Hackers Using Fake IT Support Calls to Breach Corporate Systems, Google

Hackers are using voice phishing (vishing) to breach corporate systems, impersonating IT support to trick employees into granting access to sensitive systems, particularly Salesforce. The attackers use a modified version of Salesforce’s Data Loader tool to extract data, sometimes disguising it as “My Ticket Portal.” After data theft, they may wait months before extorting victims, claiming to be associated with the ShinyHunters hacking group.

Edward Kiledjian @ekiledjian