Skip to content

8x8

Disclosed Jun 23, 20263 months agoConfirmed

SEC filing

8x8 says Klue integration abused to exfiltrate Salesforce customer data

8x8 told the SEC that a threat actor exploited the Klue Labs integration connected to its Salesforce system on June 11 and 12, exfiltrating contract, opportunity and sales notes plus business contact details of current, former and prospective customers.

What is known

People affectedNot stated in the sources we have
DisclosedJun 23, 2026
DiscoveredJun 13, 2026
AttackSupply chain
Data exposedNames, Addresses, Phone numbers, Emails, Internal documents
SectorTech · US
StatusConfirmed
Part ofKlue (2026)

Sources

Source
8x8 Form 8-Ksec.gov · SEC filing

Notices filed

WhereFiledPeople
ResearchtotalJun 23

Same campaign

OrganizationAffected
LastPassLastPass support case data stolen via Klue OAuth tokensJun 233 months agoSupply chainUnknown
KlueKlue legacy credential breach leads to OAuth token theft and Salesforce raidsJun 193 months agoSupply chainUnknown
History of this record
  • 2026-09-25 · added · seed source

First seen 2026-09-25 (Research), confirmed by Research. Record counts are as reported. Not legal advice.

Everything about 8x8

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.