Phishing scam taps Salesforce data

Customers being bombarded with attacks

Written by Matt Chapman

Salesforce.com has admitted that its customer database has been breached after a member of its staff fell for a phishing scam.

"A Salesforce.com employee had been the victim of a phishing scam that allowed a customer contact list to be copied," said a letter from the company.

Salesforce.com, which has almost one million subscribers, admitted that the stolen data included first and last names, company names, email addresses, telephone numbers and related admin data.

The letter told customers to be aware that they were likely to be targeted by further attacks, including viruses and key-logging software, and asked them to be vigilant against bogus invoices that appear to come from the company.

"Unfortunately, one of the company's employees appears to have fallen for the phishing emails and inadvertently handed over access to the firm's customer database," said Geoff Sweeney, chief technology officer at behavioural analysis company Tier-3.

"As if that wasn't bad enough, Salesforce.com has reportedly tracked a second wave of forged emails that contain malware.

"The fact that the emails are addressed to specific customers and purport to come from Salesforce.com means that the chances of a customer's PC being infected are quite high."

Tags:

Further reading

Mac Trojan attack gathers steam

OS X attack being served up with PC malware   More...

Phishing Trojan targets Mac OS X

Fake codec delivers Mac malware   More...

Cyber-crime 'worse than burglary'

One in three Brits has been a victim of cyber-theft   More...

Trojan attacks jump 500 per cent

Microsoft report warns of sharp hike in cyber attacks   More...

Related articles

Shape-shifting malware hits the web

Cyber-criminals changing malware signatures every few hours   More...

Ikea rapped for flat-pack spam

Vulnerability on homepage gave hackers access to email servers   More...

Web banking security flaws 'widespread'

Three out of four financial institutions at risk, claims report   More...

Cyber-crooks sting South Africa for £13m

Fraud went undetected for three years   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

25 Jul 2008

7.85 MBPodcast Special: Views from the Valley More...

24 Jul 2008

3.68 MBSpammer jailed, Esquire e-cover, and network passwords More...

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Credit card transaction

Credit card fraud rampant in the UK

Attempted frauds go unreported and ignored, analysts claim   More...

Intel

Intel rolls out new embedded line-up

System-on-a-chip offerings promise footprint and power saving   More...

Advertisement

Network cables

Tech giants collaborate on wireless HD

Another attempt at cable-free transmission in the home   More...

iPhone fever fills AT&T coffers

US provider cashes in on Apple smartphone   More...

Advertisement