Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Emergency patches are now available for FreePBX server targeting zero-day defects

UK offshore winds face bottlenecks threatening targets for 2030

Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations
Identity

Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations

userBy userAugust 29, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 29, 2025Ravi LakshmananData Breach / Salesforce

Google has revealed that the recent wave of attacks targeting Salesforce instances via SalesLoft Drift is much broader than previously thought, and that will affect all integrations.

Google Threat Intelligence Group (GTIG) and Mandiant state in their updated advisory.

The tech giant accessed emails from a small number of Google Workpace email accounts after the attackers used stolen OAuth tokens to compromise the “drift mail” integration OAuth tokens on August 9, 2025. It is worth noting that this is not a compromise for Google Workspace or the alphabet itself.

“The only accounts that were potentially accessed were those that were specifically configured to integrate with SalesLoft. Actors would not have access to other accounts in the customer’s workspace domain,” Google added.

Identity Security Risk Assessment

Following the discovery, Google notified affected users, canceled certain OAuth tokens granted to the drift email application, and disabled the integration of Google Workspace and SalesLoft Drift during an ongoing investigation of the incident.

The company also uses SalesLoft Drift to check organizations for integrations of all third-party connected to their drift instances, revoke their application’s credentials, spin them, and investigate any access signs that do not investigate all connected systems.

The increased attack radius occurs shortly after Google described as a widespread, opportunistic data theft campaign that allowed a new activity cluster called threat activator UNC6395, allowing Salesloft drift-related OAUTH tokens to be leveraged on target Salesforce instances from August 8th to 18th.

Since then, SalesLoft has revealed that Salesforce has temporarily disabled drift integrations between Salesforce, Slack and Pardot, but Salesforce has stated that it “chosen to temporarily disable all SalesLoft integrations with Salesforce.”

“Based on previous investigations, there is no evidence of malicious activity detected in SalesLoft integration related to drift cases,” he said. “And at this point there is no indication that SalesLoft integration will be compromised or at risk.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleInvicta Water: Addresses PFAS Environmental Pollution
Next Article UK offshore winds face bottlenecks threatening targets for 2030
user
  • Website

Related Posts

Emergency patches are now available for FreePBX server targeting zero-day defects

August 29, 2025

TamperedChef malware disguised as a fake PDF editor steals credentials and cookies

August 29, 2025

Researchers find code flaws and code flaws that allow attackers to reissue deleted extensions with the same name

August 28, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Emergency patches are now available for FreePBX server targeting zero-day defects

UK offshore winds face bottlenecks threatening targets for 2030

Google warns that SalesLoft Oauth breaches will extend beyond Salesforce and affect all integrations

Invicta Water: Addresses PFAS Environmental Pollution

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Unlocking Tomorrow’s Health: Medical Device Integration

Web 3.0’s Promise: What Sir Tim Berners-Lee Envisions for the Future of the Internet

TwinH’s Paves Way at Break The Gap 2025

Smarter Healthcare Starts Now: The Power of Integrated Medical Devices

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.