A cyber incident has hit Ticketmaster, with a malicious actor issuing a ransom demand, threatening to release sensitive data unless a payment of $2 million USD is made.
The hacker claims to possess 170,000 barcodes related to Taylor Swift’s ERAS tour events, along with a vast amount of additional data, including user information and barcodes for numerous other events.
Ransom Details and Compromised Tickets
According to the cybercriminal, the compromised barcodes include tickets for Taylor Swift’s concerts on the following dates and locations:
Advertising
October 18, 2024, Miami – 20,000 tickets
October 19, 2024, Miami – 20,000 tickets
October 20, 2024, Miami – 23,000 tickets
October 26, 2024, New Orleans – 16,000 tickets
October 27, 2024, New Orleans – 16,000 tickets
October 28, 2024, New Orleans – 18,000 tickets
November 01, 2024, Indianapolis – 18,000 tickets
November 02, 2024, Indianapolis – 17,000 tickets
November 03, 2024, Indianapolis – 18,000 tickets
In a statement, the hacker threatens to release all 680 million user records and 30 million additional event barcodes if Ticketmaster does not comply with the ransom demand. The additional barcodes reportedly include more Taylor Swift events, as well as tickets for other high-profile events featuring artists like P!nk and Sting, and sporting events such as Formula 1, MLB, and NFL.
Reactions and Verification
At this time, we cannot confirm the veracity of the breach, as the organization has yet to release any official statement on its website regarding the incident. Therefore, this article should be considered as an ‘intelligence source’.
Conclusions
The possible cyber attack on Ticketmaster represents a significant risk to user data security and raises questions about the vulnerability of online ticket sales platforms. It remains to be seen how Ticketmaster will respond to this threat and what measures will be taken to prevent such incidents in the future.
The situation will be closely monitored, as the repercussions of a potential data leak could be significant for both users and the events and entertainment industry.
As is our custom, we always leave space for a statement from the company if they wish to provide us with updates on the matter. We will be happy to publish such information in a specific article highlighting the issue.RHC will monitor the development of the situation in order to publish further news on the blog, should there be substantial updates. If there are individuals with knowledge of the facts who wish to provide information anonymously, they can use the whistleblower’s encrypted email.
Follow us on Google News to receive daily updates on cybersecurity. Contact us if you would like to report news, insights or content for publication.
Head of the Dark Lab group. A Computer Engineer specialised in Cyber Security with a deep passion for Hacking and technology, currently CISO of WURTH Italia, he was responsible for Cyber Threat Intelligence & Dark Web analysis services at IBM, carries out research and teaching activities on Cyber Threat Intelligence topics at the University of Sannio, as a Ph.D, author of scientific papers and development of tools to support cybersecurity activities.
Leads the CTI Team "RHC DarkLab"
Areas of Expertise:Cyber Threat Intelligence, Ransomware, National Security, Training
Ritorna lunedì 18 e martedì 19 maggio la Red Hot Cyber Conference 2026, l’evento gratuito creato dalla community di Red Hot Cyber, che si terrà a Roma in Via Bari 18, presso il Teatro Italia. L’iniziativa è pensata per promuovere la cultura della sicurezza informatica, dell’innovazione digitale e della consapevolezza del rischio cyber. Rappresenta un punto di incontro tra professionisti, studenti, aziende e appassionati del settore, offrendo contenuti tecnici, workshop e momenti di confronto ad alto valore formativo.
L’edizione 2026 si svolgerà a Roma nelle giornate del 18 e 19 maggio presso il Teatro Italia e includerà attività formative, sessioni pratiche e la tradizionale Capture The Flag. L’evento è completamente gratuito, ma la partecipazione è subordinata a registrazione obbligatoria tramite i canali ufficiali, al fine di garantire una corretta organizzazione e gestione degli accessi.
Le iscrizioni saranno disponibili a partire dal 16 marzo 2026 attraverso la piattaforma Eventbrite, dove sarà possibile registrarsi ai diversi percorsi dell’evento: workshop, conferenza principale e competizione CTF. I link ufficiali di registrazione saranno pubblicati sui canali di Red Hot Cyber e costituiranno l’unico punto valido per la prenotazione dei posti all’evento.