
Unauthorized Access to Salesforce and ServiceNow Portals Exposes Sensitive Data for 17 Months
cybersecuritydata_breachSalesforceServiceNowmisconfigurationunauthorized_access
A stranger has been reading Salesforce and ServiceNow portals worldwide for 17 months. The post references an external report detailing unauthorized access to Salesforce and ServiceNow instances via misconfigured guest user permissions. The exposure allowed an unknown actor to view sensitive data across multiple organizations. The issue stemmed from improperly secured guest access settings in these platforms.