Salesforce says customer data possibly exposed following incident


Salesforce logo is seen in this illustration taken August 5, 2025. REUTERS/Dado Ruvic/Illustration

WASHINGTON (Reuters) -Salesforce said Thursday it is investigating “unusual activity” involving Gainsight-published applications that may have exposed customer data.

In a brief statement published to its status portal, Salesforce said the Gainsight-published applications, which are installed and managed by customers "may have enabled unauthorized access to certain customers’ Salesforce data."

Salesforce said in its message that it had temporarily "revoked all active access" to Gainsight's applications. In an email, the company noted that, "There is no indication that this issue resulted from any vulnerability in the Salesforce platform."

Gainsight said on its website that "we continue to work closely with Salesforce as they investigate the unusual activity that led to the revocation of access tokens for Gainsight-published applications." Gainsight didn't immediately return an email for further comment.

Although Reuters could not establish the scope or nature of the incident, hackers have repeatedly exploited the integrations between software-as-service companies like Salesforce and Gainsight to steal data.

Last month, Alphabet's Google said that the exploitation of a weakness at Oracle's E-Business Suite of applications had likely impacted more than 100 companies.In June, Google said hackers had tricked employees of Salesforce clients into installing a modified version of Salesforce’s Data Loader, a proprietary tool used to bulk import files, andcompromising their data.

Jaime Vasco, the cofounder of Nudge Security, said it was part of an emerging paradigm.

"Attackers don’t need to breach the core platform when they can compromise an integration with privileged access," he said in a post on LinkedIn. Speaking to Reuters, he said: "This is the new attack surface."

(Reporting by Raphael Satter; editing by Diane Craft)

Follow us on our official WhatsApp channel for breaking news alerts and key updates!

Next In Tech News

New app helps you sit up straight while at your computer
Dispose of CDs, DVDs while protecting your data and the environment
'Just the Browser' strips AI and other features from your browser
How do I reduce my child's screen time?
Anthropic buys Super Bowl ads to slap OpenAI for selling ads in ChatGPT
Chatbot Chucky: Parents told to keep kids away from talking AI dolls
South Korean crypto firm accidentally sends $44 billion in bitcoins to users
Opinion: Chinese AI videos used to look fake. Now they look like money
Anthropic mocks ChatGPT ads in Super Bowl spot, vows Claude will stay ad-free
Tesla 2.0: What customers think of Model S demise, Optimus robot rise

Others Also Read