Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Hacker Group Says 1 Billion Records Stolen From Salesforce Users

CRN by CRN
October 6, 2025
Home News
Share on FacebookShare on Twitter


‘Our findings indicate these attempts relate to past or unsubstantiated incidents, and we remain engaged with affected customers to provide support,’ according to Salesforce.

A hacker group that says it stole data from Salesforce users has set up a site boasting of about 990 million records stolen with a deadline of Oct. 10 to negotiate ransom before the group leaks the data.

The San Francisco-based enterprise applications vendor said in a statement Thursday that it is aware of the extortion attempts and investigated them in partnership with external experts and authorities.

“Our findings indicate these attempts relate to past or unsubstantiated incidents, and we remain engaged with affected customers to provide support,” according to Salesforce. “At this time, there is no indication that the Salesforce platform has been compromised, nor is this activity related to any known vulnerability in our technology.”

[RELATED: 10 Major Cyberattacks And Data Breaches In 2025 (So Far)]

Salesforce Cyberattacks

Salesforce has about 12,000 partners worldwide.

Multiple media outlets shared screenshots of the hacker group’s data leak site Friday. The group, known as Scattered Lapsus$ Hunters, said that the data comes from 39 companies including Toyota, FedEx, Walgreens and HBO Max.

The threat actors say they are part of other groups, including ShinyHunters, Scattered Spider and Lapsus$, according to BleepingComputer. The group also said that if Salesforce itself pays the ransom, no other companies have to pay.

The group has Salesforce records with personally identifiable information (PII), according to Reuters. The threat actors didn’t hack Salesforce directly, using voice phishing to trick people. In June, Google published a guide on how the threat actors use voice phishing.

“We understand how concerning these situations can be,” the Salesforce statement said. “Protecting customer environments and data remains our top priority, and our security teams are fully engaged to provide guidance and support. As we continue to monitor the situation, we encourage customers to remain vigilant against phishing and social engineering attempts, which remain common tactics for threat actors.”

ShinyHunters has waged data-theft attacks against Salesforce this year through compromising the Salesloft Drift third-party Salesforce application. The Salesloft Drift attacks have hit companies including Palo Alto Networks and Zscaler.

Cybersecurity researcher Kevin Beaumont, who posted screenshots online from the data leak site on Friday, said the data does appear to come from the Salesloft Drift breach.

“I’ve talked to one of the victim orgs – their sample data is indeed from their Salesforce instance,” he wrote. “Gonna be a long weekend for a bunch of orgs.”

Other cyberattacks in recent days include that of Red Hat customer data accessed through a vendor-managed GitLab instance and an extortion campaign targeting Oracle E-Business Suite customers.



Source link

Tags: Application and Platform SecurityBackup DataBusiness Intelligence and AnalyticsCloud PlatformsCloud SecurityCloud SoftwareCloud StorageCyberattacksCybersecurityData breachesData ProtectionDatabase and System SoftwareEndpoint SecurityManaged SecurityManaged Security ServicesManaged Service ProvidersransomwareSaaSSecurity operationsThreat Intelligence Solutions
CRN

CRN

Next Post
From data to culture: How international brands are trying to crack the code on the fickle Chinese consumer

From data to culture: How international brands are trying to crack the code on the fickle Chinese consumer

Recommended.

Mariah Carey’s ‘Here For It All’ Becomes Her Most-Streamed Studio Album Launch in China

Mariah Carey’s ‘Here For It All’ Becomes Her Most-Streamed Studio Album Launch in China

November 7, 2025
OK, Well, Rogue AI Agents Are Hacking Again

OK, Well, Rogue AI Agents Are Hacking Again

August 4, 2026

Trending.

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

May 4, 2026
AWS, Google, Oracle, Microsoft Top Gartner’s Cloud AI Infrastructure List For 2026

AWS, Google, Oracle, Microsoft Top Gartner’s Cloud AI Infrastructure List For 2026

July 29, 2026
Anthropic lost control of Claude in latest AI cyber blunder | Computer Weekly

Anthropic lost control of Claude in latest AI cyber blunder | Computer Weekly

July 31, 2026
IDCA datacentres report: Global concentration and the Goldilocks zone | Computer Weekly

IDCA datacentres report: Global concentration and the Goldilocks zone | Computer Weekly

May 12, 2026
CES 2026: 15 New Laptops That Deliver Cutting-Edge AI, Innovative Form Factors

CES 2026: 15 New Laptops That Deliver Cutting-Edge AI, Innovative Form Factors

January 8, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio