The Register Home Page

back to article Take this rob and shove it! Salesforce issues stern retort to ransomware extort

Salesforce won't pay a ransom demand to criminals who claim to have stolen nearly 1 billion customer records and are threatening to leak the data if the CRM giant doesn't pony up some cash. "Salesforce will not engage, negotiate with, or pay any extortion demand," Allen Tsai, a Salesforce spokesperson, told The Register. It …

  1. Anonymous Coward
    Anonymous Coward

    Dear miscreants (not actually directed at Salesforce this time):

    Please send the files to the New York Times and Der SPiegel. They need more awards for exposing corruption.

  2. Hurn

    Pay no attention to the man behind the curtain

    Focus attention on:

    "recent extortion attempts by threat actors"

    Because "attempts" sounds so much better than "successful data exfiltration" (assuming the non-Salesforce miscreants actually do have the data)

  3. IGotOut Silver badge

    Usual weasel word PR scum

    ..."none of our systems were affected".

    It's like JLR saying "Yes our Range Rovers have piss poor security, but it's not our fault, it's the app makers in India that make them so easy to steal".

  4. Gnisho

    There is nobody to root for in this story, except maybe the reporter.

  5. Pascal Monett Silver badge

    I applaud the declaration

    There are two things that are indispensable to stop ransomware.

    One is to harden your systems and up security. That costs money and implies expertise and employee education - none of which are simple. One would think that, after 3 decades now of businesse integrating IT, it would be a given, but here we are.

    The second is to never, ever give the scumbags a single dime. They want money, they're not going to waste their time if it is clear that no money will be forthcoming.

    Now, the only thing left is to hope that Salesforce will be true to its word and not do like the US Government, who always said loud and clear that they "do not negociate with terrorists" and yet have been caught red-handed doing just that.

    1. Sitaram Chamarty

      Re: I applaud the declaration

      Both those methods are good, but they are scattershot -- you have to target each individual organisation with those two mitigations and ask/hope/pray they will do the right thing.

      What I would like to see is more done to track cryptocurrency. May be more scalable to start aggressively going after CC exchanges.

      But we live in a world where expressing opinions is more dangerous than actually stealing money :-(

    2. Anonymous Coward
      Anonymous Coward

      Re: I applaud the declaration

      US Government, who always said loud and clear that they "do not negociate with terrorists"

      Nord Stream pipeline

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like