< ciso
brief />
Tag Banner

All news with #snowflake tag

19 articles

AWS Secrets Manager adds Datadog and Snowflake support

๐Ÿ” AWS Secrets Manager now supports managed external secrets for Datadog vended keys and Snowflake Programmatic Access Tokens, enabling automatic rotation of third-party credentials directly within Secrets Manager. The update covers Datadog API keys, Application keys, and admin credential pairs for service accounts. For Snowflake, Secrets Manager can rotate Programmatic Access Tokens using Snowflake's native authentication and offers a configurable grace period to minimize disruption. These additions join existing integrations such as BigID, Confluent Cloud, MongoDB Atlas, and Salesforce and are available in all Regions where managed external secrets is supported.
read more โ†’

Zara Data Breach Exposes 197,000 Customers' Records

๐Ÿ”’ A ShinyHunters campaign has compromised data for over 197,000 Zara customers, according to HaveIBeenPwned. Stolen items include unique email addresses, product SKUs, order IDs and support ticket data after stolen authentication tokens from analytics provider Anodot were used to access BigQuery and Snowflake instances; the group leaked a claimed 140GB trove. Inditex says no names, passwords or payment details were affected and operations remained unaffected. Other reported victims include Vimeo, Rockstar Games and McGraw Hill.
read more โ†’

Amazon Athena Adds Managed Connectors for 12 Sources

๐Ÿ”— Amazon Athena now provides managed connectors for 12 external data sources, including DynamoDB, PostgreSQL, MySQL, and Snowflake, enabling queries against data outside Amazon S3 without deploying connector infrastructure. Athena creates and manages AWS Glue Data Catalog federated connectors on your behalf and registers each source as a federated catalog. You can query those sources alongside S3 data and optionally apply fineโ€‘grained access controls through AWS Lake Formation. Federated queries are available in all standard AWS Regions except AWS GovCloud (US) and China Regions.
read more โ†’

AWS Glue Adds OAuth 2.0 Support for Snowflake Connectivity

๐Ÿ”’ AWS Glue now supports OAuth 2.0 for native Snowflake connectivity, allowing customers to read from and write to Snowflake without sharing persistent user credentials. This token-based authorization uses temporary access tokens to eliminate credential management, enabling granular permissions and improved auditability. The built-in AWS Glue Snowflake connector with OAuth is available in all AWS commercial regions, simplifying secure data integration.
read more โ†’

Rockstar Games analytics data leaked after Anodot breach

๐Ÿ”“ A data set allegedly belonging to Rockstar Games was published by the ShinyHunters extortion group after they say authentication tokens were stolen from Anodot and used to access connected Snowflake accounts. The leak reportedly contains more than 78.6 million records of internal analytics โ€” including inโ€‘game revenue, purchase metrics, player behavior, and game economy data for GTA Online and Red Dead Online โ€” plus Zendesk support analytics. Rockstar said only a limited amount of nonโ€‘material company information was accessed and that the incident does not affect players.
read more โ†’

Snowflake Customers Targeted After SaaS Integrator Breach

๐Ÿ” Over a dozen companies experienced data theft after attackers used stolen authentication tokens from a breached SaaS integrator to access cloud accounts. The majority of observed incidents targeted Snowflake, which reported "unusual activity" and said a small number of customer accounts were impacted. Snowflake emphasized that its systems were not compromised and that it locked down potentially affected accounts and notified customers. BleepingComputer sources point to an alleged breach at Anodot, and the extortion gang ShinyHunters claims responsibility.
read more โ†’

Spanner Columnar Engine Preview: Serving Iceberg Lakehouses

๐Ÿš€ The preview of the Spanner columnar engine enables low-latency serving of Apache Iceberg lakehouse data with Spannerโ€™s horizontal scale and strong consistency. It adds a columnar storage layer and vectorized execution to accelerate analytical scans โ€” Google cites up to 200ร— faster scans โ€” while isolating heavy analytical queries from transactional workloads. The feature supports on-demand columnar conversion, automatic query routing, and reverse ETL integrations with BigQuery, Databricks, Snowflake and Oracle to make curated analytical data available for real-time applications.
read more โ†’

AWS Clean Rooms Adds Parameters to PySpark Templates

๐Ÿงฉ AWS Clean Rooms now supports parameters in PySpark analysis templates, allowing template authors to define input values that collaborators supply at job submission time without editing the template code. When a collaborator is approved to run an analysis, they submit parameter values directly to the PySpark job, enabling reusable templates and faster iteration. This feature lets partners vary time windows, geographic regions, and other inputs dynamically to adapt analyses. It supports collaboration across companies on AWS or Snowflake and helps accelerate time-to-insights for use cases like advertising attribution.
read more โ†’

Back Market Migrates to Google Data Cloud, Cuts Costs

๐Ÿ” Back Market migrated its data and core tech stack from AWS-based Snowflake and Databricks to Google Cloud, consolidating all historical and operational data in BigQuery. The team executed a two-week proof of concept and a live double-run migration that kept production on Databricks while writing to cloned BigQuery tables until outputs matched. They replaced AWS DMS with Datastream, implemented hourly batching to control small-file costs, and completed critical switchover in six months. The move halved data processing times, cut CDC costs by 90%, reduced technical debt, and improved observability, governance, and developer productivity.
read more โ†’

AWS Secrets Manager Introduces Managed External Secrets

๐Ÿ” AWS Secrets Manager now supports managed external secrets, a new secret type that standardizes storage and enables automated rotation for third-party application credentials such as Salesforce, Snowflake, and BigID. The feature separates rotation metadata from secret values and integrates directly with providers to remove the need for custom rotation functions. It leverages existing IAM, CloudWatch, CloudTrail, GuardDuty, and KMS controls and follows standard Secrets Manager pricing with no additional charge.
read more โ†’

