[ad_1]
The entertainment leader, Live Nation, has acknowledged a security breach at its subsidiary, Ticketmaster, resulting in loss of personal data.
This was validated in a recent regulatory filing by Live Nation with authorities after trading hours on Friday.
According to Live Nation’s disclosure, the security incident took place on May 20, with unauthorized access by a bad actor who went on to offer supposedly stolen user data for sale on the dark web. The filing did not clarify whose data was compromised but it is presumed to involve Ticketmaster clients. The delay in making this public knowledge was not accounted for.
The statement revealed an intrusion within “a third-party cloud database environment” holding its data. The responsible third-party was not specified in the release.
Ticketmaster commented via a spokesperson, who remained anonymous, from their media email address, stating that their compromised database was located on Snowflake, a company based out of Boston specializing in cloud storage and analytics.
However, Ticketmaster did not elaborate on how the data theft from Snowflake transpired.
Snowflake communicated on Friday that they had reached out to a “settled tally of customers” potentially affected by targeted assaults on select accounts. The nature of these offences, or the exact data put at risk, was not elaborated by Snowflake.
On queries about the incident, Snowflake’s representative Danica Stanczak opted not to comment.
Moreover, Amazon Web Services has a considerable role in upholding Live Nation and Ticketmaster’s operations, as evidenced by an Amazon case study that has since been taken down.
Recently, a cybercrime forum known as BreachForums was brought back online by an administrator claiming sale of about 560 million personal records, including supposed Ticketmaster customer details, alongside ticket transaction and card information.
Live Nation had originally maintained silence regarding the security mishap. However, this week, Australian officials affirmed they were assisting with a cybersecurity occurrence faced by Live Nation, with CISA in the U.S. deferring to Live Nation on the matter.
=”wp-block-paragraph”>Further investigation by TechCrunch, who obtained parts of the purported pilfered information, revealed thousands of records including email addresses, some belonging to Ticketmaster’s internal test accounts which are not public. TechCrunch was able to verify these as authentic Ticketmaster customer accounts.
This verification was done by entering the internal addresses into Ticketmaster’s account creation interface and receiving affirmative errors, indicating the existence of these addresses.
Earlier in the month, the Justice Department, along with thirty state attorneys general, commenced a lawsuit against Live Nation over claims of monopoly, targeting the company’s control over the ticketing market.
Further details have emerged following responses from Ticketmaster and the non-committal stance of Snowflake on commenting publicly.
If there’s additional information you possess about the Live Nation TicketMaster incident, please come forward. Contact the reporter through various means including Signal, WhatsApp, email, or SecureDrop for secure document dispatch.
[ad_2]
FAQ
What happened with Ticketmaster?
Ticketmaster experienced a data breach in which a cybercriminal gained unauthorized access to a third-party cloud database and allegedly offered stolen user data for sale on the dark web.
When did the Ticketmaster data breach take place?
The breach occurred on May 20, but the company did not immediately disclose the incident publicly.
What kind of data was stolen in the Ticketmaster breach?
Although specifically unmentioned by Live Nation, it’s believed personal information relating to customers was stolen. Additionally, ticket transaction and customer card information may be part of the compromised data.
Was the stolen data confirmed to be Ticketmaster customer information?
TechCrunch verified the authenticity of a sample of the supposedly stolen information, which included email addresses belonging to Ticketmaster’s internal accounts deemed to be legitimate customer accounts.
Has the responsible party for the Ticketmaster breach been identified?
The identity of the hacker has not been disclosed by Live Nation or Ticketmaster, though a cybercrime forum administrator claimed to sell the stolen data.










































