Computer pirates claim to have stolen more than one billion records of Salesforce, and demand almost $ 1 billion to not filter them




  • LapSus $ hunters launch data leakage site to press victims in rescue negotiations
  • The attackers exploited the Salesloft Drift application to access the Salesforce client data, not Salesforce in itself
  • The victims include Cloudflare, Zscaler, tenable; Salesforce denies the commitment of the platform or active vulnerabilities

Lapsus $ scattered hunters, a team of dispersed infamous piracy groups, Lapsus $ and bright hunters, apparently has created an independent data leak and an extortion page to press their victims to pay their rescue demands.

In early 2025, it was learned that the attackers managed to violate a third -party application, the integration of Drift of Salesloft, and steal and update tokens. Then, they used the tokens to call the API Salesforce of the customers of the application and exfiltrate data, such as customer contact records, cases of cases and the like. Salesforce itself was not violated, but the data housed by customers were trapped anyway.



Leave a Comment

Your email address will not be published. Required fields are marked *