In mid-2024, attackers exploited stolen credentials (lacking multi-factor authentication) to access at least 160 organizations' Snowflake cloud environments.
The breach exposed AT&T call/text metadata for nearly all US customers. 560 million Ticketmaster customer records were listed for sale on the dark web.
AT&T reportedly paid a $370,000 ransom. A suspect was arrested in Turkey in May 2024. This incident highlighted the critical importance of MFA in cloud services.