logo

HR giant Workday discloses data breach after Salesforce attack

ID: 0ad03072-a9ab-53e3-a7da-5ed646ecb805

STIX ID: report--0ad03072-a9ab-53e3-a7da-5ed646ecb805

Feed Name: Bleeping Computer

Threat Score
68/100

Date Published: 2025-08-18

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Workday disclosed that attackers used social engineering to compromise a third-party CRM (reported as Salesforce), exposing business contact information (names, emails, phone numbers) but not customer tenant data. The breach is tied to a wider ShinyHunters campaign that co-opted OAuth/malicious app linkages and voice phishing to steal CRM data from numerous large organizations for extortion.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.