Live Nation confirms limited data breach involving sensitive personal data

Live Nation has confirmed a recent cybersecurity breach that exposed highly sensitive personal information for a small number of people.
On 1 October, the company notified Vermont's Attorney General portal that two customers in the state were affected, according to Billboard. The scope was small. The data at issue was not.
The Vermont notice said the breach involved Social Security numbers, the US government identity numbers used for tax and employment, alongside government-issued IDs and health records. That combination is more sensitive than a typical ticket account leak of names and email addresses.
In a statement to Billboard on 7 October, Live Nation said it had identified, contained and secured the incident. It said its own review, plus an independent investigation by a cybersecurity firm, found the incident was limited in scope. It added that the incident had no impact on its operations.
The company said the small number of people whose information may have been affected are being notified and offered support in monitoring their information. It did not disclose a total number of people affected nationally or how the intruders gained access.
Three class action lawsuits, cases brought on behalf of a group of claimants, have already been filed over the incident. They allege Live Nation lacked adequate cybersecurity measures.
The disclosure follows two earlier breaches involving Ticketmaster, Live Nation's ticketing subsidiary. In 2018, payment information from British ticket buyers was compromised. The UK Information Commissioner's Office later fined Ticketmaster £1.25 million ($1.65 million) over that breach.
The 2024 breach was larger and more complex. Live Nation said at the time that it found unauthorised activity in a third-party cloud database, storage run on servers owned by an outside firm, that mainly contained Ticketmaster data, according to Reuters. A regulatory filing said a criminal actor offered to sell Ticketmaster data on the dark web on 27 May, PBS reported. That incident was linked to a wider hack of Snowflake, a cloud storage service used by Ticketmaster and other companies.
The hacking group ShinyHunters claimed responsibility for the 2024 attack. A Canadian citizen later pleaded guilty to participating in it. Canada also opened an investigation into the Ticketmaster breach, according to Reuters.
For fans, this means the latest case is narrower than the earlier Ticketmaster incidents. Live Nation describes it as limited and contained, with direct notification and monitoring support for those who may be affected.


