By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: GitHub Account Compromise Led to Salesloft Drift Breach Affecting 22 Companies
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Computing > GitHub Account Compromise Led to Salesloft Drift Breach Affecting 22 Companies
Computing

GitHub Account Compromise Led to Salesloft Drift Breach Affecting 22 Companies

News Room
Last updated: 2025/09/08 at 1:41 PM
News Room Published 8 September 2025
Share
GitHub Account Compromise Led to Salesloft Drift Breach Affecting 22 Companies
SHARE

Sep 08, 2025Ravie LakshmananSupply Chain Attack / API Security

Salesloft has revealed that the data breach linked to its Drift application started with the compromise of its GitHub account.

Google-owned Mandiant, which began an investigation into the incident, said the threat actor, tracked as UNC6395, accessed the Salesloft GitHub account from March through June 2025. So far, 22 companies have confirmed they were impacted by a supply chain breach.

“With this access, the threat actor was able to download content from multiple repositories, add a guest user, and establish workflows,” Salesloft said in an updated advisory.

The investigation also uncovered reconnaissance activities occurring between March 2025 and June 2025 in the Salesloft and Drift application environments. However, it emphasized there is no evidence of any activity beyond limited reconnaissance.

In the next phase, the attackers accessed Drift’s Amazon Web Services (AWS) environment and obtained OAuth tokens for Drift customers’ technology integrations, with the stolen OAuth tokens used to access data via Drift integrations.

Audit and Beyond

Salesloft said it has isolated the Drift infrastructure, application, and code, and taken the application offline effective September 5, 2025, at 6 a.m. ET. It has also rotated credentials in the Salesloft environment and hardened the environment with improved segmentation controls between Salesloft and Drift applications.

“We are recommending that all third-party applications integrated with Drift via API key, proactively revoke the existing key for these applications,” it added.

As of September 7, 2025 at 5:51 p.m. UTC, Salesforce has restored the integration with the Salesloft platform after temporarily suspending it on August 28. This has been done in response to security measures and remediation steps implemented by Salesloft.

“Salesforce has re-enabled integrations with Salesloft technologies, with the exception of any Drift app,” Salesforce said. “Drift will remain disabled until further notice as part of our continued response to the security incident.”

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Did the full specs for the iPhone 17 lineup just leak? Did the full specs for the iPhone 17 lineup just leak?
Next Article Nova Launcher’s founder and sole developer has left Nova Launcher’s founder and sole developer has left
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Wikipedia Rolls Out Spotify Wrapped-Style End-of-Year Recap
Wikipedia Rolls Out Spotify Wrapped-Style End-of-Year Recap
News
‘Urgent clarity’ sought over racial bias in UK police facial recognition technology
‘Urgent clarity’ sought over racial bias in UK police facial recognition technology
News
Best Samsung monitor deal: Save 42% on the 40-inch Samsung Odyssey G7 curved gaming monitor
Best Samsung monitor deal: Save 42% on the 40-inch Samsung Odyssey G7 curved gaming monitor
News
Market Volatility Draws Attention to GeeFi’s (GEE) Presale With M Raised in Less Than 2 Weeks
Market Volatility Draws Attention to GeeFi’s (GEE) Presale With $1M Raised in Less Than 2 Weeks
Gadget

You Might also Like

Microsoft’s RAMDAX Driver Merged For Linux 6.19 To Carve Out RAM As NVDIMM Devices
Computing

Microsoft’s RAMDAX Driver Merged For Linux 6.19 To Carve Out RAM As NVDIMM Devices

1 Min Read
AMD Starts Enabling Zen 6 “znver6” Compiler Support In GCC
Computing

AMD Starts Enabling Zen 6 “znver6” Compiler Support In GCC

3 Min Read
AI goes from tool to teammate: Amazon Web Services SVP Colleen Aubrey on the dawn of agentic work
Computing

AI goes from tool to teammate: Amazon Web Services SVP Colleen Aubrey on the dawn of agentic work

7 Min Read
BSGAL: Gradient-Based Screening for Long-Tailed Perception Tasks | HackerNoon
Computing

BSGAL: Gradient-Based Screening for Long-Tailed Perception Tasks | HackerNoon

16 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?