• Home
  • Privacy Policy
  • Terms and Conditions
  • DMCA
  • Disclaimer
  • Contact us
Friday, September 25, 2026
No Result
View All Result
NEWSLETTER defal
Lebanon Hub
NEWSLETTER
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
No Result
View All Result
Lebanon Hub
No Result
View All Result

Vulnerabilities in Salesforce Agentforce Expose Wider AI Agent Risk

September 25, 2026
in Cyber Security
0
Home Cyber Security
0
VIEWS
Share on FacebookShare on Twitter


Security researchers at Zenity Labs have disclosed a set of zero-click vulnerabilities in Salesforce Agentforce that allowed attackers to silently exfiltrate sensitive data related to customer relationship management (CRM) without any interaction from the victim and without the attacker ever authenticating into the target’s Salesforce environment.

The findings, published September 24by Zenity’s threat research team, detail an attack chain dubbed ‘SalesBleed.’

According to the report, attackers could plant hidden prompt injection payloads inside public-facing Web-to-Lead forms, a standard Salesforce feature that allows external users to submit data that flows directly into CRM records.

When an Agentforce agent later processed that record as part of normal business operations, the embedded instructions would hijack the agent’s behavior.

The attack chain combined three elements:

  1. Prompt injection via Web-to-Lead forms providing the agent with the ability to ingest untrusted external input
  2. Agent trusting record content as instructions: the agent is allowed render links or images back to a user interface
  3. Agent’s underlying access to sensitive tool and data permissions

Once triggered, the injected payload could instruct the agent to quietly query and exfiltrate sensitive account data, including company names, deal sizes and other CRM fields, using DNS-based exfiltration techniques that evaded Salesforce’s Trusted URLs redaction controls, a safeguard designed to prevent exactly this kind of data leakage through outbound links.

Critically, the attacker could perform a successful compromise without direct access to the target organization and the attack required no click or credential theft. The lead submission alone was enough to seed the payload, and normal agent operation did the rest.

Zenity reported the vulnerabilities to Salesforce in June, and Salesforce fully fixed the URL redaction bypass, which remediated the issues, on August 18.

Untrusted CRM Content Can Turn AI Agents Into Data-Exfiltration Paths

While the specific vulnerabilities in SalesBleed have been fixed, the Zenity researchers emphasized that the underlying risk pattern is not unique to Agentforce.

Any AI agent that reads or processes records submitted by external, untrusted sources, renders links, images, or other rich content back to users, and holds tool access to sensitive backend data “has the same three ingredients sitting in the same place,” creating a latent path for prompt injection-driven exfiltration.

“Our payload asked for company names and deal sizes, but the injection could have asked for anything the subagent’s Query Records tool can reach (which can include sensitive data). In a typical General CRM deployment, that includes accounts, contacts, and more,” the Zenity report noted.

Image credits:  bluestork /JHVEPhoto / Shutterstock.com



Source link

Next Post

Anthropic's founders seek voting control ahead of IPO

Beirut, LB
28°
Partly Cloudy
06:2218:40 EEST
Feels like: 30°C
Wind: 11km/h SW
Humidity: 58%
Pressure: 1011.18mbar
UV index: 7
SatSunMon
30°C / 25°C
31°C / 26°C
31°C / 26°C
powered by Weather Atlas

Recent News

Whitehat Rescues 3,832 NFTs Amid Suspected Magic Eden Flaw

September 25, 2026

TokenInsight September Report: MEXC Posts Deepest BTC and ETH Futures Depth at $21.03M, Lowest Silver Slippage at 0.002%

September 25, 2026

This Nintendo DS-themed launcher is coming to dual-screen Android handhelds

September 25, 2026

Bitget Hackers Drain $228M in 18 Minutes, Arkham Tracks 7 Chains

September 25, 2026

Genshin Impact’s Six Years of Balancing: What Worked and What Doesn’t

September 25, 2026

Next Week on XBOX: New Games for September 28 to October 2

September 25, 2026

PlayStation 6 Hardware Configuration Is Now Complete With Manufacturing Beginning Soon

September 25, 2026

GOG’s Big Fall Sale Includes A Bunch Of Great PC Games For $15 Or Less

September 25, 2026
Lebanon Hub

Get the Latest Lebanon News and world News on LebanonHub.com. Local News, Sports, Technology, Music, Celebrity, Gaming News and Cryptocurrency Updates.

Category

  • Altcoin
  • Australia
  • Bitcoin
  • Blockchain
  • Celebrity
  • Cyber Security
  • Ethereum
  • Exchange
  • Litecoin
  • Local News
  • Mobile
  • Movies
  • Music
  • New Released
  • PC
  • PlayStation
  • Reviews
  • Sports
  • Startups
  • Technology
  • TV
  • XBOX

Recent News

Whitehat Rescues 3,832 NFTs Amid Suspected Magic Eden Flaw

September 25, 2026

TokenInsight September Report: MEXC Posts Deepest BTC and ETH Futures Depth at $21.03M, Lowest Silver Slippage at 0.002%

September 25, 2026
  • Home
  • DMCA
  • Disclaimer
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - Lebanon Hub.

No Result
View All Result
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up

Copyright © 2022 - Lebanon Hub.