The Exploit

Notes from the Front Lines of Penetration Testing

Salesforce Compromise: What You Need to Know

Posted on

Categories: , , ,
Salesforce Compromise: What You Need to Know

Written by

You’ve likely seen the news about the FBI seizing a portal used for widespread Salesforce attacks last week. The possibility for compromise does not end there, though.

The FBI has released multiple Indicators of Compromise (IoC’s) to assist organizations in determining if their Salesforce platform has been compromised. Threat actors designated as UNC6040 and UNC6395 have been using various methods to obtain initial access, including vishing and phishing attacks against organization help desks, and compromised authentication tokens from breached Salesforce integrated applications.

Check out the FBI FLASH notification for IP addresses and URL’s associated with these two threat actors for detailed information. It is strongly recommended that organizations check their environment for systems accessing these IoC’s and investigate appropriately.

If you use the low code solutions in Salesforce and find yourself with a complex organization and permission structure, consider having Raxis perform a Salesforce security audit on your organization to ensure you are staying up on the latest security recommendations.


Jason Taylor

Also by Jason Taylor

Human Vs AI Pentesting

While AI tools offer speed in detecting known vulnerabilities, they fall short with 20-35% false positives and only 50-65% success on complex threats like business logic flaws, as per mainstream reports from Verizon and OWASP. Human penetration testers at Raxis deliver 85-90% detection rates, precise prioritization, and ethical adaptability, ensuring your organization stays ahead of real-world attacks.

Partner With Raxis

Partnering with Raxis empowers your business with elite penetration testing services, competitive reseller pricing, and recurring revenue opportunities, all backed by a proven track record of excellence and a commitment to staying ahead of evolving cybersecurity threats.

Penetration Testing

Tailored, expert-led penetration testing services that uncovers hidden vulnerabilities using real-world hacker techniques, providing actionable insights to strengthen your defenses and protect against sophisticated cyber threats.

Ready To See Raxis One In Action?

See how we transform traditional pen testing into interactive security intelligence that keeps you informed every step of the way. From real-time attack progression to detailed remediation guidance, Raxis One gives you unprecedented visibility into your security posture as it’s being tested.