MC (talk | contribs)
mNo edit summary
MC (talk | contribs)
Line 11: Line 11:




==Background==
Background
 
The Bleeping Computer reports that the ShinyHunters group accessed Stellantis data as part of a larger effort targeted at Salesforce, which included data stolen from many other large companies in 2025, such as [[Google]], [[Cisco Systems, Inc.]], and Workday.<ref name=":1" /> The group did not reveal to Bleeping Computer the methods used to gain access in this incident, however, their tactics in the similar attacks on Salesforce included social engineering<ref>{{Cite web |last=Toulas |first=Bill |date=2025-06-04 |title=Google: Hackers target Salesforce accounts in data extortion attacks |url=https://www.bleepingcomputer.com/news/security/google-hackers-target-salesforce-accounts-in-data-extortion-attacks/ |url-status=live |archive-url=https://web.archive.org/web/20250919162222/https://www.bleepingcomputer.com/news/security/google-hackers-target-salesforce-accounts-in-data-extortion-attacks/ |archive-date=2025-09-19 |access-date=2025-09-29 |website=Bleeping Computer}}</ref> and stolen credentials that allowed access through the Salesloft Drift AI chat integration with Salesforce.<ref>{{Cite web |last=Abrams |first=Lawrence |date=2025-08-28 |title=Google warns Salesloft breach impacted some Workspace accounts |url=https://www.bleepingcomputer.com/news/security/google-warns-salesloft-breach-impacted-some-workspace-accounts/ |url-status=live |archive-url=https://web.archive.org/web/20250912100941/https://www.bleepingcomputer.com/news/security/google-warns-salesloft-breach-impacted-some-workspace-accounts/ |archive-date=2025-09-12 |access-date=2025-09-29 |website=Bleeping Computer}}</ref>  
The Bleeping Computer reports that the ShinyHunters group accessed Stellantis data as part of a larger effort targeted at Salesforce, which included data stolen from many other large companies in 2025, such as [[Google]], [[Cisco Systems, Inc.]], and Workday.<ref name=":1" /> The group did not reveal to Bleeping Computer the methods used to gain access in this incident, however, their tactics in the similar attacks on Salesforce included social engineering<ref>{{Cite web |last=Toulas |first=Bill |date=2025-06-04 |title=Google: Hackers target Salesforce accounts in data extortion attacks |url=https://www.bleepingcomputer.com/news/security/google-hackers-target-salesforce-accounts-in-data-extortion-attacks/ |url-status=live |archive-url=https://web.archive.org/web/20250919162222/https://www.bleepingcomputer.com/news/security/google-hackers-target-salesforce-accounts-in-data-extortion-attacks/ |archive-date=2025-09-19 |access-date=2025-09-29 |website=Bleeping Computer}}</ref> and stolen credentials that allowed access through the Salesloft Drift AI chat integration with Salesforce.<ref>{{Cite web |last=Abrams |first=Lawrence |date=2025-08-28 |title=Google warns Salesloft breach impacted some Workspace accounts |url=https://www.bleepingcomputer.com/news/security/google-warns-salesloft-breach-impacted-some-workspace-accounts/ |url-status=live |archive-url=https://web.archive.org/web/20250912100941/https://www.bleepingcomputer.com/news/security/google-warns-salesloft-breach-impacted-some-workspace-accounts/ |archive-date=2025-09-12 |access-date=2025-09-29 |website=Bleeping Computer}}</ref>  


Line 23: Line 24:


==Consumer response==
==Consumer response==
{{Ph-I-ConR}}
{{Ph-I-ConR}}Some consumers reacted to the news in the context of the broader conversations around privacy in the automotive industry in online comments by accusing Stellantis of hypocrisy, expressing gratitude for owning vehicles from the early 2000's and beyond that don't collect their data to begin with, and conveying distrust in Stellantis and a lack of surprise at the incident.<ref>{{Cite news |last=Knutsson |first=Kurt |date=2025-10-07 |title=Jeep and Chrysler parent Stellantis confirms data breach |url=https://www.foxnews.com/tech/jeep-chrysler-parent-stellantis-confirms-data-breach |url-status=live |access-date=2025-10-15 |work=Fox News}}</ref> <ref>{{Cite web |date=2025-09-22 |title=Automaker giant Stellantis confirms data breach after Salesforce hack |url=https://www.reddit.com/r/cybersecurity/comments/1nnz4b0/automaker_giant_stellantis_confirms_data_breach/ |url-status=live |access-date=2025-10-15 |website=Reddit}}</ref><ref>{{Cite web |date=2025-09-26 |title=Stellantis suffers data breach during campaign against independent repair |url=https://www.reddit.com/r/cars/comments/1nrgpsz/stellantis_suffers_data_breach_during_campaign/ |url-status=live |access-date=2025-10-15 |website=Reddit}}</ref>


==See also==
==See also==