The Register
Salesforce Agentforce vulns allowed 0-click CRM data theft, anonymous phishing
Salesforce Agentforce contained three critical vulnerabilities allowing attackers to hijack AI agents, steal CRM data without user interaction, and send phishing messages. Zenity Labs discovered the flaws and Salesforce has patched them, but the incident highlights risks in AI-driven business applications.
AI summary · generated with Claude