Advisory 96

Advisory 96: Google vulnerability

Release Date: 30th of August 2025

Impact : HIGH / CRITICAL

TLP Rating: Clear

CERT Vanuatu (CERTVU) and the Department of Communication and Digital Transformation (DCDT) provide the following advisory.

This alert is relevant to Organizations who utilize the above products. This alert is intended to be understood by technical users and systems administrators.

What is it?

CERTVU would like to advise on the following;

In June 2025, threat actors from an entity known as UNC6040 (also functioning as ShinyHunters) achieved a successful infiltration of one of Google’s corporate Salesforce systems. This system contained business contact details and sales notes for small and medium-sized enterprises. Although no Gmail or Google Drive passwords or financial information were disclosed, the breach increased the vulnerability to targeted phishing campaigns utilizing the compromised contact data.

 

References

  1. https://cybersecuritynews.com/gmail-users-password-reset/?fbclid=IwY2xjawMhxyNleHRuA2FlbQIxMABicmlkETFvV1ZRYmNpNk1ZNnFCSmk3AR50Cx4of2J_jWdg25cGrq0xI-D1mtFTfYyKvEL5zmxKTl324iqCnC81yw4-iQ_aem_WtQYJ2E3zRWd8rrMiCZr9Q
  2. https://news.trendmicro.com/2025/08/26/google-data-breach-gmail/