The Register on MSN
Salesforce facing multiple lawsuits after Salesloft breach
CRM giant denies security shortcomings as claims allege stolen data used for ID theft Updated Salesforce is facing a wave of ...
Prompt injection has been leveraged alongside an expired domain to steal Salesforce data in an attack named ForcedLeak.
Researchers uncovered a security flaw in Salesforce’s shiny new Agentforce. The vulnerability, dubbed “ForcedLeak”, let them ...
ForcedLeak flaw in Salesforce Agentforce allows data exfiltration via indirect prompt injection; Salesforce issues patch.
Automotive manufacturing giant Stellantis has confirmed that attackers stole some of its North American customers' data after ...
Salesforce has patched a vulnerability involving its Agentforce agentic artificial intelligence tool, discovered by ...
Salesforce and CrowdStrike unite to secure the agentic enterprise with AI-driven trust, resilience and real-time threat detection.
Salesforce Agentforce allowed attackers to hide malicious instructions in routine customer forms, tricking the AI into ...
The attacks have involved stolen authentication tokens for Salesloft-owned Drift, which threat actors have used to steal data from Salesforce CRM systems. The list of victims impacted in the ...
A critical vulnerability chain in Salesforce's AI-powered AgentForce platform has been discovered by cybersecurity researchers. The flaw, known as ForcedLeak, carried a severity score of 9.4 and could ...
Salesforce is also releasing a vibe coding agent named Vibe Codey to help companies foray into vibe coding with enterprise ...
The Register on MSN
Prompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales
More fun with AI agents and their security holes A now-fixed flaw in Salesforce’s Agentforce could have allowed external ...
Results that may be inaccessible to you are currently showing.
Hide inaccessible results