Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Warlock ransomware infiltrates SmarterTools through unpatched SmarterMail servers

EU launches €2.5 billion NanoIC semiconductor manufacturing facility

Development of rare earth free magnets for renewable energy and mobility

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations
Identity

Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations

userBy userAugust 29, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 29, 2025Ravi LakshmananData Breach / Salesforce

Google has revealed that the recent wave of attacks targeting Salesforce instances via SalesLoft Drift is much broader than previously thought, and that will affect all integrations.

Google Threat Intelligence Group (GTIG) and Mandiant state in their updated advisory.

The tech giant accessed emails from a small number of Google Workpace email accounts after the attackers used stolen OAuth tokens to compromise the “drift mail” integration OAuth tokens on August 9, 2025. It is worth noting that this is not a compromise for Google Workspace or the alphabet itself.

“The only accounts that were potentially accessed were those that were specifically configured to integrate with SalesLoft. Actors would not have access to other accounts in the customer’s workspace domain,” Google added.

Identity Security Risk Assessment

Following the discovery, Google notified affected users, canceled certain OAuth tokens granted to the drift email application, and disabled the integration of Google Workspace and SalesLoft Drift during an ongoing investigation of the incident.

The company also uses SalesLoft Drift to check organizations for integrations of all third-party connected to their drift instances, revoke their application’s credentials, spin them, and investigate any access signs that do not investigate all connected systems.

The increased attack radius occurs shortly after Google described as a widespread, opportunistic data theft campaign that allowed a new activity cluster called threat activator UNC6395, allowing Salesloft drift-related OAUTH tokens to be leveraged on target Salesforce instances from August 8th to 18th.

Since then, SalesLoft has revealed that Salesforce has temporarily disabled drift integrations between Salesforce, Slack and Pardot, but Salesforce has stated that it “chosen to temporarily disable all SalesLoft integrations with Salesforce.”

“Based on previous investigations, there is no evidence of malicious activity detected in SalesLoft integration related to drift cases,” he said. “And at this point there is no indication that SalesLoft integration will be compromised or at risk.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleInvicta Water: Addresses PFAS Environmental Pollution
Next Article UK offshore winds face bottlenecks threatening targets for 2030
user
  • Website

Related Posts

Warlock ransomware infiltrates SmarterTools through unpatched SmarterMail servers

February 10, 2026

Dutch authorities confirm Ivanti zero-day exploit exposed employee contact data

February 10, 2026

Fortinet patches critical SQLi flaw that allows unauthenticated code execution

February 10, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Warlock ransomware infiltrates SmarterTools through unpatched SmarterMail servers

EU launches €2.5 billion NanoIC semiconductor manufacturing facility

Development of rare earth free magnets for renewable energy and mobility

Dutch authorities confirm Ivanti zero-day exploit exposed employee contact data

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.