Multiple Cyberattacks Expose Vulnerabilities in Major Tech Firms

TL;DR Summary
Salesloft has temporarily taken Drift offline after a widespread supply chain attack led to the theft of OAuth tokens, impacting over 700 organizations including major companies like Cloudflare and Google Workspace. The breach exploited compromised OAuth tokens associated with Drift's integration with Salesforce, prompting Salesforce to disable all related integrations as a precaution. The incident is linked to the threat cluster UNC6395, and the affected companies are working with cybersecurity firms to enhance security and prevent further attacks.
- Salesloft Takes Drift Offline After OAuth Token Theft Hits Hundreds of Organizations The Hacker News
- The impact of the Salesloft Drift breach on Cloudflare and our customers The Cloudflare Blog
- Palo Alto Networks, Zscaler customers impacted by supply chain attacks Cybersecurity Dive
- Palo Alto Networks, Zscaler Among Victims Of Salesforce Third-Party Breach CRN Magazine
- Attacks on Salesloft AI Chatbot Claim Another Victim: Cloudflare Bloomberg.com
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
2 min
vs 3 min read
Condensed
81%
405 → 78 words
Want the full story? Read the original article
Read on The Hacker News