Skip to main content
Back to overview
Medium

Cisco Data Breach via Vishing Attack on Third-Party CRM

Cisco confirmed a data breach following a voice phishing (vishing) attack that tricked an employee and led to unauthorized access to a third-party cloud-based CRM system.

Key points

  • Breach caused by a vishing attack targeting an employee.
  • Unauthorized access gained to a third-party cloud-based CRM system.
  • Stolen data includes names, email addresses, phone numbers, user IDs, and organization details.

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

02

Likely method

Phishing Social Engineering

Social, Hacking activity

03

Potential impact

Potential fraud or account takeover risk

Confidentiality

Published
Aug 8, 2025
Updated
Jun 26, 2026
Confidence
Medium
Evidence
1 source

Structured assessment

Signal analysis

It helps compare this signal with other published signals without treating the labels as final determinations.

Threat source

Social, Hacking activity

Watch phishing, executive impersonation and account-takeover exposure.

  • Source type: possible insider or internal misuse

Business impact

Potential fraud or account takeover risk
Impact area
Confidentiality
Likely asset
User or customer data, Server or cloud data store

Mentioned entities

CiscoData DisclosureVishing AttackThird-Party CRM CiscoCRMIDsUnauthorizedStolen

Quick context

Questions about this signal

What happened in this signal?

Cisco confirmed a data breach following a voice phishing (vishing) attack that tricked an employee and led to unauthorized access to a third-party cloud-based CRM system. The attacker stole basic profile information of users registered on Cisco.com, including names, email addresses, phone numbers, user IDs, and organization details. No sensitive data, passwords, or confidential customer information was compromised.

When was this signal reported?

Shadow Tier lists Aug 8, 2025 as the signal date.

Which organization is connected to this signal?

Cisco is the organization connected to this public signal.

Explore Cisco
Which attack pattern is relevant?

This signal is connected to phishing and social-engineering intelligence based on its reported incident context.

Explore phishing and social-engineering intelligence