Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Scattered LAPSUS$ Hunters Announce Salesforce Breach List On New Onion Site

Scattered LAPSUS$ Hunters Announce Salesforce Breach List On New Onion Site

Posted on October 3, 2025October 3, 2025 By CWS

A cybercrime collective often called Scattered LAPSUS$ Hunters has launched a brand new information leak website on the darkish net, claiming it holds practically one billion data from Salesforce prospects.

The group is orchestrating a widespread blackmail marketing campaign, setting a ransom deadline of October 10, 2025. They’ve threatened to publish delicate information and technical particulars if their calls for are usually not met.

The menace actors allege that important safety lapses at Salesforce, together with insufficient two-factor authentication (2FA) and OAuth protections, enabled them to compromise over 100 Salesforce cases.

Their new onion website lists quite a few high-profile corporations as victims of the information theft, together with Toyota Motor Company, FedEx, UPS, Adidas, Disney/Hulu, and McDonald’s.

Different outstanding names listed are Qantas, Aeroméxico, Vietnam Airways, Stellantis, IKEA, KFC, GAP, and the tutorial platform Canvas by Instructure.

Scattered LAPSUS$ Hunters Listings

Scattered LAPSUS$ Hunters will not be a brand new entity however slightly a coalition of members from a few of the most notorious hacking teams, together with ShinyHunters, Scattered Spider, and Lapsus$.

This alliance has been linked to a collection of main cyberattacks all through 2025, with a specific give attention to Salesforce environments. The group’s formation represents a “trinity of chaos,” combining completely different talent units to execute advanced intrusion campaigns.

A mix of subtle social engineering and technical exploitation characterizes their strategies. Attackers have been noticed utilizing voice phishing (vishing) campaigns, the place they impersonate IT assist workers in cellphone calls to trick staff.

Throughout these calls, victims are guided to authorize a malicious software, which captures OAuth tokens. These tokens grant the attackers persistent entry to the corporate’s Salesforce setting, successfully bypassing multi-factor authentication controls and permitting for the mass exfiltration of CRM information.

The Salesforce marketing campaign highlights a strategic evolution in cybercrime techniques. As a substitute of counting on conventional ransomware that encrypts recordsdata, teams like Scattered LAPSUS$ Hunters are specializing in information theft and extortion.

The leverage will not be the disruption of methods however the public publicity of stolen information, which might result in buyer backlash, regulatory fines, and extreme reputational harm.

In mid-2025, actors related to this collective claimed to have stolen 1.5 billion Salesforce data from 760 corporations by compromising OAuth tokens linked to third-party integrations like Salesloft and Drift.

The attackers usually launch fragments of the stolen information as proof, holding again the complete dataset to maximise stress throughout negotiations.

This incident follows a sample seen in earlier 2025 assaults on corporations like Google, Jaguar Land Rover, and LVMH, the place the identical collective claimed duty.

Regardless of a current “farewell letter” saying their distribution, safety specialists imagine the group has merely rebranded, and the specter of large-scale information leaks stays important.

Comply with us on Google Information, LinkedIn, and X for day by day cybersecurity updates. Contact us to function your tales.

Cyber Security News Tags:Announce, Breach, Hunters, LAPSUS, List, Onion, Salesforce, Scattered, Site

Post navigation

Previous Post: Renault UK Suffers Cyberattack – Hackers Stolen Users Customers Personal Data
Next Post: Top 10 Best Supply Chain Intelligence Security Companies in 2025

Related Posts

Threat Actors Pose as Government Officials to Attack Organizations with StallionRAT Threat Actors Pose as Government Officials to Attack Organizations with StallionRAT Cyber Security News
JetBrains Fixes Critical Security Flaws in Key Products JetBrains Fixes Critical Security Flaws in Key Products Cyber Security News
Lumma Stealer Via Fake Cracked Software Steals Login Credentials and Private Files Lumma Stealer Via Fake Cracked Software Steals Login Credentials and Private Files Cyber Security News
Preventing Phishing Attacks on Cryptocurrency Exchanges Preventing Phishing Attacks on Cryptocurrency Exchanges Cyber Security News
Hackers Exploiting Critical Langflow Vulnerability to Deploy Flodrix Botnet and Take System Control Hackers Exploiting Critical Langflow Vulnerability to Deploy Flodrix Botnet and Take System Control Cyber Security News
Malicious Minecraft Mod Distributes Myth Stealer RAT Malicious Minecraft Mod Distributes Myth Stealer RAT Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • F-Droid 2.0 Debuts with Major Redesign for App Discovery
  • China and US to Create AI Safety Channel Amid Ongoing Talks
  • Lunex Stealer Exploits AMD Driver for Credential Theft
  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • F-Droid 2.0 Debuts with Major Redesign for App Discovery
  • China and US to Create AI Safety Channel Amid Ongoing Talks
  • Lunex Stealer Exploits AMD Driver for Credential Theft
  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark