The situation
If you opened your Asos app on Tuesday and saw a random, aggressive pop-up claiming the company had been hacked, you weren't tripping. Hackers pushed a notification to users’ home screens claiming they had fully compromised a Snowflake data instance and threatened to leak info unless Asos engaged with them.
Asos has since confirmed this was an "unauthorised push notification" and is working with authorities. While they aren't sure exactly what data was swiped, they think it might just be basic contact info—no card details or passwords seem to have leaked, though the situation is still evolving.
Why it matters: Protect your bag
Even if your account looks fine, now is the time to be extra. Real talk: your first move is to ignore that notification and definitely don't click the link. Cyber security experts are warning that the biggest risk is actually what happens next—scammers are going to try and phish you by pretending to be Asos, offering "refunds" or "security alerts" to get you to cough up your actual credentials.
Here is your security checklist:
- Change your passwords: If you use that same Asos password on your banking or email, change it ASAP. Mix up your symbols and numbers.
- Enable 2FA: Two-step verification is highkey the best way to stop hackers in their tracks. Turn it on for your essential accounts immediately.
- Watch your transactions: Keep a close eye on your bank statements. If you see something sus, flag it with your bank right away.
- Stay vigilant: If anyone calls or texts claiming to be from Asos, hang up or ignore it. Go straight to the official Asos website if you need real updates. Say less.






