No Result
View All Result
  • Login
Saturday, March 21, 2026
FeeOnlyNews.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
FeeOnlyNews.com
No Result
View All Result
Home Market Analysis

The Abyss Of The Salesloft-Salesforce Breach May Reach The Challenger Deep

by FeeOnlyNews.com
6 months ago
in Market Analysis
Reading Time: 3 mins read
A A
0
The Abyss Of The Salesloft-Salesforce Breach May Reach The Challenger Deep
Share on FacebookShare on TwitterShare on LInkedIn


News has been trickling out since August 20 about a security issue in Salesloft’s Drift product, a marketing and sales chatbot that integrates with CRM systems to capture and track sales opportunities. The issue started in March, when threat actors accessed Salesloft’s GitHub account and did reconnaissance, which helped them access Drift’s AWS environment and obtain OAuth tokens. From there, they accessed Drift customers’ Salesforce instances from August 8–18.

Salesforce has suffered repeated attacks this year where advanced persistent threats (APTs) compromised customer databases by targeting individual companies. This attack is much broader in terms of both scope and number of companies affected, as Drift is a popular tool used by over 700 companies. Its customers include several notable cybersecurity vendors such as Black Duck, Cloudflare, Okta, OneTrust, Palo Alto Networks, Proofpoint, and Zscaler.

What Data Was Compromised?

By design, Drift is meant to improve sales engagement with prospects and customers. Its integration with CRM systems lets Drift track leads, update CRM records, and trigger follow-up actions. Because of the Salesforce integration, the threat actors were able to access:

Sensitive information about client environments such as IP addresses, account information, and access tokens. These are stored in clear text within support case notes to make supporting that customer easier when a case is passed to multiple analysts, but for a hacker, this gives them critical access details to the client’s infrastructure.
Standard information about accounts such as client contact data, sales pipeline, support history, and business strategy. This information seems generic, but for social engineering campaigns, these are the details that threat actors need to make their engagement more believable.

Actions To Take Now To Reduce The Threat To Your Business

While Salesloft has reset the authentication tokens and temporarily disabled Drift, impacted businesses need to take further steps to protect themselves and their employees. After working with their third-party risk management program to define the scope of the breach, companies should take the following actions:

Revoke and rotate all API keys, credentials, and authentication tokens associated with the integration. Additionally, if your investigation of your Salesforce data uncovers any hardcoded secrets or exposed API keys/credentials, they must be rotated immediately. Establish a regular rotation schedule for all API keys and other secrets used in third-party integrations to reduce the window of exposure.
Tune tech and train teams for the social engineering onslaught. Various human-element breach types and tactics will spring up in the coming weeks and months based on the data that was extracted, requiring specific tech and process controls. Your email, messaging, and collaboration security solution and your employees should be tuned to spot the traditional signs of social engineering: authority, novelty, and urgency. Employees should be encouraged — and publicly praised — to pause in the face of these signs and seek additional verification before providing information or completing transactions.
Institute least privileged access controls on your data used by third parties. The guidance we’ve provided on SaaS security applies equally to app developers and customers to limit access to data to only what is needed for that function to execute. In this campaign, companies that restricted inbound access from approved IP addresses did not have their Salesforce data extracted, even though they were targeted. Utilize SaaS security posture management solutions to uncover the risks in your SaaS deployments and improve threat monitoring of your configurations within these apps to limit your exposure based on identified risks.
Secure your software supply chain. Start with an inventory of all software used in the development and delivery process; this includes open-source software tools and components. Ensure that dev environments, pipelines, and source-code management systems utilize Zero Trust principles, have phishing-resistant multifactor authentication enforced, enable branch protection, monitor for security misconfigurations, automate application security testing, and utilize a secrets management solution to avoid any credentials, tokens, or environment variables being passed in plaintext.
Define your incident escalation matrix. Delineate severity levels and assess materiality in the context of the regulatory requirements to which your organization is beholden. Socialize this matrix with all internal and external stakeholders, and work with outside counsel and your incident response service provider to develop executive and board tabletop exercises involving complex, cascading nth-party breach and breach notification scenarios.

Stay Tuned

Details continue to emerge from Salesloft as well as businesses directly impacted by the breach. Because we still don’t know how many companies were victims of data theft or the exact attack details, the total impact remains unclear. The security and risk team at Forrester will provide updates to help clients as new details come to light.



Source link

Tags: AbyssbreachChallengerDeepreachSalesloftSalesforce
ShareTweetShare
Previous Post

Microsoft: Startet jetzt der Angriff auf das Rekordhoch?

Next Post

Important takeaways from Adobe’s (ADBE) Q3 2025 earnings report

Related Posts

The Strategic Role of a Channel Partner in Your 2026 GTM Strategy

The Strategic Role of a Channel Partner in Your 2026 GTM Strategy

by FeeOnlyNews.com
March 20, 2026
0

A recent industry analysis revealed that 40% of B2B manufacturers lose up to 10% of their annual revenue due to...

Is S&P 500 at Mercy of Crude Oil? This Key Indicator Could Signal What’s Next

Is S&P 500 at Mercy of Crude Oil? This Key Indicator Could Signal What’s Next

by FeeOnlyNews.com
March 20, 2026
0

S&P 500 increasingly tracking oil moves, highlighting rising commodity-driven market sensitivity. Risk-off sentiment persists with negative momentum, elevated VIX, and...

