Widespread Data Breach Targets Salesforce and Third-Party Integrations
A series of data breaches linked to the Salesloft Drift integration has severely impacted numerous organizations, including major players like Cloudflare, Palo Alto Networks, and Zscaler. Hundreds of Salesforce customers have reported data theft as hackers exploited stolen OAuth tokens to access sensitive information. The Salesloft incident has raised alarm bells over SaaS security, prompting companies to evaluate their vulnerabilities. As the incidents unfold, locations such as Google Workspace have also been compromised, highlighting the extensive ramifications of the breach. With ongoing investigations and heightened security measures, this breach serves as a stark reminder of the growing threats in cloud environments.
Unit 42, The Cloudflare Blog, Cybersecurity Dive, CyberScoop, Krebs on Security, Bloomberg.com, The Hacker News, Dark Reading, csoonline.com, Security Affairs