CRM giant denies security shortcomings as claims allege stolen data used for ID theft Salesforce is facing a wave of lawsuits ...
Prompt injection has been leveraged alongside an expired domain to steal Salesforce data in an attack named ForcedLeak.
Salesforce is facing a possible class action lawsuit from almost two dozen plaintiffs who say the SaaS giant should have had better security around its platform, even though a spate of high-profile ...
ForcedLeak flaw in Salesforce Agentforce allows data exfiltration via indirect prompt injection; Salesforce issues patch.
Salesforce Agentforce allowed attackers to hide malicious instructions in routine customer forms, tricking the AI into ...
Automotive manufacturing giant Stellantis has confirmed that attackers stole some of its North American customers' data after ...
The FBI labeled this group as UNC6395 and apparently, it struck some of the biggest tech and security organizations, ...
A critical vulnerability chain in Salesforce's AI-powered AgentForce platform has been discovered by cybersecurity ...
Salesforce has already released patches that prevent AI agents from retrieving CRM records and sending them to outside ...
The ShinyHunters extortion group claims to have stolen over 1.5 billion Salesforce records from 760 companies using compromised Salesloft Drift OAuth tokens.
TransUnion confirms a major data breach affecting 4.4 million U.S. consumers after hackers exploited third-party Salesforce ...