ShinyHunters Claims Data Breach at Over 100 Companies, Including Salesforce
ShinyHunters Claims Data Breach at Over 100 Companies, Including Salesforce
In early March 2026, the cybercriminal group ShinyHunters announced a significant data breach affecting approximately 100 high-profile companies, including Salesforce, Snowflake, Okta, LastPass, Sony, and AMD. The group claims to have stolen data from nearly 400 websites, marking one of the most extensive cyberattacks in recent history.
Details of the Breach
ShinyHunters, known for previous high-profile data breaches, stated that they have exfiltrated data from about 100 essential companies. A spokesperson for the group told The Register, "Have stolen data from almost 400 websites and about 100 essential high profile companies Snowflake, Okta, Lastpass, Salesforce itself, Sony, AMD, and a lot more." ([cybersecurity-review.com](https://www.cybersecurity-review.com/news-march-2026/?utm_source=openai))
The exact nature and volume of the data stolen have not been fully disclosed. However, given the stature of the affected companies, the breach potentially exposes sensitive customer information, internal communications, and proprietary data.
Impacted Companies
- Salesforce: As a leading customer relationship management (CRM) platform, a breach could expose vast amounts of client data and internal communications.
- Snowflake: A cloud data platform, potentially compromising stored data and analytics.
- Okta: An identity and access management company, raising concerns about unauthorized access to various systems.
- LastPass: A password management service, where a breach could lead to exposure of user credentials.
- Sony and AMD: Major players in the electronics and semiconductor industries, respectively, with potential exposure of proprietary information and customer data.
Response and Mitigation Efforts
As of now, the affected companies have not publicly confirmed the breaches. Cybersecurity experts recommend that organizations review their security protocols, especially those related to third-party integrations and data storage practices. Customers are advised to monitor their accounts for unusual activity and consider changing passwords as a precautionary measure.
About ShinyHunters
ShinyHunters has a history of targeting large organizations and selling stolen data on dark web forums. Their previous victims include major corporations across various sectors, making them a significant threat in the cybersecurity landscape.
Conclusion
This incident underscores the persistent threat posed by cybercriminal groups like ShinyHunters. Organizations must remain vigilant, regularly update their security measures, and educate employees about potential cyber threats to mitigate the risk of such breaches.
For more information on this developing story, refer to the original report by Cyber Security Review. ([cybersecurity-review.com](https://www.cybersecurity-review.com/news-march-2026/?utm_source=openai))