AWS Secrets Manager: Managed External Secrets Launch

๐Ÿ” AWS Secrets Manager introduces managed external secrets, a default-enabled feature that automates rotation for third-party SaaS credentials using provider-supported rotation strategies. The service removes the need to build and maintain rotation Lambda functions by enforcing a vendor-prescribed secret format and offering multiple rotation approaches. An onboarding guide enables any SaaS provider to join as a partner and publish prescriptive rotation guidance. At launch, the feature lists Salesforce, BigID, and Snowflake, and is available in all Regions where Secrets Manager operates.
read more โ†’

Microsoft Databases and Fabric: Unified AI Data Estate

๐Ÿง  Microsoft details a broad expansion of its database portfolio and deeper integration with Microsoft Fabric to simplify data architectures and accelerate AI. Key launches include general availability of SQL Server 2025, GA of Azure DocumentDB (MongoDB-compatible), the preview of Azure HorizonDB, and Fabric-hosted SaaS databases for SQL and Cosmos DB. OneLake mirroring, Fabric IQ semantic modeling, expanded agent capabilities, and partner integrations (SAP, Salesforce, Databricks, Snowflake, dbt) are positioned to deliver zero-ETL analytics and operational AI at scale.
read more โ†’

Amazon Quick Suite: Agentic AI Workspace for Business

๐Ÿค– Amazon Quick Suite is now generally available as an agentic, AI-powered workspace that retrieves insights across the public internet and your enterprise data stores โ€” including Slack, Salesforce, Snowflake, databases, and other documents โ€” and moves instantly from answers to actions. Quick Suite can execute or trigger tasks in popular applications like Salesforce, Jira, and ServiceNow, and automate workflows from RFP responses to invoice processing and account reconciliation. AWS highlights customer privacy โ€” queries and data are not used to train models โ€” and administrators can enable and tailor the experience quickly; new customers receive a 30-day trial for up to 25 users.
read more โ†’

AWS Clean Rooms Adds Cross-Region Data Collaboration

๐ŸŒ AWS Clean Rooms now supports cross-region collaboration, letting organizations analyze partner data stored in different AWS and Snowflake Regions without copying or sharing underlying datasets. Collaboration creators can specify allowed result regions to help meet data residency and sovereignty requirements. This reduces integration workโ€”no new pipelines or replicationโ€”and enables faster, secure joint analyses across advertising, investment, and R&D use cases.
read more โ†’

Azure Cobalt 100 VMs Deliver Performance and Efficiency

โšก Azure's in-house Arm-based Cobalt 100 VMs are now live in 29 regions and designed to deliver higher performance, energy efficiency, and lower costs for a broad set of cloud workloads. Customers and platform vendors โ€” including Databricks, Snowflake, Siemens, and Temenos โ€” report measurable throughput and price-performance gains, while Microsoft services like Teams and Defender for Endpoint show meaningful internal improvements. The post presents these results as validation of an end-to-end systems strategy that couples custom silicon with infrastructure-level optimization.
read more โ†’

Where CISOs Should See Splunk Go Next: AI & Resilience

๐Ÿ” At .Conf in Boston, Splunk and parent company Cisco positioned machine data as central to nextโ€‘generation AI incident response, arguing telemetry represents roughly 55% of global data growth. They stressed tighter integration of security and observability, a federated data model with new support for Snowflake, and standards work such as OpenTelemetry and the Open Cybersecurity Framework (OCSF). Splunk also previewed enhanced security operations capabilities โ€” a premier Enterprise Security bundle, Detection Studio, and agentic AI features โ€” while acknowledging customer concerns about costs, legacy positioning, and support.
read more โ†’

Salesloft token theft exposes wide-ranging integrations

๐Ÿ” The mass theft of authentication tokens from Salesloftโ€™s Drift chatbot has exposed integrations across hundreds of customers, according to Google. Attackers stole valid tokens for services including Slack, Google Workspace, Amazon S3, Microsoft Azure and OpenAI. GTIG said the campaign, tracked as UNC6395, siphoned large amounts of Salesforce data and searched the haul for credentials such as AWS keys, VPN logins and Snowflake access. Customers were urged to immediately invalidate and reauthenticate all Salesloft-connected tokens while Salesloft and incident responders investigate.
read more โ†’

Google Cloud and Partners Commit to Apache Iceberg

๐Ÿ” Google Cloud and an ecosystem of partners โ€” including Confluent, Databricks, dbt, Fivetran, Informatica, and Snowflake โ€” reaffirm support for the open table format Apache Iceberg to power modern lakehouse architectures. The post highlights Google innovations such as BigLake and a REST Catalog API that unify metadata and enable interoperability across engines like BigQuery, Databricks, and Snowflake. The collaboration aims to reduce data silos, enable time travel and pruning, and accelerate AI-ready analytics.
read more โ†’

Salesloft OAuth Breach via Drift AI Exposes Salesforce Data

๐Ÿ”’ A campaign tied to threat actor UNC6395 exploited compromised OAuth and refresh tokens associated with the Drift chat integration to exfiltrate data from Salesforce instances connected via Salesloft. Observed between Aug 8 and Aug 18, 2025, the actor executed targeted queries to retrieve Cases, Accounts, Users and Opportunities and hunted for credentials such as AWS access keys and Snowflake tokens. Salesloft and Salesforce invalidated tokens, removed Drift from AppExchange, and advised affected customers to re-authenticate integrations and rotate credentials.
read more โ†’