And they abused a Mandiant-developed open source tool in the attacks ShinyHunters told The Register that it has stolen data from about 100 high-profile companies in its latest Salesforce customer data ...
Modified AuraInspector scans misconfigured Salesforce Experience Cloud sites, extracting CRM data and enabling targeted ...
Salesforce is warning customers that hackers are targeting websites with misconfigured Experience Cloud platforms that give ...
Salesforce warned users of an uptick in malicious activity targeting Experience Cloud customers with misconfigured user settings via an open source tool.
Salesforce says no bugs being exploited, but the hackers claim otherwise.
Some customers have mishandled guest user configurations otherwise intended to allow third-party access to important — and sensitive — client data.
A campaign of cyber attacks orchestrated via social engineering against users’ Salesforce instances is now being attributed to the ShinyHunters cyber crime gang with growing confidence, and the list ...