ShinyHunters Targets Anodot, Snowflake Accounts Compromised
The cybercrime group ShinyHunters is claiming responsibility for an attack on Anodot, an Israeli company specializing in anomaly detection and monitoring. Anodot was recently acquired by fellow Israeli firm Glassbox. According to claims made byחדשות סייבר - ארז דסה, ShinyHunters allegedly gained access to Anodot’s network, subsequently obtaining authentication tokens for Snowflake accounts belonging to Anodot’s clients.
The group purports that several of Anodot’s customers have already been impacted, with their data reportedly stolen and ransom demands issued. However, these claims currently lack official independent verification. In parallel, Snowflake has confirmed to BleepingComputer that it observed “unusual activity within a small number of Snowflake customer accounts linked to a specific third-party integration.” This statement from Snowflake aligns with the scenario described byחדשות סייבר - ארז דסה, suggesting a potential supply chain compromise impacting Anodot’s integration and subsequently affecting Snowflake customers.
What This Means For You
- Review and audit third-party integrations connected to your sensitive data platforms (like Snowflake). Ensure these integrations adhere to strict security protocols and limit the scope of access granted, as a compromise in one vendor can cascade into a breach of your own customer data.
Found this interesting? Follow us to stay ahead.