacted user data are telephone numbers, counts of interactions, and aggregate call duration from specific periods, potentially exposing the approximate locations of customers during calls or text exchanges.
This incident is interconnected to a broader hack affecting several organizations, including Ticketmaster and Santander, through the cloud provider Snowflake, as identified by the Securities and Exchange Commission (SEC).
Notably, the breach came to light on April 19, 2024, and is currently being investigated with at least one arrest linked to the breach, including individuals such as John Binns who have a history of infiltrating companies like T-Mobile for customer data.
While the stolen data does not include personally identifiable information like Social Security numbers, AT&T urges vigilance against potential phishing scams and online fraud, advising customers to only interact with trusted sources.
In a separate but related development, it was disclosed that attackers involved in the Snowflake incidents demanded substantial payments in exchange for the hijacked data, with notable threat actors like UNC5537 identified as part of the criminal operation.
Snowflake has since enforced mandatory multi-factor authentication (MFA) to enhance security, with a commitment to extend this requirement to all new user accounts to prevent future breaches.
The investigative efforts involve collaboration with law enforcement agencies such as the FBI, shedding light on the complexities of cyber threats and the evolving landscape of data breaches in the modern digital age.
Reports from reputable sources like WIRED highlight the alarming trend of cybercriminals obtaining access to critical information through methods such as malware capture and compromised credentials provided by contractors like EPAM Systems, fueling concerns over the security of cloud-based data.