No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

Salesforce Zero-Day Exploited to Phish Facebook Credentials

August 5, 2023
in Protection
0
Salesforce Zero-Day Exploited to Phish Facebook Credentials



Attackers were recently spotted exploiting a zero-day flaw in Salesforce’s email and SMTP services in a sophisticated phishing campaign aimed at stealing credentials from Facebook users.

Guardio researchers detected cyberattackers sending targeted phishing emails with @salesforce.com addresses using the legitimate Salesforce infrastructure. An investigation revealed that they were able to exploit a Salesforce email-validation flaw to hide behind the domain’s trusted status with users and email protections alike.

The sender of the emails claimed to be “Meta Platforms,” and the messages included legitimate links to the Facebook platform, further bolstering legitimacy.

“It’s a no-brainer why we’ve seen this email slipping through traditional anti-spam and anti-phishing mechanisms,” Guardio Labs’ Oleg Zaytsey and Nati Tal noted in the post. “It includes legit links (to facebook.com) and is sent from a legit email address of @salesforce.com, one of the world’s leading CRM providers.”

The messages directed recipients via a button to a legitimate Facebook domain, apps.facebook.com, where content has been altered to inform them that they’d violated Facebook’s terms of service. From there, another button led to a phishing page that collected personal details, including full name, account name, email address, phone number, and password.

Nonetheless, “there is no evidence of impact to customer data,” Salesforce told Guardio. The flaw, meanwhile, has been fixed.

Abuse of Discontinued Facebook Games

On the Facebook side, attackers abused apps.facebook.com by creating a Web app game, which allows customized canvases. Facebook has discontinued the ability to create legacy game canvases, but existing games that were developed prior to the end of the feature were grandfathered in. It appears that malicious actors abused access to these accounts, the researchers said.

In doing this, they could “insert malicious domain content directly into the Facebook platform — presenting a phishing kit designed specifically to steal Facebook accounts including two-factor authentication (2FA) mechanism bypasses,” the researchers said, adding that Facebook parent Meta “quickly removed the malevolent accounts and Web game.”

“We’re doing a root cause analysis to see why our detections and mitigations for these sorts of attacks didn’t work,” Meta’s engineering team told Guardio, according to the post.

Protecting Legitimate Mail Gateways

The prevalence of phishing attacks and scams remains high, with attackers finding ways to put a new spin on, and increase the sophistication of, an old type of social engineering that still works. In fact, it’s often used as an initial point of entry into corporate networks to launch ransomware and other attacks.

One emerging and concerning aspect of recent campaigns is an exploit of seemingly legitimate services, such as CRMs like Salesforce, marketing platforms, and cloud-based workspaces to carry out malicious activities, the researchers noted: “This represents a significant security gap, where traditional methods often struggle to keep pace with the evolving and advanced techniques employed by threat actors.”

Service providers, then, need to step up their security game to prevent these platforms from being abused in phishing scams that exploit secure and reputable mail gateways. Steps to do this include bolstering verification processes to ensure the legitimacy of users, as well as conducting comprehensive ongoing activity analysis to promptly identify any misuse of the gateway, whether through excessive volume or through analysis of metadata such as mailing lists and content characteristics.

Editorial Team

Editorial Team

Related Posts

Your Instagram Conversations Won’t Be so Private Anymore
Protection

Your Instagram Conversations Won’t Be so Private Anymore

May 8, 2026
These Are The Best Ways to Rid Your Gmail Inbox of Spam
Protection

These Are The Best Ways to Rid Your Gmail Inbox of Spam

May 8, 2026
10 Hacks Every Google Meet User Should Know
Protection

10 Hacks Every Google Meet User Should Know

May 8, 2026
The Fitbit App Is Losing All These Features
Protection

The Fitbit App Is Losing All These Features

May 8, 2026
You Can Get $35 in Google Store Credit If You Preorder the Fitbit Air
Protection

You Can Get $35 in Google Store Credit If You Preorder the Fitbit Air

May 8, 2026
The Shokz OpenRun Pro 2 Are $40 Off Right Now
Protection

The Shokz OpenRun Pro 2 Are $40 Off Right Now

May 8, 2026
Load More
Next Post
Ukrainian naval drone hits Russian oil tanker near Crimea

Ukrainian naval drone hits Russian oil tanker near Crimea

Popular News

  • Josh Garber

    How to Contact Hilton Customer Service

    0 shares
    Share 0 Tweet 0
  • Powell signals cautious Fed stance, lowering rate cut expectations through 2026

    0 shares
    Share 0 Tweet 0
  • Apollo surpasses $1tn in assets

    0 shares
    Share 0 Tweet 0
  • Secret Service says it exchanged gunfire with armed suspect near White House

    0 shares
    Share 0 Tweet 0
  • There’s a new worry keeping Treasury yields and borrowing costs higher

    0 shares
    Share 0 Tweet 0

Latest News

Bitcoin

Bitcoin Retail Capitulating At Fastest Pace In 2 Years

May 9, 2026
0

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure On-chain data shows the Bitcoin network is...

China April exports rebound strongly after sluggish March, trade surplus widens

China April exports rebound strongly after sluggish March, trade surplus widens

May 9, 2026
0

China April exports rebound strongly after sluggish March, trade surplus widens

Cointelegraph

CLARITY Act sees ‘big step forward’ as markup set for May 14

May 9, 2026
0

The US CLARITY Act, which aims to provide the US crypto industry with greater regulatory clarity, is set to be...

Student Success Coach, Shipyard Workforce Development and Training

Student Success Coach, Shipyard Workforce Development and Training

May 9, 2026
0

Job Number: 050520261Closing Date: 6/4/2026 11:59 PM EasternPosition Description Hudson County Community CollegeStudent Success Coach, Shipyard Workforce Development and Training...

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.