Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Beyond Compliance: The New Era of Smart Medical Device Software Integration

Android droppers now offer SMS steelers and spyware as well as banking Trojans

“Cannival” Solar Storm can paint over 18 US auroras that state this Labor Day

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations
Identity

Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations

userBy userAugust 29, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 29, 2025Ravi LakshmananData Breach / Salesforce

Google has revealed that the recent wave of attacks targeting Salesforce instances via SalesLoft Drift is much broader than previously thought, and that will affect all integrations.

Google Threat Intelligence Group (GTIG) and Mandiant state in their updated advisory.

The tech giant accessed emails from a small number of Google Workpace email accounts after the attackers used stolen OAuth tokens to compromise the “drift mail” integration OAuth tokens on August 9, 2025. It is worth noting that this is not a compromise for Google Workspace or the alphabet itself.

“The only accounts that were potentially accessed were those that were specifically configured to integrate with SalesLoft. Actors would not have access to other accounts in the customer’s workspace domain,” Google added.

Identity Security Risk Assessment

Following the discovery, Google notified affected users, canceled certain OAuth tokens granted to the drift email application, and disabled the integration of Google Workspace and SalesLoft Drift during an ongoing investigation of the incident.

The company also uses SalesLoft Drift to check organizations for integrations of all third-party connected to their drift instances, revoke their application’s credentials, spin them, and investigate any access signs that do not investigate all connected systems.

The increased attack radius occurs shortly after Google described as a widespread, opportunistic data theft campaign that allowed a new activity cluster called threat activator UNC6395, allowing Salesloft drift-related OAUTH tokens to be leveraged on target Salesforce instances from August 8th to 18th.

Since then, SalesLoft has revealed that Salesforce has temporarily disabled drift integrations between Salesforce, Slack and Pardot, but Salesforce has stated that it “chosen to temporarily disable all SalesLoft integrations with Salesforce.”

“Based on previous investigations, there is no evidence of malicious activity detected in SalesLoft integration related to drift cases,” he said. “And at this point there is no indication that SalesLoft integration will be compromised or at risk.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleInvicta Water: Addresses PFAS Environmental Pollution
Next Article UK offshore winds face bottlenecks threatening targets for 2030
user
  • Website

Related Posts

Android droppers now offer SMS steelers and spyware as well as banking Trojans

September 1, 2025

WhatsApp 0-Day, Docker Bug, Salesforce Breach, Fake CAPTCHAs, Spyware App & More

September 1, 2025

Rethinking the security of scattered spiders

September 1, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Beyond Compliance: The New Era of Smart Medical Device Software Integration

Android droppers now offer SMS steelers and spyware as well as banking Trojans

“Cannival” Solar Storm can paint over 18 US auroras that state this Labor Day

Why Runways are focusing on the robot industry for future revenue growth

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Beyond Compliance: The New Era of Smart Medical Device Software Integration

Unlocking Tomorrow’s Health: Medical Device Integration

Web 3.0’s Promise: What Sir Tim Berners-Lee Envisions for the Future of the Internet

TwinH’s Paves Way at Break The Gap 2025

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.