Financial Transactions via Hijacked Accounts Top ¥500B in January-May
- Between January and May 2025, 5,958 illegal financial transactions worth ¥524 billion occurred through hijacked securities accounts in Japan.
- These fraudulent trades increased in May, involving 2,289 cases worth ¥209.4 billion and expanding to 16 affected brokerage firms, including newly impacted Mizuho and SBI Neotrade Securities.
- Separately, Google Threat Intelligence Group revealed that the UNC6040 hacking group exploits social engineering by impersonating IT support to originate voice phishing campaigns targeting Salesforce environments globally.
- Attackers convince employees to install modified Data Loader apps during vishing calls, granting unauthorized access to sensitive Salesforce data without exploiting platform vulnerabilities.
- These incidents highlight the necessity of enhanced user training, strict access controls, and defense-in-depth strategies to mitigate growing risks from human-focused cloud security attacks.
11 Articles
11 Articles


Google Warns Salesforce Data Of Companies Being Stolen By Hackers: At Least 20 Organizations Impacted So Far
UNC6040 APT Hackers Steals Salesforce data Without Exploit Any Vulnerabilities
The financially motivated threat cluster UNC6040, tracked by Google Threat Intelligence Group (GTIG), has been orchestrating a series of voice phishing (vishing) campaigns specifically aimed at compromising Salesforce environments of multinational corporations. Unlike traditional cyberattacks that leverage software vulnerabilities, UNC6040 relies entirely on manipulating human behavior, impersonating IT support personnel to deceive employees pre…


Mandiant Exposes Salesforce Phishing Campaign as Infostealer Malware Emerges as a Parallel Threat
Mandiant has exposed a sophisticated campaign using voice phishing to gain access to Salesforce accounts. Attackers impersonated IT support staff over the phone to trick victims into providing multi-factor authentication…
Coverage Details
Bias Distribution
- 100% of the sources are Center
To view factuality data please Upgrade to Premium
Ownership
To view ownership data please Upgrade to Vantage