Varonis announces strategic partnership with Microsoft to accelerate the secure adoption of Copilot.

Learn more
Nitay Bachrach

Latest articles

Security Vulnerabilities in Apex Code Could Leak Salesforce Data

Nitay Bachrach

Nitay Bachrach

Varonis' threat researchers identified high- and critical-severity vulnerabilities in Apex, a programming language for customizing Salesforce instances.

Ghost Sites: Stealing Data From Deactivated Salesforce Communities

Nitay Bachrach

Nitay Bachrach

Varonis Threat Labs discovered improperly deactivated Salesforce 'ghost' Sites that are easily found, accessible, and exploitable by attackers.

Neo4jection: Secrets, Data, and Cloud Exploits

Nitay Bachrach

Nitay Bachrach

With the continuous rise of graph databases, especially Neo4j, we're seeing increased discussions among security researchers about issues found in those databases. However, given our experience with graph databases ― from designing complex and scalable solutions with graph databases to attacking them ― we've noticed a gap between public conversations and our security researchers' knowledge of those systems.

Einstein's Wormhole: Capturing Outlook & Google Calendars via Salesforce Guest User Bug

Nitay Bachrach

Nitay Bachrach

If your organization uses Salesforce Communities and Einstein Activity Capture, you might have unknowingly exposed your administrator's Outlook or Google calendar events to the internet due to a bug called...

Abusing Misconfigured Salesforce Communities for Recon and Data Theft

Nitay Bachrach

Nitay Bachrach

Our research team has discovered numerous publicly accessible Salesforce Communities that are misconfigured and expose sensitive information.

Try Varonis free.

Get a detailed data risk report based on your company’s data.
Deploys in minutes.