ForensicsS | Private Detective & Digital Forensics Investigation Experts
  • info@forensicss.com

    Send Email

  • 11400 West Olympic Blvd, Los Angeles, CA 90064

  • Home
  • About Us
  • Services
    • Domestic Investigation
      • Los Angeles Private Eye
      • Catch Cheater
      • Infidelity Investigations
      • Asset Investigations
      • Private Detective Orange County
      • Child Custody Investigations
      • Missing Person Locates
      • Wire Fraud
      • Corporate Security Investigations
      • Surveillance Operations
      • Financial Fraud Investigations
      • Bug Sweep TSCM Investigation
      • Workers Compensation Fraud Investigation
      • Asset and Hidden Finances Investigations
    • Cyber Security
      • DIGITAL EVIDENCE AUTHENTICATION
      • Cyber Bullying Online Investigation
      • Penetration Testing Service
      • Social Media Monitoring
      • Romance Scam Investigator
      • Cyber Stalking Investigation
      • Crypto Scam Investigation
      • Cyber Security Assessment
      • Cyber Harassment Online Investigator
      • Ransomware Attack Investigation
      • Social Media Investigator
      • Extortion Investigation services
      • Background Screening
      • Insurance Fraud Detective
      • Forensic Accounting
      • Online Identity Theft
      • Online Blackmail
      • Cell Phone Forensics
      • Automotive Forensics
      • Audio Video Forensics
      • E-Discovery
      • Assets Search 
      • Computer and Cell Phone Forensics
  • Closed Cases
    • Closed Cases
    • Case Details
  • News
  • Contact
310-270-0598

Confidentiality Guaranteed

310-270-0598

Confidentiality Guaranteed

Logo

Contact Info

  • 11400 West Olympic Blvd, Los Angeles, CA 90064
  • 310-270-0598
  • info@forensicss.com

    Blog Details

      ForensicsS | Private Detective & Digital Forensics Investigation Experts > News > Uncategorized > Google says hackers stole files from 200 corporations following Gainsight breach
    Google says hackers stole files from 200 corporations following Gainsight breach
    21
    Nov
    • ForensicsS
    • 0 Comments

    Google says hackers stole files from 200 corporations following Gainsight breach

    Online fraud

    Google has confirmed that hackers possess stolen the Salesforce-saved files of better than 200 corporations in a ample-scale present chain hack.

    On Thursday, Salesforce disclosed a breach of “sure customers’ Salesforce files” — without naming affected corporations — that used to be stolen by potential of apps published by Gainsight, which provides a buyer toughen platform to diversified corporations.  

    In an announcement, Austin Larsen, the predominant risk analyst of Google Threat Intelligence Group, acknowledged that the corporate “is aware of better than 200 potentially affected Salesforce situations.”

    After Salesforce launched the breach, the infamous and a little-nebulous hacking neighborhood acknowledged as Scattered Lapsus$ Hunters, which contains the ShinyHunters gang, claimed responsibility for the hacks in a Telegram channel, which TechCrunch has viewed. 

    The hacking neighborhood claimed responsibility for hacks affecting Atlassian, CrowdStrike, Docusign, F5, GitLab, Linkedin, Malwarebytes, SonicWall, Thomson Reuters, and Verizon.

    Contact Us

    Dwell you possess extra files about these Salesforce and Gainsight files breaches? Or diversified files breaches? From a non-work instrument, it is doubtless you’ll per chance well perhaps contact Lorenzo Franceschi-Bicchierai securely on Ticket at +1 917 257 1382, or by potential of Telegram and Keybase @lorenzofb, or email.

    Google would no longer observation on say victims.

    CrowdStrike’s spokesperson Kevin Benacci steered TechCrunch in an announcement that the corporate is “no longer struggling from the Gainsight exclaim and all buyer files stays ranking.” CrowdStrike confirmed to TechCrunch that it terminated a “suspicious insider” for allegedly passing files to hackers.

    TechCrunch reached out to the total companies talked about by Scattered Lapsus$ Hunters.

    Verizon spokesperson Kevin Israel acknowledged in an announcement that “Verizon is aware of the unsubstantiated inform by the risk actor,” without offering evidence for this inform.

    Malwarebytes spokesperson Ashley Stewart steered TechCrunch that the corporate’s security team is “aware” of the Gainsight and Salesforce disorders and “actively investigating the topic.”

    A spokesperson for Thomson Reuters acknowledged the corporate is “actively investigating.”

    Michael Adams, the executive files security officer at Docusign steered TechCrunch in an announcement that “following a complete log evaluation and interior investigation, we have not any indication of Docusign files compromise at present.” Nonetheless, Adams acknowledged that, “out of an abundance of caution, we possess taken lots of measures including terminating all Gainsight integrations and containing connected files flows.”

    At the time of publishing, no longer one of many diversified corporations responded to requests for observation.

    Hackers with the ShinyHunters neighborhood steered TechCrunch in an on-line chat that they won salvage correct of entry to to Gainsight attributable to their old hacking campaign that centered customers of Salesloft, which provides an AI and chatbot-powered marketing platform known as Float. In that earlier case, the hackers stole Float authentication tokens from those customers, allowing the hackers to destroy into their linked Salesforce situations and download their contents.

