Asos customers face data exposure after hackers claim full cloud compromise
The fashion retailer confirms a breach after attackers sent push notifications alleging they had fully compromised the company’s cloud storage infrastructure.

Key points
- Asos confirmed a breach of customer data following a hacker alert.
- Attackers used push notifications to claim they had fully compromised cloud storage.
- The incident was reported by TechCrunch.
Online fashion retailer Asos has confirmed that customer data was breached after hackers publicly announced their intrusion. The attackers did not wait for the company to issue a statement; instead, they directly contacted users through the retailer’s mobile application. This aggressive tactic forced an immediate public acknowledgement of the security failure.
How it unfolded
- Hackers infiltrated Asos’s systems and accessed cloud storage containing customer data.
- The threat actors sent a rogue push notification to Asos customers via the company’s app.
- The notification explicitly stated that the hackers had “fully compromised” the company’s cloud storage.
- Following this public alert, Asos confirmed the breach of customer data.
Who is affected
The primary victims in this incident are Asos customers whose personal data was stored in the compromised cloud environment. According to TechCrunch, the hackers specifically targeted this data and used the company’s own communication channels to announce their success. The use of a push notification means that a significant portion of the user base may have received the alert directly on their devices, creating immediate concern regarding the privacy and security of their stored information. The exact nature of the data exposed is not detailed in the initial reports, but the confirmation of a breach indicates that sensitive customer details were likely accessed by unauthorised parties.
The fix
Asos has confirmed the breach, but there is no information available regarding specific technical remediation steps or patches issued to close the vulnerability. The company has not yet detailed how the attackers gained initial access to the cloud storage or what measures are being implemented to prevent recurrence. Customers are advised to remain vigilant, though no specific guidance on password resets or monitoring for fraudulent activity has been included in the initial confirmation. The lack of immediate technical detail leaves the scope of the remediation effort unclear.
Background: Threat actors
A threat actor is any entity that initiates a cyber attack. They range from automated software to organised criminal groups. Understanding their motive helps you predict their behaviour. Most are not after you specifically but exploit common weaknesses for quick financial gain.
Read the full guide: Threat Actors Explained: Motives, Methods and Misconceptions
What to do and how to stay safe: Asos
- Plans reduce decision fatigue but can inhibit creative problem-solving during novel attacks.
- The cost of maintaining an accurate plan often exceeds the cost of the plan itself.
- Static procedures fail against dynamic threats like zero-click attacks or sophisticated social engineering.
An incident response plan reduces chaos but risks creating rigid, outdated procedures that fail against novel attacks. Review and test your plan regularly to ensure it reflects your current environment and team capabilities.
Step-by-step guide: Incident Response Plans: Real Benefits and Hidden Costs
General security guidance from the Malware Brief newsroom. It is not confirmed advice from the organisations named in this story.
Frequently asked questions
How did Asos customers find out about the breach?
Customers received a push notification from hackers claiming they had fully compromised the company’s cloud storage.
Did Asos confirm the breach independently?
Yes, Asos confirmed the breach of customer data after the hackers sent the rogue notification.
What did the hackers claim to have accessed?
The hackers claimed they had fully compromised the company’s cloud storage.



