As part of a ransomware campaign against Ticketmaster, attackers leaked nearly 39,000 print-at-home tickets for 150 upcoming concerts and events.
The tickets were leaked by a group known as "Sp1derHunters," which is selling data recently stolen in attacks targeting Snowflake accounts.
About three months ago, hackers began downloading Snowflake databases from at least 165 organizations, using credentials stolen via info-stealer malware.
See also: 200 million Twitter data leaks online

In May, the ShinyHunters group began selling the data of 560 million Ticketmaster customers (they said the theft was done through Snowflake). Ticketmaster later confirmed that their data was stolen from their Snowflake account. The hackers demanded $500,000 from Ticketmaster to keep the data from being leaked.
However, a week ago, 166,000 barcodes of tickets for a Taylor Swift concert were leaked and hackers demanded a ransom of $2 million.
Ticketmaster said this data was useless to hackers, as anti-fraud measures continuously generate unique mobile barcodes. “technology Ticketmaster SafeTix protects tickets by automatically renewing a new and unique barcode every few seconds, so it can’t be stolen or copied,” Ticketmaster told BleepingComputer.
Hackers are now leaking print-at-home tickets
The hackers Sp1d3rHunters decided to put more pressure on Ticketmaster, saying they stole many print-at-home tickets, whose barcodes cannot be rotated.
See also: USA: Ticketmaster owner sued, accusing him of maintaining a monopoly position in the market
“Ticketmaster is lying to the public and saying that barcodes cannot be used. The ticket database includes both online and physical ticket types,” the attackers said on a hacking forum.
“Physical ticket types are Ticketfast, e-ticket and mail. They are printed and cannot be automatically renewed“.
In the same post, the hackers have included a link to a CSV file, which contains barcode data for 38,745 TicketFast tickets.

Ticketmaster offers TicketFast as a home ticketing solution. Using this delivery method, tickets are sent as PDFs via email, which users can print at home. They then bring the ticket to the concert.
The attackers claim that Ticketmaster cannot rotate the barcodes on these tickets, so users must cancel and reissue the tickets.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
According to BleepingComputer, the data concerns tickets for 154 events and concerts, including those for Aerosmith, Alanis Morissette, Billy Joel & Sting, Bruce Springsteen, Carrie Underwood, Cirque du Soleil, Dave Matthews Band, Foo Fighters, Metallica, Pearl Jam , Phish, P!NK, Red Hot Chili Peppers, Stevie Nicks, STING, Tate McRae and $uicideboy$.
See also: Over 500 million Ticketmaster customers were hacked
With this leak, ticket holders may face serious problems as their tickets may have to be cancelled and there may not be tickets available for all concerts.
Financial damage is also a potential impact, as ticket holders may have to purchase new tickets or face financial losses if their tickets are not replaced.
Finally, this incident may undermine consumer trust in Ticketmaster and other similar services . Ticket holders may be hesitant to use such platforms to purchase tickets again, fearing future security breaches.
Source: www.bleepingcomputer.com
