Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Hacker Group Says 1 Billion Records Stolen From Salesforce Users

CRN by CRN
October 6, 2025
Home News
Share on FacebookShare on Twitter


‘Our findings indicate these attempts relate to past or unsubstantiated incidents, and we remain engaged with affected customers to provide support,’ according to Salesforce.

A hacker group that says it stole data from Salesforce users has set up a site boasting of about 990 million records stolen with a deadline of Oct. 10 to negotiate ransom before the group leaks the data.

The San Francisco-based enterprise applications vendor said in a statement Thursday that it is aware of the extortion attempts and investigated them in partnership with external experts and authorities.

“Our findings indicate these attempts relate to past or unsubstantiated incidents, and we remain engaged with affected customers to provide support,” according to Salesforce. “At this time, there is no indication that the Salesforce platform has been compromised, nor is this activity related to any known vulnerability in our technology.”

[RELATED: 10 Major Cyberattacks And Data Breaches In 2025 (So Far)]

Salesforce Cyberattacks

Salesforce has about 12,000 partners worldwide.

Multiple media outlets shared screenshots of the hacker group’s data leak site Friday. The group, known as Scattered Lapsus$ Hunters, said that the data comes from 39 companies including Toyota, FedEx, Walgreens and HBO Max.

The threat actors say they are part of other groups, including ShinyHunters, Scattered Spider and Lapsus$, according to BleepingComputer. The group also said that if Salesforce itself pays the ransom, no other companies have to pay.

The group has Salesforce records with personally identifiable information (PII), according to Reuters. The threat actors didn’t hack Salesforce directly, using voice phishing to trick people. In June, Google published a guide on how the threat actors use voice phishing.

“We understand how concerning these situations can be,” the Salesforce statement said. “Protecting customer environments and data remains our top priority, and our security teams are fully engaged to provide guidance and support. As we continue to monitor the situation, we encourage customers to remain vigilant against phishing and social engineering attempts, which remain common tactics for threat actors.”

ShinyHunters has waged data-theft attacks against Salesforce this year through compromising the Salesloft Drift third-party Salesforce application. The Salesloft Drift attacks have hit companies including Palo Alto Networks and Zscaler.

Cybersecurity researcher Kevin Beaumont, who posted screenshots online from the data leak site on Friday, said the data does appear to come from the Salesloft Drift breach.

“I’ve talked to one of the victim orgs – their sample data is indeed from their Salesforce instance,” he wrote. “Gonna be a long weekend for a bunch of orgs.”

Other cyberattacks in recent days include that of Red Hat customer data accessed through a vendor-managed GitLab instance and an extortion campaign targeting Oracle E-Business Suite customers.



Source link

Tags: Application and Platform SecurityBackup DataBusiness Intelligence and AnalyticsCloud PlatformsCloud SecurityCloud SoftwareCloud StorageCyberattacksCybersecurityData breachesData ProtectionDatabase and System SoftwareEndpoint SecurityManaged SecurityManaged Security ServicesManaged Service ProvidersransomwareSaaSSecurity operationsThreat Intelligence Solutions
CRN

CRN

Next Post
From data to culture: How international brands are trying to crack the code on the fickle Chinese consumer

From data to culture: How international brands are trying to crack the code on the fickle Chinese consumer

Recommended.

Broadcom letters demonstrate push to VMware subscriptions | Computer Weekly

Broadcom letters demonstrate push to VMware subscriptions | Computer Weekly

May 9, 2025
Government sets up guidance for 10-year R&D commitment | Computer Weekly

Government sets up guidance for 10-year R&D commitment | Computer Weekly

May 19, 2025

Trending.

Veeam Debuts Data Resiliency Maturity Model To Assess, Improve Customers’ Cyber Resiliency

Veeam Debuts Data Resiliency Maturity Model To Assess, Improve Customers’ Cyber Resiliency

April 23, 2025
CELLCOM ISRAEL LTD. Announcement of A Special General Meeting of The Shareholders of The Company

CELLCOM ISRAEL LTD. Announcement of A Special General Meeting of The Shareholders of The Company

May 21, 2025
Pia Debuts Automation Hub, A Centralized Marketplace For MSPs: Exclusive

Pia Debuts Automation Hub, A Centralized Marketplace For MSPs: Exclusive

November 19, 2025
Insurance Modernization at Risk as Workforce Strategies Fall Behind, Says Info-Tech Research Group

Insurance Modernization at Risk as Workforce Strategies Fall Behind, Says Info-Tech Research Group

May 8, 2026
VNET Wins 40MW Wholesale Order from Leading Internet Company for Its New Strategic IDC Campus

VNET Wins 40MW Wholesale Order from Leading Internet Company for Its New Strategic IDC Campus

September 11, 2025

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio