Many Public Salesforce Sites are Leaking Private Data

Krebs on Security 2023-04-28

Summary:

A shocking number of organizations -- including banks and healthcare providers -- are leaking private and sensitive information from their public Salesforce Community websites, KrebsOnSecurity has learned. The data exposures all stem from a misconfiguration in Salesforce Community that allows an unauthenticated user to access records that should only be available after logging in.

Link:

https://krebsonsecurity.com/2023/04/many-public-salesforce-sites-are-leaking-private-data/

From feeds:

Intel Hub ยป T04 Krebs on Security

Tags:

a

Authors:

BrianKrebs

Date tagged:

04/28/2023, 05:32

Date published:

04/27/2023, 22:09