<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=10643465&amp;fmt=gif">

ASOS Hack Was Worse Than the Company Let On

ASOS data breach exposed customer info like names, emails, and search histories, raising phishing scam risks. Find out how hackers struck.
Content Team

ASOS has admitted that hackers stole far more customer data than it initially disclosed — and only after BBC News told the retailer the criminals had sent it a sample of the stolen data. Names, addresses, phone numbers, emails, customer numbers, dates of birth, and even search histories are now in criminal hands. When the hack surfaced on October 6, 2026, ASOS had said only basic contact details may have been accessed.

ASOS says the breach began when hackers impersonated a trusted contact to obtain an employee’s login credentials. The group, calling themselves Xuanyewen (also reported as Xuanye Group), told the BBC they reached the data through Simon AI, a platform built on Snowflake — a claim ASOS has not confirmed, and Snowflake says its own platform was not breached.

No passwords or bank details were taken, and ASOS says customers don’t need to take any action. But experts warn them to watch for convincing phishing attempts and impersonation scams using their stolen personal details.

Source: BBC News

Share this article
Share on facebook Share on linkedin Share on twitter Share on email
blog_book_a_demo_cta_3x
Have questions about protecting your software?
Our escrow experts are standing by to help.
Book a free demo