TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Infosecurity Magazine

ShinyHunters Targets Hundreds of Websites in New Salesforce Campaign

2026-03-10 · Read original ↗

ATT&CK techniques detected

2 predictions
T1525Implant Internal Image
37%
“shinyhunters targets hundreds of websites in new salesforce campaign salesforce has urged experience cloud customers to audit their website configurations after reports that a notorious threat group has already stolen data from hundreds of companies. the saas giant said that it h…”
T1671Cloud Application Integration
30%
“campaigns : new data theft campaign targets salesforce via salesloft app. salesforce was at pains to point out that the threat actors are exploiting a “ customer - configured guest user setting, not a platform security flaw. ” shinyhunters gives a final warning the infamous shiny…”

Summary

Prolific ShinyHunters group claims to have stolen data from nearly 400 websites in Experience Cloud attacks