Tech Wavo
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock
Tech Wavo
No Result
View All Result

Hackers claim they stole 1.5 billion Salesforce records from hundreds of companies in major hack – but are they telling the truth?

Tech Wavo by Tech Wavo
September 19, 2025
in Computers
0




  • ShinyHunters claim theft of 1.5 billion records from 760 global companies
  • Attackers exploited GitHub secrets to access sensitive Salesforce object tables
  • FBI issued warnings as hacker groups announced they were “going dark

ShinyHunters have finally revealed how much data it stole in the Salesloft / Salesforce attack, claiming to have taken 1.5 billion records from 760 companies around the world.

In March 2025, threat actors from three groups: ShinyHunters, Lapsus$, and Scattered Spider, joined forces and breached Salesloft’s GitHub repository, which contained the company’s source codes. Using TruffleHog malware, they scanned the code for secrets and found OAuth tokens for the Salesloft Drift and Drift Email platforms.

From there, they were able to access different Salesforce object tables, belonging to various companies. These tables, labeled “Account”, “Contact”, “Case”, “Opportunity”, and “User”, contained all sorts of sensitive files which the attackers managed to exfiltrate.


You may like

Waiting for confirmation

The majority (579 million) are from the Contact table. Case was the second-largest compromised table with 459 million records, followed by Account (250 million), Contact (171 million), Opportunity (171 million), and User (60 million).

To prove their claims, ShinyHunters shared a text file listing the source code folders. So far, Salesforce has not commented on these claims.

We’ve reached out to Salesforce, and will update the article if we hear back – and a source told BleepingComputer that the numbers are accurate.

Whether or not the criminals bit off more than they can chew, remains to be seen.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Following the incident, the FBI issued a security advisory, warning businesses about UNC6040 and UNC6395 (how it tracks the groups), and sharing known indicators of compromise (IOC).

At the same time, the groups announced they were “going dark”, which some cybersecurity companies interpreted as them being afraid of the increasing attention they have been getting.

If these claims turn out to be true, this would also put the incident on par with the 2023 MOVEit Managed File Transfer (MFT) fiasco, which affected thousands of organizations and millions of users worldwide.

Via BleepingComputer

You might also like

Previous Post

Last chance! These iPhone 17 preorder deals could end tomorrow – get a free device, cheap plan, freebies, and more

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Hackers claim they stole 1.5 billion Salesforce records from hundreds of companies in major hack – but are they telling the truth?

by Tech Wavo
September 19, 2025
0
Hackers claim they stole 1.5 billion Salesforce records from hundreds of companies in major hack – but are they telling the truth?
Computers

ShinyHunters claim theft of 1.5 billion records from 760 global companies Attackers exploited GitHub secrets to access sensitive Salesforce object...

Read more

Last chance! These iPhone 17 preorder deals could end tomorrow – get a free device, cheap plan, freebies, and more

by Tech Wavo
September 19, 2025
0
Last chance! These iPhone 17 preorder deals could end tomorrow – get a free device, cheap plan, freebies, and more
Computers

Just a quick note, folks - today is officially the last day you can preorder one of the new iPhone...

Read more

I’ve been testing the DJI Mini 5 Pro – trust me, it’s the drone to get if you shoot for social

by Tech Wavo
September 19, 2025
0
I’ve been testing the DJI Mini 5 Pro – trust me, it’s the drone to get if you shoot for social
Computers

DJI redefined what mini drones can do with its new Mini 5 Pro – a 1-inch-sensor-toting, object-sensing, active-tracking, faster-flying beginner...

Read more

Top VC firm is warning thousands their data may have been hacked – here’s how to stay safe

by Tech Wavo
September 19, 2025
0
Experts warn criminals are using backdoor malware to target governments
Computers

Insight Partners confirms 12,657 people affected by October 2024 ransomware attackAttackers exfiltrated and encrypted data; but no group has claimed...

Read more

Site links

  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use

No Result
View All Result
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock