InfoSecurity2025-08-20
SECURITY: Salesloft Drift OAuth Compromise Exposes Customer Environments
Compromised OAuth tokens linked to the Salesloft Drift integration allowed attackers to access customer Salesforce environments.
The incident shows how one trusted SaaS integration can propagate risk across many organizations. Supply Chain teams should inventory OAuth connections, restrict scopes and revoke tokens quickly when a provider is compromised.
More details are available in the FINRA notice.
The Dataleo angle
Third-party integrations require the same access governance as internal users, including least privilege, monitoring and emergency revocation.
