OffPerimeter · Threat advisories
Campaign advisory
lowPublished 2026-09-30 · 0 indicators

SalesBleed

The SalesBleed campaign targets technology sector organizations by exploiting vulnerabilities within Salesforce Agentforce. Attackers leverage Web-to-Lead forms to facilitate AI agent hijacking and unauthorized data exfiltration. This activity is used to compromise CRM data and distribute phishing messages through integrated enterprise tools like Slack. OffPerimeter analysis indicates this is an active campaign focused on sensitive enterprise information theft.

ShareXLinkedInWhatsApp
First seen
2026-06-01
Last seen
2026-09-25
Threat actors
—
Malware
—
Sectors
Technology
Countries
—

How it works

The attack chain begins with the exploitation of Salesforce Agentforce via vulnerable Web-to-Lead forms to achieve initial access. Once the AI agent is hijacked, the attackers use the compromised agent to exfiltrate sensitive CRM data. Finally, the actors leverage Slack integrations to distribute phishing messages to internal users to further expand their footprint.

Techniques (MITRE ATT&CK)

What to do

References

ShareXLinkedInWhatsApp