openPR Logo
Press release

AppOmni Addresses UNC6040 and ShinyHunters Attacks on CRM Applications with Zero Trust Bridge

08-28-2025 12:03 PM CET | IT, New Media & Software

Press release from: AppOmni

/ PR Agency: CDC
www.appomni.com

www.appomni.com

AppOmni today announced a new capability, Zero Trust Bridge, to help organizations stop the CRM attacks (https://appomni.com/blog/block-rogue-salesforce-apps-unc6040-dataloader-attack/) being conducted by cybercriminal groups, ShinyHunters and UNC6040, in which sensitive data is being stolen: https://appomni.com/blog/zero-trust-bridge-shared-signals/

Zero Trust works best when every system can call out risk in real time. Zero Trust Network Access (ZTNA) verifies every connection, yet most architectures go quiet once users land inside SaaS. That silence is costly. Recent activity affecting Salesforce customers attributed to UNC6040 and ShinyHunters has clearly demonstrated this threat. The main challenge? Most SaaS applications can't easily communicate risk or user activity back to the rest of your security stack. Without a way to share real-time signals, Zero Trust policies can't adapt fast enough to prevent breaches. That's where the Shared Signals Framework (SSF) comes in. When implemented in SaaS solutions, SSF can bridge this gap by allowing SaaS platforms to send standardized risk and user activity updates to your enforcement points, turning SaaS from a security blind spot into a vital source of threat intelligence. Organizations can now unlock shared signals for SaaS today using AppOmni's new Zero Trust Bridge® feature, enabling dynamic, responsive Zero Trust security across their entire environment. AppOmni already provides posture controls and threat detection mechanisms to protect and detect the TTPs used by UNC6040 and ShinyHunters. With the Zero Trust Bridge, AppOmni can also augment your defenses by informing other zero trust components in your environment.

SaaS is rich in context, but poor in signals

Modern SaaS platforms hold the most valuable business data and the most nuanced indicators of risk. Yet many of these platforms do not natively support the Shared Signals Framework or user risk exchanges like CAEP (Continuous Access Evaluation Protocol) and RISC (Risk Incident Sharing and Coordination). Even when telemetry exists, it is rarely packaged into a signal that an authorization system can consume instantly. They must be derived from configuration changes and correlated behaviors. The practical result is a broken feedback loop between what happens inside SaaS and the controls that should react to it.

Meet AppOmni's patented Zero Trust Bridge®

Our patented, new feature changes the game for shared signals in SaaS applications. As the leading SaaS security platform, AppOmni is uniquely positioned to now leverage our Zero Trust Bridge to bring SaaS applications into a dynamic and responsive security architecture. The attacks that abused OAuth and social engineering show why this matters. Zero Trust Bridge turns SaaS into an active participant in your Zero Trust program. It brings SaaS applications into a closed-loop architecture without waiting for every app to implement SSF and allows adaptive, dynamic policy enforcement across your existing controls.

In a nutshell, Zero Trust Bridge monitors updates across source applications and translates those updates into messages using application context. It then sends those messages to authorization systems that can take real actions like step-up, reauthorize, or revoke.

Shared signals in SaaS: What's new and why it matters

Native CAEP and RISC plus extended SSF for real-world SaaS
AppOmni supports CAEP and RISC and extends SSF with more than 350 event types. Shared Signals receivers can subscribe to granular user risk activities that go beyond what CAEP and RISC define.

Beyond configuration, into in-app activity monitoring

It is not only posture drift. AppOmni continuously monitors user activities inside SaaS applications across admins, external users, service accounts, and integrations. Zero Trust Bridge then generates the appropriate CAEP and RISC messages on the app's behalf.

Unlock SSF today

Turn SaaS into first-class signal producers now, without waiting for vendor roadmaps. Zero Trust Bridge normalizes identities, enriches context, and emits standards-conformant signals that your systems already understand.

