Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Amdocs

Amdocs Vendor Cyber Rating & Cyber Score

amdocs.com

Who are we? Amdocs helps those who build the future to make it amazing. With our market-leading portfolio of software products and services, we unlock our customers’ innovative potential, empowering them to provide next-generation communication and media experiences for both the individual end user and enterprise customers. Our employees around the globe are here to accelerate service providers’ migration to the cloud, enable them to differentiate in the 5G era, and digitalize and automate their operations. Listed on the NASDAQ Global Select Market, Amdocs had revenue of $5.00 billion in fiscal 2024. For more information, visit http://www.amdocs.com/ At Amdocs, our mission is to empower our employees to 'Live Amazing, Do Amazing' every


Amdocs A.I CyberSecurity Scoring

Amdocs
Company Information
Website:https://www.amdocs.com/about
Employees number:35,119
Number of followers:1,253,339
NAICS:5112
Industry Type:Software Development
Homepage:amdocs.com
Amdocs Risk Score (AI oriented)
Between 700 and 749
logo
AmdocsSoftware Development
Updated:
03/04/2026
721/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Amdocs Global Score (TPRM)
xxxx
logo
AmdocsSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Amdocs
AmdocsModerate
Current Score
721Ba (MODERATE)
01000
1 incidents
-56 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
720Before Incident
MAY 2026
721Before Incident
APRIL 2026
721Before Incident
MARCH 2026
776Before Incident
Breach
10 Mar 2026Amdocs
Salesforce, Snowflake, Okta, Sony, LastPass and AMD: Salesforce Customer Data Breach Linked to ShinyHunters

ShinyHunters Exploits Salesforce Experience Cloud Misconfigurations in Large-Scale Data Theft

720After Incident
CRITICAL-56
SALLASAMDSNOSONOKT1773153462
ShinyHunters Exploits Salesforce Experience Cloud Misconfigurations in Large-Scale Data Theft The hacking group ShinyHunters has claimed responsibility for stealing data from approximately 100 major companies by exploiting misconfigurations in Salesforce’s Experience Cloud platform. According to reports, the group accessed information from around 400 websites and organizations, including high-profile targets like Snowflake, Okta, LastPass, Sony, AMD, and Salesforce itself. Salesforce confirmed that a "known threat actor group" is actively scanning public-facing Experience Cloud sites portals used for customer, partner, and employee interactions due to overly permissive guest user configurations. The company clarified that the issue stems from customer-defined guest user profiles, not a vulnerability in Salesforce’s core platform. ### How the Attack Works Experience Cloud sites can be configured to allow guest users (unauthenticated visitors) to view public pages and submit forms. However, if these guest profiles are granted excessive permissions, attackers can query and extract CRM data that was never intended to be public. ShinyHunters reportedly used a modified version of AuraInspector, an open-source tool originally designed by Mandiant to detect misconfigurations in Salesforce’s Aura endpoints. The altered tool enables mass scanning of public-facing sites, extracting data when guest permissions are too broad. ### ShinyHunters’ Track Record Active since 2019, ShinyHunters has been linked to numerous high-profile breaches, often employing "pay or leak" tactics demanding ransoms to prevent data exposure. Recent incidents include the 2024 Snowflake breach, as well as attacks on universities and consumer platforms, leveraging phishing, social engineering, and SaaS misconfigurations. ### The Broader Risk of Misconfiguration This incident highlights a persistent cybersecurity challenge: misconfiguration remains a leading attack vector. While SaaS platforms like Salesforce offer robust security controls, human error in permission settings can expose sensitive data. Experience Cloud’s flexibility designed for public-facing portals becomes a liability when guest user profiles are improperly configured, allowing unauthorized access to CRM records. ### Salesforce’s Response & Mitigation Steps Salesforce has urged customers to: - Audit guest user permissions across all Experience Cloud sites. - Set default external access to "private" to block unauthenticated queries. - Disable guest access to public APIs and remove API-enabled permissions from guest profiles. - Monitor logs for unusual activity, such as large-scale scanning attempts. The incident underscores the need for ongoing security reviews rather than one-time configurations, as cloud environments evolve and threat actors refine their tactics. With regulatory scrutiny and reputational risks escalating, enterprises must treat access control and governance as continuous priorities.
INCIDENT DETAILS -
TYPE
Data Theft
MOTIVATION
Data TheftExtortion (Pay or Leak Tactics)
IMPACT
Data Compromised: CRM data from approximately 400 websites and organizationsSystems Affected: Salesforce Experience Cloud sites with misconfigured guest user permissionsBrand Reputation Impact: HighIdentity Theft Risk: High
DATA BREACH
Type Of Data Compromised: CRM dataSensitivity Of Data: High (Personally Identifiable Information likely included)Data Exfiltration: YesPersonally Identifiable Information: Likely
FEBRUARY 2026
776Before Incident
JANUARY 2026
776Before Incident
DECEMBER 2025
776Before Incident
NOVEMBER 2025
776Before Incident
OCTOBER 2025
776Before Incident
SEPTEMBER 2025
776Before Incident
AUGUST 2025
776Before Incident
JULY 2025
776Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Amdocs ?
?
What was Amdocs's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Amdocs's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Amdocs's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Amdocs ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Amdocs's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?