Healthcare Services Group, Intel, and Salesloft Breaches Expose 624,000 People and Salesforce Data via OAuth Token Theft
Several recent cybersecurity incidents have affected major companies and exposed sensitive data. Healthcare Services Group experienced a data breach impacting 624,000 individuals. Intel disclosed internal security flaws that exposed records of approximately 270,000 employees. Salesloft suffered a cyberattack targeting its Drift AI chat application, which hackers exploited to steal OAuth tokens between August 8 and August 18. This breach enabled unauthorized access to Salesforce customer data, including AWS access keys, Snowflake tokens, and credentials. The attack was not limited to marketing chat data but extended to critical cloud service credentials. Google has acknowledged that missing Salesforce data may be linked to the Salesloft breach. These incidents highlight ongoing vulnerabilities in corporate cybersecurity frameworks.
Sources
- Nicolas Krassas
Healthcare Services Group data breach impacts 624,000 people https://t.co/r4wPjA0NWK
- The Register
Salesforce data missing? It might be due to Salesloft breach, Google says https://t.co/6jeyjdngFw
- The Hacker News
Hackers hijacked Salesloft’s Drift AI chat app to steal OAuth tokens and break into Salesforce customer data. They weren’t after marketing chats — they pulled AWS access keys, Snowflake tokens, and credentials. Details here → https://t.co/F7wU89buBW