09/16/2025 | Press release | Distributed by Public on 09/17/2025 07:33
AI agents open new attack vectors in Salesforce - WithSecure moves fast to keep AI agents secure to use.
Helsinki, Finland - September 2025: Enterprises are racing to adopt Salesforce Agentforce. In doing so, they are opening their platforms to customers, partners and other third parties using AI agents to automate customer conversations, workflows, and data processing at unprecedented speed.
But that speed also creates a new risk: attackers could use agentic AI to push malicious files and links through Salesforce without malware protection.
Traditional email or endpoint tools don't protect Salesforce. Since Salesforce doesn't scan files and links for cyber threats, organizations face a blind spot in one of their most business-critical platforms - and must prepare for new types of AI-driven attacks.
"AI adoption has accelerated faster than most security controls," said Juhana Autio, General Manager and VP at WithSecure Cloud Protection for Salesforce. "The question now is: how do you secure and manage your AI agents? That's what enterprises are asking us - and what we have set out to answer."
Securing agentic AI at scale
Today, WithSecure announced a security extension to its Cloud Protection for Salesforce solution, delivering native real-time malware and phishing protection for Agentforce. The extension works inside Salesforce to stop malicious files, links, and agent actions, thereby securing the Salesforce environment and preventing breaches.
The new solution provides the enterprise level protection needed to Agentforce:
Closing the security gap
As Agentforce processes more files, links, and actions through Salesforce, phishing and malware risks increase. "Salesforce is both a valuable target and a powerful channel for attackers," Autio added. "If you're not inspecting what your AI agents touch, you're effectively blind to an entirely new attack surface."
WithSecure's native protection stops threats at the source without slowing AI operations.
Availability
The Agentforce extension is now available on Salesforce AgentExchange and AppExchange to all WithSecure Cloud Protection customers as part of existing licenses.
For more information, visit: https://cloudprotection.withsecure.com/protection-for-agentforce/
About WithSecure™ Cloud Protection for Salesforce
WithSecure Cloud Protection for Salesforce safeguards your cloud environment against advanced cyber threats. You can run your digital business without disruption - free from ransomware, zero-day malware, viruses, trojans and phishing links. The bespoke solution is designed in close collaboration with Salesforce and managed directly from your Salesforce portal.
Media contact
Elisa Mustonen