Salesloft’s GitHub Oopsie: When Tokens Drifted and Data Went on Vacation!
Salesloft’s GitHub breach in March led to a dramatic summer sequel: Drift OAuth tokens were compromised, resulting in Salesforce data theft. Hackers, including ShinyHunters and Scattered Spider, made off with credentials like AWS keys and passwords. Salesloft has since taken action, restoring Salesforce integrations and reassuring customers of their fortified defenses.

Hot Take:
Salesloft’s recent drama is like a soap opera of cyber misadventures, featuring a plot twist that started with a GitHub breach and led to a Salesforce data heist. If there were an Oscar for ‘Best Cybersecurity Breach,’ they might just take the trophy home!
Key Points:
- Salesloft’s GitHub account was first breached in March, leading to a domino effect of data thefts.
- OAuth tokens were stolen and used in a widespread Salesforce data breach in August.
- Threat actors, including ShinyHunters and Scattered Spider, were involved.
- Salesloft partnered with Mandiant to address and contain the breach.
- Salesloft and Salesforce integration is now restored, with enhanced security measures.
Already a member? Log in here