GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Embed Notice

HTML Code

Corresponding Notice

  1. Embed this notice
    Dissent Doe :cupofcoffee: (pogowasright@infosec.exchange)'s status on Thursday, 18-Sep-2025 06:47:21 JSTDissent Doe  :cupofcoffee:Dissent Doe :cupofcoffee:

    "The ShinyHunters extortion group claims to have stolen over 1.5 billion Salesforce records from 760 companies using compromised Salesloft Drift OAuth tokens.

    [...]

    In March, one of the threat actors breached Salesloft's GitHub repository, which contained the private source code for the company.

    ShinyHunters told BleepingComputer that the threat actors used the TruffleHog security tool to scan the source code for secrets, which resulted in the finding of OAuth tokens for the Salesloft Drift and the Drift Email platforms."

    Read more of Lawrence Abrams' great reporting on Bleeping Computer:
    https://www.bleepingcomputer.com/news/security/shinyhunters-claims-15-billion-salesforce-records-stolen-in-drift-hacks/

    #Salesforce #Salesloft #Oauth #Drift #databreach #ransom #ShinyyHunters #ScatteredSpider #LAPSUS$ #UNC6040 #UNC6395

    In conversationabout 9 months ago from infosec.exchangepermalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.bleepstatic.com
      ShinyHunters claims 1.5 billion Salesforce records stolen in Drift hacks
      from @BleepinComputer
      The ShinyHunters extortion group claims to have stolen over 1.5 billion Salesforce records from 760 companies using compromised Salesloft Drift OAuth tokens.
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.