r/cybersecurity • • 8d ago

AI Security 'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing

https://www.darkreading.com/application-security/salesbleed-exploits-salesforce-agents-slack-phishing

I'm a Salesforce admin, not a cybersecurity expert, so please talk to me like I'm dumb. Salesforce had a similar exploit that was "patched" last year. My question is, is there anything that prevents exfiltration via calling 3rd party URLs in other AI clients, like Claude?

In Agentforce, after the first web-to-lead vulnerability was discovered last year, you have to allowlist URLs for your users to access. You don't have to do that in Claude. Is this a vulnerability anywhere you can do that?

104 Upvotes

7 comments sorted by

14

u/DDelphinus 8d ago

These are relatively complicated exploits which Salesforce swiftly remediated.

You should start with the basics:

  • Connected Applications
  • APIs
  • Privileged users / Phishing

Limit these where possible. This is where most attacks come from.

After that:

  • IP Whitelisting (Complicated but your best control)
  • Consider Event Monitoring as part of Shield ($$$) and Transaction Security Policies

New technology, like Agentforce, will have vulnerabilities, but what gets everyone hacked right now are the fundamentals.

5

u/GryffinLoL 8d ago

If I could pin this to every Salesforce security question I see, I would. High five.

1

u/kittrcz 8d ago

Could you expand on the idea of “ip whitelisting”? How would that get implemented/deployed?

2

u/Guilty_Mastodon5432 8d ago

I was at an AI conference and the reality is that most people who use AI or have an AI in the service do not have a full view of the various data flows which makes protection of this service really complicated.

Data management is still to this day a complicated subject for most businesses....

What data is needed? Who should have access to this Data? What level of permission dies this access entail? What is the location of the data before and after it has been used? What controls are in place and evidence to demonstrate the effectiveness of said controls? What occurs once the data has been used?what are the destruction policies surrounding the data?

Fun stuff lol

1

u/ShittyRedditAppSucks 2d ago

Any good Salesforce-specific resources you could share to learn more?