Wednesday, January 14, 2026
avgc-xr
No Result
View All Result
  • Home
  • News
  • About
  • Events
  • Spotlight
  • Launches
  • Digital
  • Contact us
  • Home
  • News
  • About
  • Events
  • Spotlight
  • Launches
  • Digital
  • Contact us
No Result
View All Result
avgc-xr
No Result
View All Result
Home All

Zscaler Suffers Salesforce Data Breach via Salesloft Drift OAuth Token Compromise

by Sai Kiran
September 10, 2025
in All
0
Zscaler Suffers Salesforce Data Breach via Salesloft Drift OAuth Token Compromise
0
SHARES
0
VIEWS
FacebookTwitterWhatsappLinkedin

Zscaler, a leading cloud security provider, confirmed a data breach stemming from a compromised Salesloft Drift integration with Salesforce. Attackers exploited stolen OAuth tokens to access customer contact records and limited support-case text data. Crucially, Zscaler’s internal systems and core infrastructure were unaffected. ([turn0news20]; [turn0search9])

The breach is part of a larger supply-chain attack targeting OAuth tokens tied to Salesloft Drift, a popular AI-driven chat and sales workflow tool—impacting over 700 organizations globally, as tracked by threat actor UNC6395 and security firms Google’s Threat Intelligence Group and Mandiant. ([turn0search9]; [turn0search8])

Exposed data includes:

  • Names, business emails, job titles, phone numbers, and regional info
  • Commercial/licenses tied to Zscaler products
  • Plain-text fields from select support cases—excluding attachments and files
    ([turn0news20]; [turn0search2])

Zscaler acted swiftly, revoking Drift access, rotating API/OAuth tokens, launching a forensic investigation with Salesforce, and ramping up third-party risk governance and phishing safeguards. As of now, there is no evidence of data misuse. ([turn0news20]; [turn0search2]; [turn0news21])


Why It Matters for AVGC & Tech Ecosystems

InsightImplication
Trust in Vendor EcosystemsEven industry-leading security firms can be compromised via SaaS integration pathways.
Critical Role of Token ManagementOAuth tokens can bypass MFA, highlighting the importance of secure token governance.
Shared Risk in SaaS Supply ChainsA breach at a third-party SaaS tool can ripple through dependent organizations, regardless of their own defenses.
Urgency of Defense-in-DepthRobust incident response, zero-trust design, and tight SaaS integration policies are vital for business resilience.
Tags: Salesforce OAuth token attackSalesloft Drift breachUNC6395 supply chain breachZscaler data breach
Sai Kiran

Sai Kiran

Next Post
The Whitest Kids U Know: MARS Adult Animated Comedy Heads to Deluxe Blu-Ray in Early 2026

The Whitest Kids U Know: MARS Adult Animated Comedy Heads to Deluxe Blu-Ray in Early 2026

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

GPT-5 and Sora 2.0: The Arrival of "Autonomous Auteurs" in Film and Comics Production

GPT-5 and Sora 2.0: The Arrival of “Autonomous Auteurs” in Film and Comics Production

4 weeks ago
World VFX Day 2025: Framestore and Wētā FX Unveil the "Virtual-Human" Breakthroughs of 'Avatar: Fire and Ash'

World VFX Day 2025: Framestore and Wētā FX Unveil the “Virtual-Human” Breakthroughs of ‘Avatar: Fire and Ash’

4 weeks ago
The Rise of Ne Zha 2: How the $2.2 Billion Global Box Office Phenomenon is Redefining Eastern Animation Pipelines

The Rise of Ne Zha 2: How the $2.2 Billion Global Box Office Phenomenon is Redefining Eastern Animation Pipelines

4 weeks ago

Popular News

  • Global AR VR Market to Surge with a 31.7% CAGR, Projected to Reach $214.82 Billion by 2031

    Global AR VR Market to Surge with a 31.7% CAGR, Projected to Reach $214.82 Billion by 2031

    0 shares
    Share 0 Tweet 0
  • Disney and Reliance Industries Nearing Mega Merger to Form India’s Largest Media Entity

    0 shares
    Share 0 Tweet 0
  • GPT-5 and Sora 2.0: The Arrival of “Autonomous Auteurs” in Film and Comics Production

    0 shares
    Share 0 Tweet 0
  • World VFX Day 2025: Framestore and Wētā FX Unveil the “Virtual-Human” Breakthroughs of ‘Avatar: Fire and Ash’

    0 shares
    Share 0 Tweet 0
  • The Rise of Ne Zha 2: How the $2.2 Billion Global Box Office Phenomenon is Redefining Eastern Animation Pipelines

    0 shares
    Share 0 Tweet 0
  • hyderabad
  • @avgc-xr.com

NEWS

VFX
Trending
Television
Technology
Streaming
people
Organisations
National
Movies
Gaming

TRENDING

GPT-5 and Sora 2.0: The Arrival of “Autonomous Auteurs” in Film and Comics Production

World VFX Day 2025: Framestore and Wētā FX Unveil the “Virtual-Human” Breakthroughs of ‘Avatar: Fire and Ash’

The Rise of Ne Zha 2: How the $2.2 Billion Global Box Office Phenomenon is Redefining Eastern Animation Pipelines

Meta Unveils Tiramisu & Boba 3 Prototypes Aiming for Visual Turing Test at SIGGRAPH 2025

Anthropic Agrees to $1.5 Billion Settlement After Authors Sue Over Pirated Books Used to Train Claude

MOST POPULAR

GPT-5 and Sora 2.0: The Arrival of “Autonomous Auteurs” in Film and Comics Production

World VFX Day 2025: Framestore and Wētā FX Unveil the “Virtual-Human” Breakthroughs of ‘Avatar: Fire and Ash’

The Rise of Ne Zha 2: How the $2.2 Billion Global Box Office Phenomenon is Redefining Eastern Animation Pipelines

Meta Unveils Tiramisu & Boba 3 Prototypes Aiming for Visual Turing Test at SIGGRAPH 2025

Anthropic Agrees to $1.5 Billion Settlement After Authors Sue Over Pirated Books Used to Train Claude

No Result
View All Result
  • Home
  • News
  • About
  • Events
  • Digital
  • Contact us
  • Spotlight
  • Launches
  • Feedzy Demo Page