Inform the right enforcement points

AppOmni informs Zero Trust Policy Enforcement Points (PEPs) in real time, such as Secure Access Service Edge (SASE) platforms or your identity provider, so they can evaluate and enforce policy. AppOmni informs, and your PEPs enforce.
How AppOmni Zero Trust Bridge works at a glance

Observe

AppOmni ingests SaaS configuration, entitlements, exposure posture, admin actions, app component changes, OAuth and integration risk, and user activities.

Derive indicators

We compute signals that apps do not audit natively. Examples include SSO enforcement drift, IP allowlist changes by profile, privilege elevation, cross-app failed logins, risky OAuth scopes, anomalous device or geo, and more. Signals are mapped to a global identity and enriched with data classification and asset criticality.

Generate shared signals

We emit CAEP and RISC messages and extended SSF events (more than 350), so receivers can subscribe precisely to what matters.

Distribute to decision and enforcement points

Identity providers, SASE and ZTNA, SIEM and SOAR, and other PEPs receive high-fidelity, low-noise signals for real-time decisions and enforcement. AppOmni itself does not enforce.

A concrete example: detect session hijacking with Zero Trust Bridge

Session hijacking often targets the application itself and can bypass both the identity provider and network controls.

Threat detection and UEBA

AppOmni identifies suspicious token reuse, device or user agent mismatch, geo-improbable access, or side door login paths that indicate a likely stolen session inside a SaaS app.

Activate shared signals

We immediately publish the appropriate CAEP and RISC messages and extended SSF events to your receivers with the context they need. That includes who, what, where, when, confidence, and impact.

Your PEPs adapt

Your identity provider, SASE or ZTNA, and other PEPs consume those signals to drive step up authentication, session handling, or conditional access according to your policies. AppOmni informs, PEPs enforce.

This restores the closed loop that Zero Trust intends. Detection → Signaling → Decision → Enforcement. You do not need to wait for each SaaS vendor to natively support SSF.

Don't wait for vendors: Enable SaaS shared signals now
● Most SaaS platforms do not natively support SSF today.
● Many critical user risk indicators are derived from posture and behavior rather than a single built-in audit log.
● You need Zero Trust that adapts now, not after the next breach headline.

With Zero Trust Bridge, you unlock SSF today and turn SaaS into a rich signal source that keeps your Zero Trust fabric responsive.

Benefits of SaaS risk signaling with Zero Trust Bridge

● Granular subscriptions to more than 350 extended SSF events for precise automation

● Coverage of in-app user activities and configuration drift across employees, externals, and non-human identities

● Cross-application correlation to catch patterns single apps cannot see

● Real-time notifications to PEPs such as identity providers and SASE or ZTNA so the right systems can enforce your policies

Getting started

If you already integrate AppOmni with your identity provider or SASE or ZTNA, enabling Zero Trust Bridge is straightforward. We will help you map the highest value signals, including the extended catalog, to your existing PEPs and validate end to end outcomes. Zero Trust Bridge keeps your policies responsive, and it makes Zero Trust real for the layer where your data lives. SaaS finally has a voice in your Shared Signals ecosystem.

3 East Third Avenue, Suite 200
San Mateo, CA 94401
U.S.A

Press Contact:
CONTOS DUNNE COMMUNICATIONS
AppOmni@cdc.agency (e)
+1 (408) 776-1400 (o); +1 (408) 893-8750 (m)

AppOmni is a SaaS security company protecting 101 million+ users that's secured over 260 million exposed data records, analyzes 60 billion cyber events a month and has 222 employees across 12 countries.

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release AppOmni Addresses UNC6040 and ShinyHunters Attacks on CRM Applications with Zero Trust Bridge here

News-ID: 4160452 • Views:

