Salesloft Drift Breach Compromises OAuth Tokens Across Multiple Integrations
CriticalWhat happened
Threat actors exploited a vulnerability in Salesloft's Drift application to steal OAuth tokens, enabling unauthorized access to various third-party services integrated with Drift, including Salesforce, Google Workspace, and AWS.
Who is affected
Organizations utilizing Salesloft's Drift application with integrations to services like Salesforce, Google Workspace, AWS, and other platforms are impacted.
Why it matters
The breach exposes sensitive data across multiple platforms, potentially leading to further compromises, data theft, and operational disruptions.
How it could have been prevented
Regularly auditing third-party integrations for vulnerabilities and implementing stringent access controls could have mitigated the risk.
Relevant professional terms
- OAuth Token
- A credential used to authorize access to resources on behalf of a user without sharing credentials.
- Data Exfiltration
- Unauthorized transfer of data from a computer or network.
Recommended reading: krebsonsecurity.com
