Core Insights - Google has confirmed a data breach involving customer information from one of its Salesforce database systems, which is used for storing contact information for small and medium businesses [1][2] - The hacking group responsible, known as ShinyHunters (UNC6040), has a history of targeting large companies and their cloud-based databases [2][3] - The stolen data consists mainly of basic business information that is largely publicly available, such as business names and contact details [2] Data Breach Details - Google did not disclose the number of affected customers, and there is no information on whether a ransom demand has been made [2] - This incident is part of a broader trend of breaches targeting Salesforce cloud systems, with recent incidents involving companies like Cisco and Qantas [3] - ShinyHunters employs voice phishing techniques to gain access to cloud-based Salesforce databases [3] Potential Threats - Google indicated that ShinyHunters may be preparing a data leak site, a tactic used by ransomware gangs to extort companies by publishing stolen data [4] - The group has connections with other cybercriminal organizations, including The Com, which is known for hacking, extortion, and threats of violence [4]
Google says hackers stole its customers' data in a breach of its Salesforce database