Skip to main content
See every side of every news story
Published loading...Updated

Salesforce Says Customer Data Possibly Exposed Following Incident

Salesforce revoked tokens and removed Gainsight apps after detecting unauthorized access linked to third-party connections, with past breaches affecting up to 1.5 billion records, researchers say.

  • On Thursday, Salesforce revoked all active access and refresh tokens for Gainsight-published apps and removed them from the AppExchange, with spokesperson Allen Tsai saying `There is no indication that this issue resulted from any vulnerability in the Salesforce platform`.
  • A prior Salesloft-linked breach exposed OAuth tokens, and Gainsight confirmed it was breached via stolen OAuth tokens tied to Salesloft's Drift, exposing contact and support data.
  • Google Threat Intelligence Group observed threat actors tied to ShinyHunters compromising OAuth tokens, while Salesforce notified impacted customers and referred them to Salesforce Help, Larsen said Thursday.
  • ShinyHunters claimed access to another 285 Salesforce instances, while prior Salesloft attacks affected around 760 companies and 1.5 billion records; last month, hackers launched an extortion website threatening to release a billion records.
  • Security guidance urged firms to audit SaaS environments and investigate and revoke tokens for unused or suspicious Gainsight-published applications, recommending to rotate credentials on anomalies.
Insights by Ground AI

11 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in on Thursday, November 20, 2025.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal