Salesloft breached to steal OAuth tokens for Salesforce data-theft attacks




  • Salesloft was breached when OAuth tokens from SalesDrift were stolen
  • Google tracked the threat actors as UNC6395
  • ShinyHunters claimed responsibility for the attack

Revenue workflow platform Salesloft suffered a cyberattack which saw threat actors break in through a third-party and steal sensitive information.

The company is using Drift, a conversational marketing and sales platform that uses live chat, chatbots, and AI, to engage visitors in real time, alongside its own SalesDrift, a third-party platform which links Drift’s AI chat functionality to Salesforce, syncing conversations, leads, and cases, into the CRM via the Salesloft ecosystem.

https://cdn.mos.cms.futurecdn.net/TWkP7ZurZMY6uepDxsK6Ha.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img