Key facts
- Asos is investigating a suspected cyberattack that may have compromised customer data.
- The attack may have accessed customer names and contact details.
- Payment card information and passwords are not believed to have been compromised.
- The incident involved a breach of third-party communication platforms used by Asos.
- Hackers calling themselves the "Xuanye group" claimed responsibility.
- Snowflake Inc. stated it found no compromise of its platform.
Asos Plc is investigating a suspected cyberattack that may have compromised customer data, including names and contact details. The British online apparel retailer confirmed the incident occurred around 10 a.m. on Tuesday and involved a breach of third-party communication platforms. Asos stated it does not believe payment cards or passwords were accessed.
Shares of Asos fell as much as 15% in London following the news. The company had 16.4 million active customers globally as of the end of its 2026 fiscal year.
Hackers identifying as the "Xuanye group" claimed responsibility for the breach via messages on the Telegram social media platform. They stated payment information was unaffected but claimed access to customer data, specifically mentioning a compromise of Asos's Snowflake system, a cloud-based data storage platform. However, Snowflake Inc. issued a statement saying it found no compromise of its platform and that the investigation is ongoing.
Experts noted that the attackers' use of Asos's own app to send an extortion demand represents an evolution in tactics, leveraging customer messaging systems to apply direct public pressure on the company. The proliferation of hacking, aided by AI tools and sophisticated cybercrime groups, is affecting numerous businesses, with Marks & Spencer Group Plc also experiencing significant disruption from a past attack.
