Skip to main content

Tag: oauth breach

2 articles

Brightly-lit office with CRM workstation, laptop on desk, and city view through window, hinting at a breached business…

Klue OAuth Breach Enables Icarus Extortion Attacks on Salesforce Data

A recent OAuth breach at market intelligence platform Klue has enabled a new extortion group called Icarus to steal sensitive Salesforce CRM data from multiple organizations, sparking a wave of ransom demands. Salesforce has swiftly responded by disabling the connection between Klue's Battlecards app and its platform to protect customers.

Analyst 207
Laptop on a desk with a login screen, behind it a blurred enterprise software dashboard on a large screen.

OAuth Breach Risks Expose AI-Driven Enterprise Vulnerability

A single misstep with a trial AI tool led to a major breach: a Vercel employee's casual OAuth grant to Context.ai created a lasting vulnerability that attackers exploited when Context.ai was compromised. This incident highlights the alarming ease with which AI-driven tools can become enterprise security weak spots.

Analyst 207