Summary

  • Cyber criminals are targeting the supply chain of Salesforce instances via the Salesloft Drift platform, according to Palo Alto Networks’ Unit 42 division.
  • Data theft has become akin to diamond heists for hackers, who see such activity as a lucrative way of stealing customer data from digital platforms including Salesforce.
  • Recent weeks have seen the emergence of various Telegram channels connected to the Muddled Libra (Scattered Spider) and Bling Libra groups that claim association with the attacks.
  • The groups have bragged about their data theft activities in the channels, which have since been closed down, and also mentioned a new RaaS tool, ShinySpider, with 1GB per second encryption speeds.
  • Unit 42 suggests that threat actors are increasingly focusing on exploiting human flaws rather than relying on technological vulnerabilities.

By Matt Brady

Original Article