DRand - @[email protected]
4.7K posts

DRand - @[email protected]
@DennisRand
Founder eCrimeLabs / Threat Analyst



🚨🚨🚨BREAKING - New data leak site by Scattered LAPSUS$ Hunters exposes Salesforce customers. Dozens of global companies involved in a large-scale extortion campaign. Scattered LAPSUS$ Hunters claims to have breached Salesforce, exfiltrating ~1B records. They accuse Salesforce of lacking 2FA and OAuth protections, say over 100 instances were compromised, and threaten data leaks, lawsuits, and technical disclosures. Complete list of affected companies and reported exfiltration: FedEx - 1.1TB Aeroméxico - 172.95GB Qantas Airways - 153GB UPS - 91.34GB HMH - 88GB Vietnam Airlines - 63.62GB Toyota Motor Corporation - 64GB Stellantis - 59GB Air France & KLM - 51GB Republic Services - 42GB Adidas - 37GB Disney/Hulu - 36GB Canvas by Instructure - 35GB Instacart - 32GB McDonald's - 28GB TripleA - 23GB TransUnion - 22GB Home Depot - 19.43GB Google AdSense - 19GB 1-800Accountant - 18GB Cisco - 5.6GB Marriott - 7GB Walgreens - 11GB Kering (Gucci, Balenciaga, etc.) - 10GB Petco - 9.9GB ASICS - 9GB Pandora - 8.3GB KFC - 1.3GB Saks Fifth - 1.1GB GAP Inc. - 1GB CarMax - 1.7GB Cartier - 1.4GB Chanel - 2GB Albertsons (Jewel Osco, etc.) - 2GB Engie Resources (Plymouth) - 3GB Puma - 3.1GB HBO Max - 3.2GB Fujifilm - 155MB IKEA - 13GB Note: All victims are listed with ransom deadlines set for 10 October 2025. Discover more at hackrisk.io


















