top of page

Inactive Salesforce Communities could leak sensitive data

  • Writer: Joseph K
    Joseph K
  • Jun 2, 2023
  • 1 min read

Threat actors could gain access to improperly deactivated or unmaintained Salesforce sites by changing the host header, thereby gaining access to sensitive personal and business data.

In a Wednesday blog post by Varonis Threat Labs, researcher Nitay Bachrach wrote so-called “ghost sites” are Salesforce communities that are no longer being used. The abandoned sites were originally designed to allow partners and customers to collaborate within a company’s Salesforce environment. Ghost sites are simply forgotten or unused collaborative sites that instead of being deactivated create a liability, researchers said.






 
 
 

Comments


Recent Posts
Search By Tags

REACH OUT

Want to learn more about our past work or

explore how we can support your current initiatives?

Reach out today and let Fiduciary Tech be your trusted partner.

Headquarters

1100 106th Avenue NE, Suite 101F
Bellevue, WA 98004
425-998-8505

info@fiduciarytech.com

Seoul Office

Address: Geunshin Building 506-1, 20 Samgae-ro, Mapo-gu, Seoul, 04173, Republic of Korea
02-71
2-2227

info@fiduciarytech.com

fiduciary technology consulting

© 2025 by Fiduciary Technology Solutions 

bottom of page