Millions of users potentially hit by TEG ticket sales data breach

Cyber attack
Image Credit: Shutterstock (Image credit: No credit)

Millions of people could be at risk of phishing and social engineering, after a threat actor advertised a huge database of TEG customers on a popular hacking forum.

The unnamed hacker posted a new thread on an underground forum, offering to sell personally identifiable information (PII) on 30 million people, including people’s full names, genders, and birth dates. Furthermore, the database contained usernames and hashed passwords for the TEG account, as well as email addresses used to register those accounts. 

The publication is linking this database to a breach that happened at Ticketek (owned by TEG) roughly a month ago, and suspects that the incident might be connected to the Snowflake breaches that have been making headlines lately.

Ticketek is a major ticketing company providing ticketing services for sports, concerts, theater, and other entertainment events. It was founded in 1979 and operates mostly in Australia and New Zealand. It was acquired by TEG (formerly known as The Entertainment Group) in 2015. TEG is an integrated live entertainment, ticketing, and technology business that operates across Australia, New Zealand, and Asia.

Snowflake again?

In late May 2024, Ticketek reported on a data breach affecting Australian customers, saying the information was stored “in a cloud-based platform, hosted by a reputable, global third party supplier.” While, at the time, it said no customer accounts had been compromised, TEG added that “customer names, dates of birth and email addresses may have been impacted.” 

TEG is not yet commenting on the news. Snowflake chief information security officer Brad Jones said that the company has not “identified evidence suggesting this activity was caused by a vulnerability, misconfiguration, or breach of Snowflake’s platform.”

If the database turns out to be authentic, it will be the second such incident in as many months, after May’s Ticketmaster breach. In both incidents, the cause of the trouble could be Snowflake, since in both incidents, a cloud-based platform was involved.

In late May, known criminals ShinyHunters published a 1.3TB database of compromised customer data on the newly-reopened BreachForums dark web forum.

Via TechCrunch

More from TechRadar Pro

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Cartoon Phishing
One of the largest data leaks ever sees info on 1.5 billion people leaked online
Representational image of data security
Travel data of almost 500,000 users exposed in Daytrip leak
Data leak
Top collectibles site leaks personal data of nearly a million users
A man looking at a tablet with a brown Best Buy package on the desk in front of him
Huge Christmas data breach - 14 million shipping records leaked, putting shoppers at risk
Suitcase next to a bed in a hotel
Millions of hotel users see personal info checked out in huge data leak
Someone holding a passport with two boarding passes inside it
Top digital loan firm security slip-up puts data of 36 million users at risk
Latest in Security
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple routers hit by new critical severity remote command injection vulnerability, with no fix in sight
Code Skull
This dangerous new ransomware is hitting Windows, ARM, ESXi systems
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Latest in News
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
Monster Hunter Wilds
Monster Hunter Wilds Title Update 1 launches in early April, adding new monsters and some of the best-looking armor sets I need to add to my collection
Zotac Gaming RTX 5090 Graphics Card
Nvidia Blackwell stock woes are compounded by price hikes as more RTX 5090 GPUs soar in pricing, and I’m sick and tired of it all at this point
A collage of Elizabeth Olsen's Scarlet Witch and Tatiana Maslany's She-Hulk
Marvel fans are already tired of Doomsday and Secret Wars cast gossip as two more superheroes get linked with roles in the next two Avengers movies
Four operators survey Verdansk. One holds a sniper rifle, one binoculars, another holds is landing with their parachute, while the last wears a skull mask
New Call of Duty: Warzone trailer shows a beautiful rebuilt Verdansk, but some fans want more: 'it won't be the same unfortunately'
An Apple Music pink/pixellated poster advertising DJ with Apple Music
DJ with Apple Music lands, allowing subscribers to build and mix DJ sets directly from its +100 million-song catalog