Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Cybercriminals Steal 1,000,000,000 Sensitive Records From Salesforce Containing Personally Identiable Information: Report

Cybercriminals Steal 1,000,000,000 Sensitive Records From Salesforce Containing Personally Identiable Information: Report

Daily HodlDaily Hodl2025/10/06 16:00
By:by Alex Richardson

Cybercriminals claiming ties to the “LAPSUS$” hacking group say they have stolen nearly 1 billion records from companies that use Salesforce, exposing vast amounts of personally identifiable information.

In a message to Reuters , the group, calling itself “Scattered LAPSUS$ Hunters,” insists it did not breach Salesforce’s internal systems.

Rather than directly exploiting Salesforce, its members say they targeted clients using the platform by deploying “vishing” attacks – voice phishing techniques in which attackers impersonate employees or technical staff and trick helpdesk workers into granting access.

They also claim to have used modified versions of Salesforce’s Data Loader tool to siphon data from compromised environments.

Salesforce has stated that there is “no indication the Salesforce platform has been compromised” and that the claims “do not appear tied to any known vulnerability in our technology.”

The company says it is working with affected customers to provide support and is investigating the extortion attempts.

The hackers published a dark-web leak site listing around 40 companies they claimed to have breached, though it remains unclear whether all are actual Salesforce users.

Law enforcement in the U.K. previously arrested four individuals under age 21 in connection with earlier attacks on British retailers, and cybersecurity researchers believe this operation may be tied to a wider criminal ecosystem known as “The Com.”

John Hultquist, an analyst at Google’s cybersecurity arm, warned earlier this year that US retailers are now facing cyberattacks involving ransomware and extortion tactics, similar to what UK businesses have just been contending with.

Says Google in a recent blog post,

“After shifting to ransomware and data theft extortion in early 2023, they impacted organizations in a broader range of industries. Since then, we have regularly observed UNC3944 conduct waves of targeting against a specific sector, such as financial services organizations in late 2023 and food services in May 2024. Notably, UNC3944 has also previously targeted prominent brands, possibly in an attempt to gain prestige and increased attention by news media.”

Generated Image: Midjourney

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

"From Initial Coin Offerings to Gaining Institutional Confidence: The Transformation of Crypto Tokenomics"

- Canton’s tokenomics strategy rejects ICOs, promoting structured, long-term crypto development models to enhance institutional credibility and sustainability. - Regulatory delays like Switzerland’s postponed CARF and U.S. ETF approvals highlight challenges in aligning innovation with compliance and cross-border legitimacy. - Grayscale’s Dogecoin and XRP ETFs signal growing institutional acceptance, though mixed market performance underscores crypto’s volatility and speculative risks. - Advocacy groups lik

Bitget-RWA2025/11/28 17:26
"From Initial Coin Offerings to Gaining Institutional Confidence: The Transformation of Crypto Tokenomics"

ETPs Connect Speculative Tokens with Traditional Financial Markets

- Swiss firm Bitcoin Capital launched Europe's first Bonk ETP on SIX, enabling traditional investors to trade the Solana-based memecoin via conventional financial tools. - Physically-backed ETP eliminates crypto expertise requirements, aligning with global altcoin product surges and U.S. altcoin ETF trends. - Market shift toward speculative assets reflects regulatory clarity and institutional interest, with European regulators cautiously embracing crypto-ETP bridges. - Projects like Kuardun7.0 aim to merge

Bitget-RWA2025/11/28 17:26
ETPs Connect Speculative Tokens with Traditional Financial Markets

The transformation of the Xerox campus in Webster, NY: A calculated move in real estate and infrastructure development

- Webster , NY's Xerox campus redevelopment leverages a $9.8M FAST NY grant to upgrade 300 acres of brownfield infrastructure, creating shovel-ready industrial space by 2025. - Xerox's strategic divestiture aligns with infrastructure timelines, enabling private-sector repurposing of the site as a mixed-use hub with anchor projects like the $650M fairlife® dairy plant. - State-backed upgrades have already driven 10.1% annual home price growth and 2% industrial vacancy rates, positioning the site to capture

Bitget-RWA2025/11/28 17:26
The transformation of the Xerox campus in Webster, NY: A calculated move in real estate and infrastructure development

Ethereum News Update: Amundi’s Integrated Approach Connects Blockchain with Conventional Financial Regulations

- Amundi, Europe's largest asset manager, launched its first Ethereum-based tokenized money-market fund, enabling 24/7 settlements and transparent record-keeping via blockchain. - The hybrid model, developed with CACEIS, combines traditional fund operations with blockchain-based ownership, preserving regulatory compliance while expanding investor access. - Ethereum's dominance in stablecoin and RWA transfers ($105.94B in 30 days) underscores its role in accelerating tokenization, with Amundi positioning it

Bitget-RWA2025/11/28 17:06
Ethereum News Update: Amundi’s Integrated Approach Connects Blockchain with Conventional Financial Regulations