Close Menu
Fox Global – Breaking News, Insights & Trends
  • Home
  • Crime
  • Entertainment
  • Health
  • Lifestyle
  • Opinion
  • Sports
  • Travel
  • US
  • World
What's Hot

The Musk-Trump fight blows up a critical alliance in American politics

June 6, 2025

Trump, Musk feud brings out Stephen A Smith reaction

June 6, 2025

North Korea refloats destroyer that capsized during launch, surprising naval analysts

June 6, 2025
Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
Fox Global – Breaking News, Insights & Trends
  • Home
  • Crime
  • Entertainment
  • Health
  • Lifestyle
  • Opinion
  • Sports
  • Travel
  • US
  • World
Fox Global – Breaking News, Insights & Trends
Home » Hackers are using a modified Salesforce app to trick employees and extort companies, Google says

Hackers are using a modified Salesforce app to trick employees and extort companies, Google says

adminBy adminJune 4, 2025 Opinion No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 13



Reuters
 — 

Hackers are tricking employees at companies in Europe and the Americas into installing a modified version of a Salesforce-related app, allowing the hackers to steal reams of data, gain access to other corporate cloud services and extort those companies, Google said on Wednesday.

The hackers – tracked by the Google Threat Intelligence Group as UNC6040 – have “proven particularly effective at tricking employees” into installing a modified version of Salesforce’s Data Loader, a proprietary tool used to bulk import data into Salesforce environments, the researchers said.

The hackers use voice calls to trick employees into visiting a purported Salesforce connected app setup page to approve the unauthorized, modified version of the app, created by the hackers to emulate Data Loader.

If the employee installs the app, the hackers gain “significant capabilities to access, query, and exfiltrate sensitive information directly from the compromised Salesforce customer environments,” the researchers said.

The access also frequently gives the hackers the ability to move throughout a customer’s network, enabling attacks on other cloud services and internal corporate networks.

Technical infrastructure tied to the campaign shares characteristics with suspected ties to the broader and loosely organized ecosystem known as “The Com,” known for small, disparate groups engaging in cybercriminal and sometimes violent activity, the researchers said.

A Google spokesperson told Reuters that roughly 20 organizations have been affected by the UNC6040 campaign, which has been observed over the past several months. A subset of those organizations had data successfully exfiltrated, the spokesperson said.

A Salesforce spokesperson told Reuters in an email that “there’s no indication the issue described stems from any vulnerability inherent in our platform.” The spokesperson said the voice calls used to trick employees “are targeted social engineering scams designed to exploit gaps in individual users’ cybersecurity awareness and best practices.”

The spokesperson declined to share the specific number of affected customers, but said that Salesforce was “aware of only a small subset of affected customers,” and said it was “not a widespread issue.”

Salesforce warned customers of voice phishing, or “vishing,” attacks and of hackers abusing malicious, modified versions of Data Loader in a March 2025 blog post.



Source link

admin
  • Website

Keep Reading

Has social media master Trump finally been outmatched by Elon Musk?

Timeline of Elon Musk and Donald Trump’s feud

Media mogul Shari Redstone says she is being treated for cancer

Michaels is expanding its fabric selection following Joann’s collapse

UnitedHealthcare accused The Guardian of looking to ‘capitalize’ on CEO’s murder in lawsuit

Trump is increasingly hostile to China. He’s playing with fire

Add A Comment
Leave A Reply Cancel Reply

Editors Picks

Analysis of WSANDN’s Economic Initiative and Global Implications.

April 12, 2025

World Subnationals and Nations (WSandN) Negotiates Historic Economic Growth Partnership with 180 Countries.

March 27, 2025

Global Economic Council: Buffet, Musk, Zuckerberg, Bezos, Bernard Arnault, and Other Global Billionaires Named on Board to Drive Local Economic Growth Worldwide.

March 6, 2025

WSANDN’s EGCR and GPA Initiatives: Paving the Path to Global Peace & Unlocking $300 Trillion in Economic Prosperity.

March 5, 2025
Latest Posts

Samuel L. Jackson recalls near-death experience being dragged by NYC subway

June 5, 2025

Tom Hanks addresses daughter’s abuse allegations against ex-wife in memoir

June 5, 2025

Ana de Armas calls working with Tom Cruise ‘amazing’ amid dating rumors

June 4, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Welcome to Global-Fox.com
At Global-Fox.com, we bring you the latest insights and updates on politics, world affairs, opinion pieces, entertainment, lifestyle, health, and travel. Our mission is to provide in-depth, fact-based journalism that informs, educates, and engages our audience.

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 global-fox. Designed by global-fox.

Type above and press Enter to search. Press Esc to cancel.