Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Hackers Accessed Customer Data From Salesforce

Posted on September 9, 2025September 9, 2025 By CWS

Dynatrace has confirmed it was impacted by a third-party information breach originating from the Salesloft Drift software, leading to unauthorized entry to buyer enterprise contact data saved in its Salesforce CRM.

The corporate confirmed that the incident was restricted to its CRM platform and didn’t influence any core Dynatrace merchandise, providers, or delicate buyer environments.

The safety incident originated in August 2025, when menace actors compromised Salesloft’s Drift software, a preferred third-party instrument used for buyer engagement.

This compromise allowed the attackers to achieve unauthorized entry to the Salesforce environments of firms using the app.

In response to the assault, Salesloft and Salesforce moved to disable the compromised connections and commenced notifying affected shoppers, which included the observability big Dynatrace.

Dynatrace’s Response And Investigation

Upon receiving notification of the third-party breach, Dynatrace’s safety workforce took instant motion by disabling the Drift software inside its atmosphere to sever the connection and stop additional unauthorized entry.

The corporate launched a complete investigation, bringing in third-party cybersecurity specialists to find out the total scope of the incident.

The investigation confirmed that the malicious exercise was restricted completely to its Salesforce CRM occasion, which the corporate makes use of for managing buyer relationships and advertising and marketing actions.

Critically, Dynatrace clarified that none of its personal services or products have been compromised. This consists of any programs that home buyer information or providers that straight interface with buyer programs.

Moreover, the corporate reported that it doesn’t make the most of the “case perform” inside Salesforce, which means no buyer assist case data was accessible to the attackers.

Dynatrace assured stakeholders that the incident precipitated no disruption to its enterprise operations. The info uncovered within the breach is restricted to enterprise contact data. This consists of the primary and final names of buyer contacts and their related firm identifiers.

No delicate credentials, monetary particulars, or different confidential data have been accessed. After a interval of investigation and remediation, Salesloft notified Dynatrace on September seventh that the safe connections had been re-enabled.

In gentle of the publicity of enterprise contact data, Dynatrace has issued steering to its clients, urging them to train elevated warning towards potential social engineering and phishing campaigns.

The corporate emphasised that its workers won’t ever contact clients by way of cellphone or e mail to request passwords, multi-factor authentication (MFA) codes, or different delicate credentials.

Prospects are suggested to be vigilant and confirm that every one communications and hyperlinks originate from trusted Dynatrace domains.

Discover this Story Attention-grabbing! Comply with us on Google Information, LinkedIn, and X to Get Extra On the spot Updates.

Cyber Security News Tags:Accessed, Customer, Data, Hackers, Salesforce

Post navigation

Previous Post: 20 Popular npm Packages With 2 Billion Weekly Downloads Compromised in Supply Chain Attack
Next Post: SentinelOne to Acquire Observo AI in $225 Million Deal

Related Posts

TA829 Hackers Employs New TTPs and Upgraded RomCom Backdoor to Evade Detections Cyber Security News
Anthropic’s MCP Server Vulnerability Let Attackers Escape Server’s Sandbox and Execute Arbitrary Code Cyber Security News
Threat Actors Using CrossC2 Tool to Expand Cobalt Strike to Operate on Linux and macOS Cyber Security News
Jira Software Vulnerability Let Attacker Modify Any Filesystem Path Writable By JVM process Cyber Security News
ArmouryLoader Bypassing System Security Protections and Inject Malicious Codes Cyber Security News
New FileFix Attack Abuses Windows File Explorer to Execute Malicious Commands Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Malicious NuGet Packages Mimic as Popular Nethereum Project to Steal Wallet Keys
  • $1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal
  • OpenAI Atlas Omnibox Is Vulnerable to Jailbreaks
  • AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization
  • YouTube Ghost Malware Network With 3,000+ Malicious Videos Attacking Users to Deploy Malware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Malicious NuGet Packages Mimic as Popular Nethereum Project to Steal Wallet Keys
  • $1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal
  • OpenAI Atlas Omnibox Is Vulnerable to Jailbreaks
  • AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization
  • YouTube Ghost Malware Network With 3,000+ Malicious Videos Attacking Users to Deploy Malware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News