Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    How to stream the 2026 Super Bowl for free tonight: Patriots vs. Seahawks time, where to watch Super Bowl LX, start time, halftime show and more

    AT&T’s budget-friendly phone for kids was designed with parental controls in mind

    We may see Apple’s new iPads and MacBooks in only a matter of weeks

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026

      To avoid accusations of AI cheating, college students are turning to AI

      January 29, 2026

      ChatGPT can embrace authoritarian ideas after just one prompt, researchers say

      January 24, 2026
    • Business

      New VoidLink malware framework targets Linux cloud servers

      January 14, 2026

      Nvidia Rubin’s rack-scale encryption signals a turning point for enterprise AI security

      January 13, 2026

      How KPMG is redefining the future of SAP consulting on a global scale

      January 10, 2026

      Top 10 cloud computing stories of 2025

      December 22, 2025

      Saudia Arabia’s STC commits to five-year network upgrade programme with Ericsson

      December 18, 2025
    • Crypto

      Arthur Hayes Attributes Bitcoin Crash to ETF-Linked Dealer Hedging

      February 8, 2026

      Monero XMR Attempts First Recovery in a Month, But Death Cross Risk Looms

      February 8, 2026

      HBAR Price Eyes a Potential 30% Rally – Here’s What the Charts are Signalling 

      February 8, 2026

      Bitcoin Mining Difficulty Hits Its Biggest Drop Since 2021 China Ban

      February 8, 2026

      How Severe Is This Bitcoin Bear Market and Where Is Price Headed Next?

      February 8, 2026
    • Technology

      How to stream the 2026 Super Bowl for free tonight: Patriots vs. Seahawks time, where to watch Super Bowl LX, start time, halftime show and more

      February 8, 2026

      AT&T’s budget-friendly phone for kids was designed with parental controls in mind

      February 8, 2026

      We may see Apple’s new iPads and MacBooks in only a matter of weeks

      February 8, 2026

      Steam now lets developers display the exact date of when their game leaves Early Access

      February 8, 2026

      The iPhone 17e will reportedly bring some key upgrades without raising the price

      February 8, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»Workday hit in wave of social engineering attacks
    Technology

    Workday hit in wave of social engineering attacks

    TechAiVerseBy TechAiVerseAugust 19, 2025No Comments4 Mins Read2 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Workday hit in wave of social engineering attacks
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    Workday hit in wave of social engineering attacks

    A campaign of voice-based social engineering attacks targeting users of Salesforce’s services appears to have struck HR platform Workday

    By

    • Alex Scroxton,
      Security Editor

    Published: 18 Aug 2025 16:45

    Human resources (HR) platform provider Workday has become the latest large organisation to fall victim to a cyber attack originating through a third-party supplier, as the impact of a wave of cyber attacks – likely orchestrated through Salesforce products and linked to the ShinyHunters cyber crime collective – continues to reverberate.

    In a notice published just prior to the weekend of 16–17 August, the firm said it had fallen victim to a social engineering campaign “targeting many large organisations”.

    Cyber news outlet Bleeping Computer firmed up a link to Salesforce. Workday named neither the threat actor or the software supplier involved.

    “We recently identified that Workday had been targeted and threat actors were able to access some information from our third-party CRM [customer relationship management] platform,” the company said.

    “There is no indication of access to customer tenants or the data within them. We acted quickly to cut the access and have added extra safeguards to protect against similar incidents in the future.

    “The type of information the actor obtained was primarily commonly available business contact information, like names, email addresses, and phone numbers, potentially to further their social engineering scams,” it continued.

    “It’s important to remember that Workday will never contact anyone by phone to request a password or any other secure details. All official communications from Workday come through our trusted support channels.”

    ShinyHunters

    The breach of Workday’s systems puts it among a growing number of companies to have been compromised by ShinyHunters in the past few weeks, including the likes of Adidas, Air France-KLM, Allianz, Google, multiple LVMH brands, Pandora and Qantas, in a campaign that closely mirrors a similar series of cyber attacks conducted by the Scattered Spider group – including the April hack of Marks & Spencer.

    Threat attribution is a notoriously imprecise science, but a growing body of evidence now suggests that ShinyHunters and Scattered Spider are, at the very least, aligned somewhat through shared links to a wider underground group known as The Com, and may in fact be one and the same, according to ReliaQuest.

    Researchers at Flashpoint are also now making the connection, going so far as to tentatively attribute the current wave of CRM-linked breaches to Scattered Spider in a briefing document published on 15 August.

    Offering more evidence of a connection, the Flashpoint teamed also noted that Scattered Spider now appears to have shifted primarily to voice-based phishing (vishing) as its “primary social engineering technique”, a departure from tactics that closely mirrored the preferred methods of ShinyHunters.

    Manipulation and trickery

    Regardless of the attackers’ true identities, the latest cyber attack in the current campaign highlights that a great many of the most high-profile and damaging data breaches of recent months arose not through software vulnerabilities, but through simple manipulation and trickery of ordinary employees going about their day-to-day work.

    Dray Agha, senior manager of security operations at Huntress, said this trend highlighted the need for businesses to adopt three core “non-negotiable” defences.

    “Eliminate OAuth blind spots, enforce strict allow-listing for third-party app integrations, and review connections at a regular interval,” he said. “Adopt phishing-resistant MFA: hardware tokens are essential, as ‘MFA fatigue’ attacks remain trivial.

    “A huge number of attacks begin with social engineering, users being deceived, and user enrolment in the execution of malware – effective security awareness training is a must for any organisation that wishes to repudiate cyber attacks.”

    Read more on Data breach incident management and recovery


    • Researchers firm up ShinyHunters, Scattered Spider link

      By: Alex Scroxton


    • ShinyHunters Salesforce cyber attacks explained: What you need to know

      By: Alex Scroxton


    • Scattered Spider tactics continue to evolve, warn cyber cops

      By: Alex Scroxton


    • Scattered Spider victim Clorox sues helpdesk provider

      By: Alex Scroxton

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleExtremist hacker who defaced websites and stole data imprisoned
    Next Article NVIDIA’s GeForce NOW game streaming gets RTX 5080 GPUs, better image quality and more
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    How to stream the 2026 Super Bowl for free tonight: Patriots vs. Seahawks time, where to watch Super Bowl LX, start time, halftime show and more

    February 8, 2026

    AT&T’s budget-friendly phone for kids was designed with parental controls in mind

    February 8, 2026

    We may see Apple’s new iPads and MacBooks in only a matter of weeks

    February 8, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025659 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025246 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025148 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025111 Views
    Don't Miss
    Technology February 8, 2026

    How to stream the 2026 Super Bowl for free tonight: Patriots vs. Seahawks time, where to watch Super Bowl LX, start time, halftime show and more

    How to stream the 2026 Super Bowl for free tonight: Patriots vs. Seahawks time, where…

    AT&T’s budget-friendly phone for kids was designed with parental controls in mind

    We may see Apple’s new iPads and MacBooks in only a matter of weeks

    Steam now lets developers display the exact date of when their game leaves Early Access

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    How to stream the 2026 Super Bowl for free tonight: Patriots vs. Seahawks time, where to watch Super Bowl LX, start time, halftime show and more

    February 8, 20260 Views

    AT&T’s budget-friendly phone for kids was designed with parental controls in mind

    February 8, 20262 Views

    We may see Apple’s new iPads and MacBooks in only a matter of weeks

    February 8, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    This new Roomba finally solves the big problem I have with robot vacuums

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.