
Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters Activity
BY
The Hacker News
SOURCE
The Hacker News
DATE
READ
1 min read
Attackers whose methods line up with the data-extortion group ShinyHunters have spent the past year walking into corporate Salesforce environments without exploiting a single flaw in the platform. The way in has been the …
Attackers whose methods line up with the data-extortion group ShinyHunters have spent the past year walking into corporate Salesforce environments without exploiting a single flaw in the platform. The way in has been the trust the organization had already extended, usually through the OAuth connections that tie Salesforce to the apps and third-party vendors around it. In