BeyondTrust
Disclosed Sep 4, 20251 year agoUnverified
BeyondTrust Salesforce data stolen via Salesloft Drift OAuth tokens
BeyondTrust said Salesforce notified it on August 22, 2025 of suspicious activity in which attackers used Drift-linked credentials to access its Salesforce instance.
What is known
| People affected | Not stated in the sources we have |
|---|---|
| Disclosed | Sep 4, 2025 |
| Discovered | Aug 22, 2025 |
| Attack | Supply chain |
| Data exposed | Names, Emails, Other |
| Sector | Tech · US |
| Status | Unverified: not yet confirmed by an official notice, a filing or the organization |
| Part of | Salesloft drift (2025) |
Sources
| Source | |
|---|---|
| SaaS giant Workiva discloses data breach after Salesforce attackbleepingcomputer.com · News | News |
| Salesloft Drift Breach: Track the Salesforce Incident (Nudge Security)driftbreach.com · News | News |
Notices filed
| Where | Filed | People |
|---|---|---|
| Researchtotal | Sep 4, 2025 |
Same campaign
History of this record
- 2026-09-25 · added · seed source
First seen 2026-09-25 (Research). Record counts are as reported. Not legal advice.