Microsoft: ShinyHunters Abuse Salesforce OAuth for Data Theft
Microsoft says ShinyHunters-linked actors abused Salesforce OAuth apps, vendor integrations, and guest access to steal CRM data without exploiting a Salesforce platform flaw.
Home » Archives for Emma Davis » Page 3
Author profile
Content editor and security writer focused on making malware-removal and scam-prevention guides easier to understand. Emma reviews structure, clarity, and source consistency before articles are published.
Published work
News · July 14, 2026
Microsoft says ShinyHunters-linked actors abused Salesforce OAuth apps, vendor integrations, and guest access to steal CRM data without exploiting a Salesforce platform flaw.
News · July 13, 2026
CISA added Cisco IOS CVE-2008-4128 to KEV after active exploitation. Check Cisco 871 IOS 12.4 routers, restrict management access, and replace unsupported devices.
News · July 13, 2026
Lexfo exposed three Evilginx Microsoft 365 phishing operations, including device code flow abuse that can leave valid tokens even when users pass MFA.
News · July 12, 2026
RedHook Android malware now abuses Wireless ADB and Shizuku-style privilege flows to gain shell-level access on infected phones without rooting the device.
News · July 12, 2026
Australia's ACSC warns that attackers are exploiting known CMS and plugin flaws to plant webshells on WordPress, Joomla, Craft CMS, MetInfo, and other websites.
News · July 11, 2026
Developers who installed jscrambler 8.14.0, 8.16.0, 8.17.0, 8.18.0, or 8.20.0 should audit build systems, upgrade to 8.22.0, and rotate exposed secrets.
News · July 11, 2026
Zimbra 10.1.19 fixes a critical Classic Web Client stored XSS flaw where crafted emails can run malicious script in a user webmail session.
News · July 10, 2026
CISA added Balbooa Forms CVE-2026-56291 and iCagenda CVE-2026-48939 to KEV after active exploitation. Joomla admins should patch, then check upload folders and accounts.
News · July 10, 2026
Developers who installed @injectivelabs/sdk-ts 1.20.21 should treat wallet private keys and mnemonics as compromised and upgrade to the clean 1.20.23 release.
News · July 9, 2026
Microsoft has detailed GigaWiper, a Windows backdoor that can spy on systems and destroy them through disk wiping, fake ransomware, and boot-drive sabotage.
News · July 9, 2026
Ubiquiti patched seven critical UniFi vulnerabilities, including CVE-2026-50746, a CVSS 10.0 command-injection issue in UniFi Connect. Update exposed controllers and appliances now.
News · July 8, 2026
CISA added Langflow CVE-2026-55255 to KEV after active exploitation. Patch self-hosted AI workflow servers to 1.9.1 and check for credential-theft signs.
Before you go
Scan your Windows PC for malware, adware, and unwanted programs with a lightweight cleanup tool trusted in our removal guides.
6-day trial available. Offer opens in the same tab.