The Lapsus$ hacking group, known for its high-profile cyberattacks, has resurfaced with a new leak site targeting Salesforce, a major cloud software company. This resurgence follows a period of inactivity and signals a renewed threat to enterprise cloud services. The group previously gained notoriety for breaching organizations like Microsoft, NVIDIA, and Samsung, leveraging social engineering and credential theft to access sensitive data. Their latest campaign involves leaking stolen Salesforce data, raising concerns about the security of cloud-based customer relationship management (CRM) platforms. Security experts warn that organizations relying on Salesforce should enhance their cybersecurity measures, including multi-factor authentication and continuous monitoring, to mitigate potential risks. The incident underscores the evolving tactics of cybercriminal groups and the importance of robust defense strategies in protecting critical business infrastructure. This article delves into the details of the Lapsus$ group's activities, the implications for Salesforce users, and recommended security practices to prevent similar breaches in the future.
This Cyber News was published on www.darkreading.com. Publication date: Fri, 03 Oct 2025 19:50:05 +0000