News Radar RSS

Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters Activity

The Hacker News Cybersecurity Score 10/10

Summary

Attackers whose methods line up with the data-extortion group ShinyHunters have spent the past year walking into corporate Salesforce environments without exploiting a single flaw in the platform. The way in has been the trust the organization had already extended, usually through the OAuth connections that tie Salesforce to the apps and third-party vendors around it. In 

SecurityThreat Intel

News Radar provides aggregated summaries. Full content and copyright remain with the original publisher.