“Moucka used the stolen data of a government officer and members of a then-former government officer’s immediate family in this re-extortion attempt.”
Connor Moucka hit 165 Snowflake customers and walked off with call and text records for more than 100 million AT&T customers. He did it with stolen credentials against accounts that had no multi-factor authentication turned on. The conspiracy collected $2.5 million in ransoms. Snowflake shipped MFA-by-default only after the breach, which tells you it was always a product decision and not a technical limit.