ie8 fix
madison

Threat Chaos

Richard Stiennon

Phishing attacks against salesforce.com the least of their worries

By | November 7, 2007, 10:25am PST

Summary: David Berlind comments in his blog about recent successful phishing attacks against Salesforce.com employees and customers. He points out that as SFDC approaches one million users it is being honored with the attention of phishers. As I start to work on my 2008 predictions I have been thinking about the various “application platforms” [...]

David Berlind comments in his blog about recent successful phishing attacks against Salesforce.com employees and customers. He points out that as SFDC approaches one million users it is being honored with the attention of phishers. As I start to work on my 2008 predictions I have been thinking about the various “application platforms” and their vulnerability to hacks from a malicious application provider.

I think applications running on these new platforms will be as fraught with bugs as any applications and that hackers will use vulnerabilities to steal information. The risk with SFDC is that the 700+ applications available in the AppExchange quite often have access to a company’s most critical data store: its customer database which includes revenue, and pipeline information. Scary.

Kick off your day with ZDNet's daily e-mail newsletter. It's the freshest tech news and opinion, served hot. Get it.

Topics

Disclosure

Richard

http://blogs.zdnet.com/threatchaos/?page_id=455

Biography

Richard

A former ZDNet blogger, Richard Stiennon is an industry consultant. Most recently he was Chief Marketing Officer for Fortinet, Inc., the largest privately held security vendor. prior to that he was Chief Research Analyst at IT-Harvest. And before creating IT-Harvest, he was VP of threat research for Webroot Software, Inc. the leading commercial anti-spyware solution.

Previously, Richard was VP Research at Gartner, Inc. where he covered security topics including firewalls, intrusion detection, intrusion prevention, security consulting and managed security services for the Security and Privacy group. He is a holder of Gartner's Thought Leadership award for 2003 and was named "One of the 50 most powerful people in Networking" by NetworkWorld magazine. His speaking engagements have included conferences and meetings throughout North and South America, Hawaii, Tokyo, Tel Aviv, Istanbul, Milan, Munich, Hannover, Madrid, London, and Cannes.

Related Discussions on TechRepublic

Did you know you can take part in these discussions with your ZDNet membership?
1
Comments

Join the conversation!

0 Votes
+ -
More of a honor then anything
John Musbach 9th Nov 2007
The fact that phishers are now taking the time to phish for salesforce.com credentials shows that salesforce.com now has a good market share and thus the shady users of the internet feel it is worth their time to try and game the salesforce system

- John Musbach

Join the conversation!

Formatting +
BB Codes - Note: HTML is not supported in forums
  • [b] Bold [/b]
  • [i] Italic [/i]
  • [u] Underline [/u]
  • [s] Strikethrough [/s]
  • [q] "Quote" [/q]
  • [ol][*] 1. Ordered List [/ol]
  • [ul][*] · Unordered List [/ul]
  • [pre] Preformat [/pre]
  • [quote] "Blockquote" [/quote]
ie8 fix
Click Here
ie8 fix

The best of ZDNet, delivered

ZDNet Newsletters

Get the best of ZDNet delivered straight to your inbox

Facebook Activity

White Papers, Webcasts, & Resources
ie8 fix
ie8 fix