United States
Google confirmed a data breach amid a wave of continuing Salesforce CRM theft attacks. The cyber extortion group ShinyHunters (also known as UNC6040) is believed to be behind the incident. The group claimed to have exposed 2.55 million records and demanded 20 BTC (around $2.3 million) from Google before calling it a “prank.”
Analysis revealed that business names, phone numbers and sales notes were accessed during a brief window before Google cut off access. No financial data was compromised, and Google Ads, Merchant Center, Google Analytics and other ad products remained unaffected.
The incident is part of an ongoing campaign in which attackers use voice phishing to contact their target’s IT team, claiming to be from Salesforce IT support. The bad actor then tricks an employee into downloading a modified version of Salesforce’s Data Loader.
How it could affect your business
Even tech giants with robust security can be compromised when employees fall victim to phishing or vishing attacks.