    At the time, Gainsight confirmed it used to be amongst the victims of that hacking campaign. 

    “Gainsight used to be a buyer of Salesloft Float, they had been affected and attributable to this truth compromised fully by us,” a spokesperson for the ShinyHunters neighborhood steered TechCrunch.

    Salesforce spokesperson Nicole Aranda steered TechCrunch that “as a subject of protection, Salesforce would now not observation on say buyer disorders.”

    Gainsight did no longer acknowledge to TechCrunch’s requests for observation.

    On Thursday, Salesforce acknowledged there is “no indication that this exclaim resulted from any vulnerability within the Salesforce platform,” successfully distancing itself from its customers’ files breaches.

    Gainsight has been publishing updates in regards to the incident on its incident page. On Friday, the corporate acknowledged that it is now working with Google’s incident response unit Mandiant to support compare the breach, that the incident in question “originated from the ideas’ exterior connection — no longer from any exclaim or vulnerability all the way thru the Salesforce platform,” and that “a forensic evaluation is persevering with as part of a complete and self reliant review.”

    “Salesforce has temporarily revoked packed with life salvage correct of entry to tokens for Gainsight-connected apps as a precautionary measure whereas their investigation into outlandish exercise continues,” in accordance to Gainsight’s incident page, which acknowledged Salesforce is notifying affected customers whose files used to be stolen. 

    In its Telegram channel, Scattered Lapsus$ Hunters acknowledged it plans to launch a actual web blueprint to extort the victims of its most modern campaign by subsequent week. That is the neighborhood’s modus operandi; in October, the hackers additionally published a same extortion web blueprint after stealing victims’ Salesforce files within the Salesloft incident. 

    The Scattered Lapsus$ Hunters is a collective of English-talking hackers made up of lots of cybercriminal gangs, including ShinyHunters, Scattered Spider, and Lapsus$, whose individuals spend social engineering ways to trick company staff into granting the hackers salvage correct of entry to to their methods or databases. In the previous couple of years, these groups possess claimed lots of high-profile victims, corresponding to MGM Resorts, Coinbase, DoorDash, and extra.

    This memoir used to be updated to incorporate comments from Docusign, Thomson Reuters, and Verizon.

    Learn More

    • Tags

    • cybercrime email-fraud forensics|digital-forensics Google hacker hackers Investigation malware online-scam private-detective scam|fraud private-eye cyber|cybersecurity private-eye phishing|phishing-attack private-investigator private-investigator hacking|hacker

    Recent Posts

    • Trump’s FBI says ‘Epstein’ penal advanced postcard to pedophile Larry Nassar is FAKE
    • Epstein’s brother’s wild converse that Trump authorized his homicide is unearthed in DOJ files
    • Informant steered FBI that Jeffrey Epstein had a ‘non-public hacker’
    • Fireblocks CEO says North Korea-linked job recruitment scam centered LinkedIn profiles
    • How Criminal Millions Sprinted Via Binance, OKX, and Thoroughly different High Crypto Exchanges

    Recent Comments

    No comments to show.

    Categories

    • cybersecurity
    • Investigations
    • Uncategorized

    Recent Posts

    Trump’s FBI says ‘Epstein’ penal advanced postcard to pedophile Larry Nassar is FAKE
    January 30, 2026
    Trump’s FBI says ‘Epstein’ penal advanced postcard to pedophile Larry Nassar is FAKE
    Epstein’s brother’s wild converse that Trump authorized his homicide is unearthed in DOJ files
    January 30, 2026
    Epstein’s brother’s wild converse that Trump authorized his homicide is unearthed in DOJ files
    Informant steered FBI that Jeffrey Epstein had a ‘non-public hacker’
    January 30, 2026
    Informant steered FBI that Jeffrey Epstein had a ‘non-public hacker’

    Popular Tags

    administration calls Confirms Crypto Cyber cybercrime cybercrimefraud cybercrimehacker cybercrimephishing-attack cybersecurity Department digital-forensics email-fraud Epstein forensics|digital-forensics Former fraud hacker hackers Investigation investigationfraud Justice Korean Launches malware malwarefraud malwarephishing-attack Microsoft Million Minnesota North online-scam online-scamphishing-attack orders Patel phishing-attack Police private-detective scam|fraud private-eye cyber|cybersecurity private-eye phishing|phishing-attack private-investigator private-investigator hacking|hacker probe Trump warns

    Forensics – Trusted Experts in Surveillance, Cyber Security, Background Checks, and Digital Forensics across California.

    • 310-270-0598
    • info@forensicss.com
    • 11400 West Olympic Blvd, Los Angeles, CA 90064

    Explore

    • News
    • About
    • Our Services
    • Find A Person
    • Child Custody
    • Contact Us
    • Los Angeles
    • Orange County
    • San Diego

    Services

    • Cyber Security
    • Online Blackmail
    • Cell Phone Forensics
    • Domestic Investigation
    • Social Media Investigator
    • Crypto Scam Investigation

    Newsletter

    Sign up email to get our daily latest news & updates from us

    © Copyright 2021 by KRIGO