DiscoverYusufOnSecurity.com240 - The Great OAuth Heist: How Salesloft's Breach Exposed Major Cybersecurity Firms
240 - The Great OAuth Heist: How Salesloft's Breach Exposed Major Cybersecurity Firms

240 - The Great OAuth Heist: How Salesloft's Breach Exposed Major Cybersecurity Firms

Update: 2025-09-06
Share

Description

Enjoying the content? Let us know your feedback!

Today we're unpacking one of the most significant supply chain attacks of 2025 - the Salesloft-Drift OAuth breach that sent shockwaves through the enterprise software world.

We'll explore how a compromise at one marketing company led to data theft at some of the biggest names in cybersecurity and technology. We'll break down the technology at the  heart of it all - i.e. those digital keys that let applications talk to each other - and examine how threat actors turned them into free passes for corporate data theft.

https://cloud.google.com/blog/topics/threat-intelligence/data-theft-salesforce-instances-via-salesloft-drift

- https://krebsonsecurity.com: The Ongoing Fallout From- A Breach At AI Chatbot-Maker Salesloft

Be sure to subscribe!
You can also stream from https://yusufonsecurity.com
In there, you will find a list of all previous episodes in there too.

Comments 
In Channel
230 - Security Of iOT

230 - Security Of iOT

2025-06-2837:45

loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

240 - The Great OAuth Heist: How Salesloft's Breach Exposed Major Cybersecurity Firms

240 - The Great OAuth Heist: How Salesloft's Breach Exposed Major Cybersecurity Firms