Cqcrm, a company likely involved in Salesforce data services, experienced a data breach in June 2026. The Icarus ransomware group claimed responsibility, listing Cqcrm as a victim on June 22, 2026. This claim is the primary confirmation of the breach, as Cqcrm has not issued an official statement.
The breach involved the theft of compressed Salesforce (SF) data. The specific types of data within the Salesforce data, such as names, emails, SSNs, or financial information, have not been publicly detailed or confirmed. The exact number of affected individuals is also unknown, and there have been no official notifications to consumers as of June 27, 2026. No state Attorney General filings have been reported.
Organizations that use Cqcrm services should monitor their systems for potential downstream impacts. Details regarding the scale of the breach, specific data types exposed, and the number of affected individuals may emerge over time.