Security · 2h ago
Salesforce Data Breach Widens as Icarus Leaks Stolen Records
Attackers breached Klue, a Salesforce app vendor, and used its OAuth tokens to access customer data. The Icarus group has now leaked additional stolen Salesforce records, expanding the scope of the breach. Affected companies face exposure of sensitive customer information stored in Salesforce instances.
Meridian48 take
The incident underscores the risk of third-party OAuth integrations, where a single vendor compromise can cascade into widespread data loss.
salesforce-breachoauth-token-theft