HR giant Workday discloses data breach after Salesforce attack
ID: 0ad03072-a9ab-53e3-a7da-5ed646ecb805
STIX ID: report--0ad03072-a9ab-53e3-a7da-5ed646ecb805
Feed Name: Bleeping Computer
Threat Score
Workday disclosed that attackers used social engineering to compromise a third-party CRM (reported as Salesforce), exposing business contact information (names, emails, phone numbers) but not customer tenant data. The breach is tied to a wider ShinyHunters campaign that co-opted OAuth/malicious app linkages and voice phishing to steal CRM data from numerous large organizations for extortion.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
