Salesforce says customer data may be exposed in Gainsight incident – “unusual activity” being probed



  • Gainsight apps enabled unauthorized Salesforce data access, prompting token revocation and AppExchange removal
  • Incident linked to August 2025 Salesloft breach, where OAuth tokens exposed 1.5 billion records
  • ShinyHunters used stolen secrets to steal Gainsight customer contact and licensing data

The Salesloft Drift incident seems to have trickled downstream into Gainsight, resulting in hundreds more organizations potentially losing their sensitive data to hackers.

Salesforce has confirmed it saw “unusual activity” involving Gainsight-published applications connected to Salesforce.


https://cdn.mos.cms.futurecdn.net/pVCXKrhThqmUjYVSZBjV5Z-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img