Salesforce warned of increased threat activity targeting publicly accessible Experience Cloud sites where guest user profiles are misconfigured with overly permissive access, enabling unauthenticated users to query and exfiltrate Salesforce CRM data via the Aura framework’s exposed API endpoints (notably /s/sfsites/aura). Salesforce stated it has not identified an inherent platform vulnerability, attributing the risk to customer configuration—specifically excessive permissions granted to the Experience Cloud guest user profile.
Salesforce said attackers are using a modified version of AuraInspector—an open-source auditing tool released by Mandiant—to move beyond identifying exposed objects to mass scanning and data extraction from affected sites. Separately, ShinyHunters publicly claimed it is conducting ongoing data-theft activity and characterized the issue as a “new bug,” while Salesforce reiterated the activity is driven by misconfiguration and issued mitigation guidance emphasizing least privilege, auditing guest permissions, and high-impact hardening such as disabling guest access to public APIs and removing the API Enabled permission from the guest profile.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
6 events from the most recent confirmed update back to the earliest known activity.
By March 10, 2026, Salesforce publicly confirmed that ShinyHunters was the threat group behind the ongoing attacks against misconfigured Experience Cloud sites. The company reiterated that the campaign relied on excessive guest-user permissions rather than a core platform flaw.
Around the time of Salesforce's warning, ShinyHunters publicly claimed responsibility for the campaign and said it had compromised roughly 100 to 400 organizations, including cybersecurity firms, through exposed Experience Cloud instances. The group also used leak-site and extortion messaging to pressure affected organizations, but the victim counts were unverified.
Salesforce disclosed that attackers were abusing the /s/sfsites/aura endpoint and using a customized AuraInspector tool to mass-scan and query exposed CRM objects on misconfigured sites. Mandiant said it was working with Salesforce and customers on telemetry and detection rules and cautioned that evidence of scanning does not necessarily mean a site was breached.
On March 10, 2026, Salesforce issued a security alert that threat actors were actively targeting publicly accessible Experience Cloud sites with overly permissive guest-user settings. The company said the issue was caused by customer misconfiguration rather than an inherent Salesforce platform vulnerability and urged customers to harden guest access immediately.
ShinyHunters said it started using a modified version of Mandiant's open-source AuraInspector in January 2026 to scan public Experience Cloud sites and extract data through exposed Aura API endpoints. Mandiant later confirmed threat actors were misusing AuraInspector for scanning, though scan activity alone did not prove compromise.
ShinyHunters claimed it had been abusing overly permissive guest-user configurations on public Salesforce Experience Cloud sites since September 2025 to access CRM data without authentication. This start date comes from the group's own statements and was not independently verified.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
15 references tracked. Mallory keeps watching after this page renders.
cyberscoop.com
Open sourcehelpnetsecurity.com
Open sourcecsoonline.com
Open sourcescworld.com
Open sourcegovinfosecurity.com
Open sourcebankinfosecurity.com
Open sourcebleepingcomputer.com
Open sourcetheregister.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.