Article 70AX3 Prompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales

Prompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales

by
from The Register on (#70AX3)
Story ImageMore fun with AI agents and their security holes

A now-fixed flaw in Salesforce's Agentforce could have allowed external attackers to steal sensitive customer data via prompt injection, according to security researchers who published a proof-of-concept attack on Thursday. They were aided by an expired trusted domain that they were able to buy for a measly five bucks....

External Content
Source RSS or Atom Feed
Feed Location http://www.theregister.co.uk/headlines.atom
Feed Title The Register
Feed Link https://www.theregister.com/
Feed Copyright Copyright © 2025, Situation Publishing
Reply 0 comments