{"id":44058,"date":"2024-07-12T18:17:50","date_gmt":"2024-07-12T22:17:50","guid":{"rendered":"https:\/\/mjtsai.com\/blog\/?p=44058"},"modified":"2024-07-15T10:39:27","modified_gmt":"2024-07-15T14:39:27","slug":"huge-att-data-breach","status":"publish","type":"post","link":"https:\/\/mjtsai.com\/blog\/2024\/07\/12\/huge-att-data-breach\/","title":{"rendered":"Huge AT&#038;T Data Breach"},"content":{"rendered":"<p><a href=\"https:\/\/techcrunch.com\/2024\/07\/12\/att-phone-records-stolen-data-breach\/\">Zack Whittaker<\/a> ( <a href=\"https:\/\/news.ycombinator.com\/item?id=40944505\">Hacker News<\/a>):<\/p>\n<blockquote cite=\"https:\/\/techcrunch.com\/2024\/07\/12\/att-phone-records-stolen-data-breach\/\"><p>U.S. phone giant AT&amp;T confirmed Friday it will begin notifying millions of consumers about a fresh data breach that allowed cybercriminals to steal the phone records of &ldquo;nearly all&rdquo; of its customers, a company spokesperson told TechCrunch.<\/p><p>In a statement, AT&amp;T said that the stolen data contains phone numbers of both cellular and landline customers, as well as AT&amp;T records of calls and text messages &mdash; such as who contacted who by phone or text &mdash; during a six-month period between May 1, 2022 and October 31, 2022. <\/p><p>[&#8230;]<\/p><p>AT&amp;T&rsquo;s Huguely told TechCrunch that the most recent compromise of customer records were stolen from the cloud data giant Snowflake <a href=\"https:\/\/techcrunch.com\/2024\/06\/10\/mandiant-hackers-snowflake-stole-significant-volume-data-customers\/\">during a recent spate of data thefts<\/a> targeting Snowflake&rsquo;s customers.<\/p><\/blockquote>\n\n<p><a href=\"https:\/\/krebsonsecurity.com\/2024\/07\/hackers-steal-phone-sms-records-for-nearly-all-att-customers\/\">Brian Krebs<\/a>:<\/p>\n<blockquote cite=\"https:\/\/krebsonsecurity.com\/2024\/07\/hackers-steal-phone-sms-records-for-nearly-all-att-customers\/\">\n<p>In a written statement shared with KrebsOnSecurity, the FBI confirmed that it asked AT&amp;T to delay notifying affected customers.<\/p>\n<p>[&#8230;]<\/p>\n<p>Earlier this year, malicious hackers figured out that many major companies have uploaded massive amounts of valuable and sensitive customer data to Snowflake servers, all the while protecting those Snowflake accounts with little more than a username and password.<\/p>\n<p>[&#8230;]<\/p>\n<p>Other companies with millions of customer records stolen from Snowflake servers include Advance Auto Parts, Allstate, Anheuser-Busch, Los Angeles Unified, Mitsubishi, Neiman Marcus, Progressive, Pure Storage, Santander Bank, State Farm, and Ticketmaster.<\/p>\n<\/blockquote>\n\n<p><a href=\"https:\/\/infosec.exchange\/@briankrebs\/112773754725067661\">Brian Krebs<\/a>:<\/p>\n<blockquote cite=\"https:\/\/infosec.exchange\/@briankrebs\/112773754725067661\">\n<p>AT&#38;T&#8217;s SEC filing says some cellular site tower information is also among the data accessed by the intruders, which could be used to determine the approximate location of where a call was made or text message sent.<\/p>\n<p>This raises an important question: Was the AT&#38;T customer data stolen from a law enforcement portal set up by AT&#38;T? Sure seems like it.<\/p><\/blockquote>\n\n<p><a href=\"https:\/\/x.com\/josephfcox\/status\/1811852926043721898\">Joseph Cox<\/a>:<\/p>\n<blockquote cite=\"https:\/\/x.com\/josephfcox\/status\/1811852926043721898\"><p>I&rsquo;ve also seen a section of the hacked AT&amp;T data. It is incredibly sensitive. The numbers dialed by targets can include apparent family members, businesses, and other places that build a detailed picture of someone&rsquo;s life. Staggering data breach.<\/p><\/blockquote>\n\n<p id=\"huge-att-data-breach-update-2024-07-15\">Update (2024-07-15): <a href=\"https:\/\/x.com\/matthew_d_green\/status\/1812134157536964929\">Matthew Green<\/a>:<\/p>\n<blockquote cite=\"https:\/\/x.com\/matthew_d_green\/status\/1812134157536964929\">\n<p>If you want to avoid disasters like the AT&amp;T breach, there are basically only three solutions:<\/p>\n<ol>\n\t<li>Don&rsquo;t store data<\/li>\n\t<li>Don&rsquo;t store unencrypted data<\/li>\n\t<li>Have security practices like Google<\/li>\n<\/ol>\n<\/blockquote>","protected":false},"excerpt":{"rendered":"<p>Zack Whittaker ( Hacker News): U.S. phone giant AT&amp;T confirmed Friday it will begin notifying millions of consumers about a fresh data breach that allowed cybercriminals to steal the phone records of &ldquo;nearly all&rdquo; of its customers, a company spokesperson told TechCrunch.In a statement, AT&amp;T said that the stolen data contains phone numbers of both [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"apple_news_api_created_at":"2024-07-12T22:17:54Z","apple_news_api_id":"0fa4210f-d1cf-4a4b-9f3c-bbe1cb21f0be","apple_news_api_modified_at":"2024-07-15T14:39:30Z","apple_news_api_revision":"AAAAAAAAAAAAAAAAAAAAAQ==","apple_news_api_share_url":"https:\/\/apple.news\/AD6QhD9HPSkufPLvhyyHwvg","apple_news_coverimage":0,"apple_news_coverimage_caption":"","apple_news_is_hidden":false,"apple_news_is_paid":false,"apple_news_is_preview":false,"apple_news_is_sponsored":false,"apple_news_maturity_rating":"","apple_news_metadata":"\"\"","apple_news_pullquote":"","apple_news_pullquote_position":"","apple_news_slug":"","apple_news_sections":"\"\"","apple_news_suppress_video_url":false,"apple_news_use_image_component":false,"footnotes":""},"categories":[2],"tags":[1394,1755,2622,1347,355,96],"class_list":["post-44058","post","type-post","status-publish","format-standard","hentry","category-technology","tag-att","tag-breach","tag-carrir","tag-federal-bureau-of-investigation-fbi","tag-privacy","tag-web"],"apple_news_notices":[],"_links":{"self":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/44058","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/comments?post=44058"}],"version-history":[{"count":3,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/44058\/revisions"}],"predecessor-version":[{"id":44077,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/44058\/revisions\/44077"}],"wp:attachment":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/media?parent=44058"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/categories?post=44058"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/tags?post=44058"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}