Hackers try to promote what they are saying is confidential data belonging to millions of Santander staff and customers.
They belong to the identical gang which this week claimed to have hacked Ticketmaster.
The financial institution – which employs 200,000 folks worldwide, together with round 20,000 within the UK – has confirmed data has been stolen.
Santander has apologised for what it says is “the priority it will understandably trigger” including it’s “proactively contacting affected customers and staff straight.”
“Following an investigation, we have now confirmed that sure data regarding customers of Santander Chile, Spain and Uruguay, in addition to all present and some former Santander staff of the group had been accessed,” it mentioned in a assertion posted earlier this month.
“No transactional data, nor any credentials that may permit transactions to happen on accounts are contained within the database, together with on-line banking particulars and passwords.”
It mentioned its banking programs had been unaffected so customers might proceed to “transact securely.”
In a publish on a hacking discussion board — first noticed by researchers at Dark Web Informer — the group calling themselves ShinyHunters posted an advert saying that they had data together with
- 30 million folks’s checking account particulars
- 6 million account numbers and balances
- 28 million bank card numbers
- HR data for staff
Santander has not commented on the accuracy of these claims.
ShinyHunters have beforehand offered data confirmed to have been stolen from US telecoms agency AT&T.
The gang can be promoting what it says is a big quantity of non-public data from Ticketmaster.
The Australian authorities says it’s working with Ticketmaster to deal with the problem. The FBI has additionally supplied to help.
Some specialists have mentioned ShinyHunters’ claims ought to be handled with warning, as they might be a publicity stunt.
However, researchers at cyber-security firm Hudson Rock declare that the Santander breach and the obvious Ticketmaster one are linked to a significant ongoing hack of a big cloud storage firm referred to as Snowflake.
Hudson Rock says it has spoken to the perpetrators of the alleged Snowflake hack – who declare that they gained entry to its inside system by stealing the login particulars of a member of Snowflake staff.
In a press release on Friday, Snowflake mentioned it was conscious of “doubtlessly unauthorised entry” to a “restricted quantity” of buyer accounts.
It mentioned it appeared hackers had used login data to entry a demo account owned by a former Snowflake worker.
That account “didn’t include delicate data,” the corporate mentioned.
“We have no proof suggesting this exercise was brought on by any vulnerability, misconfiguration, or breach of Snowflake’s product,” it added.



