Skip to content

People, people, people

As far as I can tell, people will always be the greatest security challenge. Technology is a lot easier to understand and control. I doubt we will ever get to the point where no one is falling for phishing scams, such as the ones recently reported by salesforce.com.

We learned that a salesforce.com employee had been the victim of a phishing scam that allowed a salesforce.com customer contact list to be copied. To be clear, a phisher tricked someone into disclosing a password, but this intrusion did not stem from a security flaw in our application or database. Information in the contact list included first and last names, company names, email addresses, telephone numbers of salesforce.com customers…

That stolen information was then used to socially engineer passwords from the salesforce.com customers. I just hope they noticed quickly enough to contain the damage and information loss.

Post a Comment

Your email is never published nor shared. Required fields are marked *
*
*