More Releases from AppOmni

AppOmni State of SaaS Security Report 2024 Finds Security Of Enterprise SaaS App …
AppOmni, the leader in SaaS security, today unveiled The State of SaaS Security 2024 Report, the company's second annual examination of this critical discipline. Based on a survey of security decision makers at 644 organizations in six countries-and encompassing key findings, ongoing conversations, illustrative anecdotes and analyses of the regulatory environment-the report finds that while Software-as-a-Service security is finally getting the attention it deserves, there's still a major gap between
AppOmni Releases Zero Trust Posture Management, Enhancing SaaS Security by Exten …
AppOmni, the pioneer of SaaS security posture management (SSPM), today formally announced AppOmni Zero Trust Posture Management (ZTPM), a unique solution set that dramatically strengthens security in modern infrastructures by bridging a critical gap in network-centric Zero Trust (ZT) architectures. Specifically, the framework provides an unprecedented level of visibility and monitoring into the configuration, security posture, and user behaviors within Software-as-a-Service (SaaS) applications. It also enables granular access and configuration
AppOmni Unveils First AI SaaS Security Posture Management Assistant, AskOmni, Re …
AskOmni simplifies and enhances SaaS security, enabling administrators to ask their way to securing their SaaS estate AppOmni, SaaS Security Posture Management (SSPM) leader and SaaS security pioneer, today unveiled a groundbreaking advancement with the introduction of AskOmni. This first AI-powered SSPM assistant developed by the AppOmni OmniScience team propels SSPM into new dimensions, simplifying security operations and issue remediation, and helping organizations secure mission-critical SaaS environments. AskOmni simplifies administrator

All 4 Releases


More Releases for SaaS

Saas Security Market Size Analysis by Application, Type, and Region: Forecast to …
USA, New Jersey- According to Market Research Intellect, the global Saas Security market in the Internet, Communication and Technology category is projected to witness significant growth from 2025 to 2032. Market dynamics, technological advancements, and evolving consumer demand are expected to drive expansion during this period. As companies more and more move their operations to cloud-based systems, the SaaS security market is growing strongly. Increased use of Software-as-a-Service models in
Unlock Exclusive Savings on Top SaaS Software with Best SaaS Offers
Image: https://www.abnewswire.com/uploads/0c20ad69235160722e6fd091f6590e60.png Best SaaS Offers is transforming the way startups, freelancers, and businesses access essential software by offering some of the most Affordable SaaS tools for startups [https://bestsaasoffers.com/]. As a leading destination for lifetime deals and exclusive discounts, Best SaaS Offers connects users with top-quality digital tools at budget-friendly prices, empowering them to grow without the financial burden of hefty subscriptions. Affordable SaaS Tools for Startups - The Key to Scaling Smartly In
AppOmni Unveils First AI SaaS Security Posture Management Assistant, AskOmni, Re …
AskOmni simplifies and enhances SaaS security, enabling administrators to ask their way to securing their SaaS estate AppOmni, SaaS Security Posture Management (SSPM) leader and SaaS security pioneer, today unveiled a groundbreaking advancement with the introduction of AskOmni. This first AI-powered SSPM assistant developed by the AppOmni OmniScience team propels SSPM into new dimensions, simplifying security operations and issue remediation, and helping organizations secure mission-critical SaaS environments. AskOmni simplifies administrator
Revenue-Based Financing Market SWOT Analysis by Key Players SaaS Capital, Sabine …
Advance Market Analytics added research publication document on Worldwide Revenue-Based Financing Market breaking major business segments and highlighting wider level geographies to get deep dive analysis on market data. The study is a perfect balance bridging both qualitative and quantitative information of Worldwide Revenue-Based Financing market. The study provides valuable market size data for historical (Volume** & Value) from 2018 to 2022 which is estimated and forecasted till 2028*. Some
SaaS BPM Extended Easter Sale
Are you on the lookout for new plugins and software to enhance your small business? Search no more! We have now extended the Easter promotions for our amazing tools until April 18! But first, here are a few details about how SaaS BPM can help you manage your teams and your client relationships better. SaaS BPM: The Ultimate Small Business Process Management Solution In every industry, there are operational processes that serve
Global SaaS Management Platform Market Size, By Types (SaaS Subscription Managem …
The global SaaS Management Platform size is estimated to be USD 1891 million in 2020. The global SaaS Management Platform market size is expected to grow at a CAGR of 16.4% between 2020-2028. The global SaaS Management Platform Market is fueled by various factors, according to a detailed assessment explained in the report. This study shows how important in-depth analysis should be, and how it greatly affects the quality of information