4 Undervalued Stocks Worth Buying to Navigate 2026 Market Volatility

4 Undervalued Stocks Worth Buying to Navigate 2026 Market Volatility

by FeeOnlyNews.com
March 20, 2026
0

The stock market is experiencing increased volatility amid inflation fears, geopolitical uncertainty, and shifting interest rate expectations. Below we highlight...

Agent Control Planes Still Need A Robust Standards Stack

Agent Control Planes Still Need A Robust Standards Stack

by FeeOnlyNews.com
March 20, 2026
0

This post is a follow-up to my earlier announcement of our coverage of the agent control planes market. Research questionnaires...

The Strategic Guide to Channel Optimization

The Strategic Guide to Channel Optimization

by FeeOnlyNews.com
March 19, 2026
0

The average manufacturer loses up to 10% of their annual bottom line simply because they’re managing rebates & incentives through...

Apple Turns 50. Now Comes The Reckoning.

Apple Turns 50. Now Comes The Reckoning.

by FeeOnlyNews.com
March 19, 2026
0

On April 1, Apple turns 50. In his anniversary letter, Tim Cook reflects on the company’s founding beliefs and invokes the long-standing manifesto, “think...

Next Post
Important takeaways from Adobe’s (ADBE) Q3 2025 earnings report

Important takeaways from Adobe’s (ADBE) Q3 2025 earnings report

44% of People With This Debilitating Disease Don’t Know They Have It

44% of People With This Debilitating Disease Don’t Know They Have It

  • Trending
  • Comments
  • Latest
York IE Appoints Chuck Saia to its Strategic Advisory Board

York IE Appoints Chuck Saia to its Strategic Advisory Board

February 18, 2026
Judge orders SEC to release data behind B in WhatsApp fines

Judge orders SEC to release data behind $2B in WhatsApp fines

March 10, 2026
8 Cost-Cutting Moves Retirees Are Sharing Online in February

8 Cost-Cutting Moves Retirees Are Sharing Online in February

February 14, 2026
3 Grocery Chains That Give Seniors a “Gas Bonus” for Every  Spent

3 Grocery Chains That Give Seniors a “Gas Bonus” for Every $50 Spent

March 15, 2026
8 Procedures That Can Be Cheaper Without Insurance

8 Procedures That Can Be Cheaper Without Insurance

February 14, 2026
FPA partners with Snappy Kraken to update PlannerSearch

FPA partners with Snappy Kraken to update PlannerSearch

February 25, 2026
DA Davidson Reaffirms Buy Rating for Commvault (CVLT)

DA Davidson Reaffirms Buy Rating for Commvault (CVLT)

0
The Interesting Lies of Samuelson: How We Naively Believed the Case of Giffen Goods

The Interesting Lies of Samuelson: How We Naively Believed the Case of Giffen Goods

0
Ball Regular Mouth Pint Mason Jars 12-pack only .44, plus more!

Ball Regular Mouth Pint Mason Jars 12-pack only $13.44, plus more!

0
Gemini Q4 and FY25 Financial Review

Gemini Q4 and FY25 Financial Review

0
Explained: Why gold prices remain subdued despite West Asia tensions

Explained: Why gold prices remain subdued despite West Asia tensions

0
CLARITY Act May Still Delay Despite Stablecoin Yield Deal, Galaxy’s Alex Thorn Warns

CLARITY Act May Still Delay Despite Stablecoin Yield Deal, Galaxy’s Alex Thorn Warns

0
DA Davidson Reaffirms Buy Rating for Commvault (CVLT)

DA Davidson Reaffirms Buy Rating for Commvault (CVLT)

March 21, 2026
The Interesting Lies of Samuelson: How We Naively Believed the Case of Giffen Goods

The Interesting Lies of Samuelson: How We Naively Believed the Case of Giffen Goods

March 21, 2026
Research suggests adults who find it easier to bond with animals than with people aren’t antisocial — they’re drawn to a form of connection where the terms are visible, the loyalty isn’t conditional, and the relationship doesn’t require them to monitor a constantly shifting set of expectations that human attachment taught them to treat as a second job

Research suggests adults who find it easier to bond with animals than with people aren’t antisocial — they’re drawn to a form of connection where the terms are visible, the loyalty isn’t conditional, and the relationship doesn’t require them to monitor a constantly shifting set of expectations that human attachment taught them to treat as a second job

March 21, 2026
Iran launches missiles at U.K.-U.S. base 2,500 away in the Indian Ocean

Iran launches missiles at U.K.-U.S. base 2,500 away in the Indian Ocean

March 21, 2026
CLARITY Act May Still Delay Despite Stablecoin Yield Deal, Galaxy’s Alex Thorn Warns

CLARITY Act May Still Delay Despite Stablecoin Yield Deal, Galaxy’s Alex Thorn Warns

March 21, 2026
Ball Regular Mouth Pint Mason Jars 12-pack only .44, plus more!

Ball Regular Mouth Pint Mason Jars 12-pack only $13.44, plus more!

March 21, 2026
FeeOnlyNews.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • DA Davidson Reaffirms Buy Rating for Commvault (CVLT)
  • The Interesting Lies of Samuelson: How We Naively Believed the Case of Giffen Goods
  • Research suggests adults who find it easier to bond with animals than with people aren’t antisocial — they’re drawn to a form of connection where the terms are visible, the loyalty isn’t conditional, and the relationship doesn’t require them to monitor a constantly shifting set of expectations that human attachment taught them to treat as a second job
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclaimers
  • About Us
  • Contact Us

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.