🚨 The 2026 Salesforce Threat Landscape Report.
Malicious activity in Salesforce environments increased by over 700% in 2025.
Is your organization prepared for what’s coming?
Attackers are shifting toward cloud platforms — and Salesforce is increasingly in focus.
Traditional defenses aren’t enough when threats enter through URLs, integrations, and AI-driven workflows.
Here’s what the data reveals:
👉 98% of malicious detections were URL-based, not file-based
👉 83% of all detections came from a single threat category
👉 An 8x increase in detections from Q1 to Q4 2025
👉 Real-world incidents involving Salesloft, Drift, and Gainsight
👉 The rise of AitM quishing campaigns using Tycoon 2FA kits
👉 Emerging AI attack vectors, including prompt injection via web forms
What you’ll learn
✅ Why detections surged — and how attacker priorities are shifting
✅ How QR-code phishing bypasses MFA at scale
✅ Where supply-chain integrations expose Salesforce orgs
✅ How AI agents and automation introduce new attack surfaces
✅ Concrete mitigation steps for identity governance, anomaly detection, and incident response
Written by Karmina Aquino, Head of Threat Intelligence for Cloud Protection for Salesforce.
📊 This report delivers practical insights for navigating modern Salesforce risks.
👉 Download the 2026 Salesforce Threat Landscape Report now.
— Key findings and insights every Salesforce security leader should know.
Read more
Key findings and insights every Salesforce security leader should know.
👉 Download the 2026 Salesforce Threat Landscape Report
Learn more
🚨 The 2026 Salesforce Threat Landscape Report.
Malicious activity in Salesforce environments increased by over 700% in 2025.
Is your organization prepared for what’s coming?
Attackers are shifting toward cloud platforms — and Salesforce is increasingly in focus.
Traditional defenses aren’t enough when threats enter through URLs, integrations, and AI-driven workflows.
Here’s what the data reveals:
👉 98% of malicious detections were URL-based, not file-based
👉 83% of all detections came from a single threat category
👉 An 8x increase in detections from Q1 to Q4 2025
👉 Real-world incidents involving Salesloft, Drift, and Gainsight
👉 The rise of AitM quishing campaigns using Tycoon 2FA kits
👉 Emerging AI attack vectors, including prompt injection via web forms
What you’ll learn
✅ Why detections surged — and how attacker priorities are shifting
✅ How QR-code phishing bypasses MFA at scale
✅ Where supply-chain integrations expose Salesforce orgs
✅ How AI agents and automation introduce new attack surfaces
✅ Concrete mitigation steps for identity governance, anomaly detection, and incident response
Written by Karmina Aquino, Head of Threat Intelligence for Cloud Protection for Salesforce.
📊 This report delivers practical insights for navigating modern Salesforce risks.
👉 Download the 2026 Salesforce Threat Landscape Report now.
— Key findings and insights every Salesforce security leader should know.
Read more
Key findings and insights every Salesforce security leader should know.
👉 Download the 2026 Salesforce Threat Landscape Report
Learn more
🚨 The 2026 Salesforce Threat Landscape Report.
Malicious activity in Salesforce environments increased by over 700% in 2025.
Is your organization prepared for what’s coming?
Attackers are shifting toward cloud platforms — and Salesforce is increasingly in focus.
Traditional defenses aren’t enough when threats enter through URLs, integrations, and AI-driven workflows.
Here’s what the data reveals:
👉 98% of malicious detections were URL-based, not file-based
👉 83% of all detections came from a single threat category
👉 An 8x increase in detections from Q1 to Q4 2025
👉 Real-world incidents involving Salesloft, Drift, and Gainsight
👉 The rise of AitM quishing campaigns using Tycoon 2FA kits
👉 Emerging AI attack vectors, including prompt injection via web forms
What you’ll learn
✅ Why detections surged — and how attacker priorities are shifting
✅ How QR-code phishing bypasses MFA at scale
✅ Where supply-chain integrations expose Salesforce orgs
✅ How AI agents and automation introduce new attack surfaces
✅ Concrete mitigation steps for identity governance, anomaly detection, and incident response
Written by Karmina Aquino, Head of Threat Intelligence for Cloud Protection for Salesforce.
📊 This report delivers practical insights for navigating modern Salesforce risks.
👉 Download the 2026 Salesforce Threat Landscape Report now.
— Key findings and insights every Salesforce security leader should know.
Read more
Key findings and insights every Salesforce security leader should know.
👉 Download the 2026 Salesforce Threat Landscape Report
Learn more
🚨 The 2026 Salesforce Threat Landscape Report.
Malicious activity in Salesforce environments increased by over 700% in 2025.
Is your organization prepared for what’s coming?
Attackers are shifting toward cloud platforms — and Salesforce is increasingly in focus.
Traditional defenses aren’t enough when threats enter through URLs, integrations, and AI-driven workflows.
Here’s what the data reveals:
👉 98% of malicious detections were URL-based, not file-based
👉 83% of all detections came from a single threat category
👉 An 8x increase in detections from Q1 to Q4 2025
👉 Real-world incidents involving Salesloft, Drift, and Gainsight
👉 The rise of AitM quishing campaigns using Tycoon 2FA kits
👉 Emerging AI attack vectors, including prompt injection via web forms
What you’ll learn
✅ Why detections surged — and how attacker priorities are shifting
✅ How QR-code phishing bypasses MFA at scale
✅ Where supply-chain integrations expose Salesforce orgs
✅ How AI agents and automation introduce new attack surfaces
✅ Concrete mitigation steps for identity governance, anomaly detection, and incident response
Written by Karmina Aquino, Head of Threat Intelligence for Cloud Protection for Salesforce.
📊 This report delivers practical insights for navigating modern Salesforce risks.
👉 Download the 2026 Salesforce Threat Landscape Report now.
— Key findings and insights every Salesforce security leader should know.
Read more
Key findings and insights every Salesforce security leader should know.
👉 Download the 2026 Salesforce Threat Landscape Report
Learn more