Topic: affected companies

  • Qualys, Tenable Hit in Salesloft Data Breach

    Qualys, Tenable Hit in Salesloft Data Breach

    Tenable and Qualys experienced unauthorized access to their Salesforce data due to stolen OAuth tokens from the Salesloft Drift application, highlighting risks from third-party integrations. Both firms confirmed their core products and services were unaffected, and they responded by disabling the...

    Read More »
  • Salesforce Gainsight Compromise: Key Findings & Customer Action Steps

    Salesforce Gainsight Compromise: Key Findings & Customer Action Steps

    Salesforce detected unauthorized API calls from non-whitelisted IPs via the Gainsight Connected App, prompting immediate security actions to protect customer data. Gainsight has been temporarily removed from the Hubspot Marketplace, with only three organizations confirmed impacted and no verified...

    Read More »
  • Farmers Insurance Data Breach Exposes 1.1M After Salesforce Hack

    Farmers Insurance Data Breach Exposes 1.1M After Salesforce Hack

    A data breach at Farmers Insurance exposed the personal information of over 1.1 million customers due to a third-party vendor incident in May 2025. The breach involved unauthorized access to sensitive data, including names, addresses, driver's license numbers, and partial Social Security details....

    Read More »
  • Cox Enterprises Hit by Oracle EBS Data Breach

    Cox Enterprises Hit by Oracle EBS Data Breach

    Cox Enterprises suffered a data breach after hackers exploited a zero-day vulnerability in Oracle's E-Business Suite, compromising personal information of thousands and delaying detection until weeks after the attack. The Cl0p ransomware group claimed responsibility, known for weaponizing undisco...

    Read More »
  • Zscaler Breach: Customer Data Exposed via Third-Party Hack

    Zscaler Breach: Customer Data Exposed via Third-Party Hack

    A security breach at Zscaler exposed customer data via a compromised third-party AI chat agent, Salesloft Drift, which allowed attackers to access sensitive records in the company's Salesforce environment. The compromised information includes names, email addresses, job titles, phone numbers, reg...

    Read More »
  • DoorDash Data Breach: Customer Information Exposed

    DoorDash Data Breach: Customer Information Exposed

    DoorDash experienced a data breach in October 2025, compromising customer names, phone numbers, email addresses, and delivery locations, but sensitive data like financial details and Social Security numbers were not accessed. The breach resulted from a social engineering attack on an employee, pr...

    Read More »