Blogs

7 Technology Trends That Will Dominate In 2026
September 4, 2025
7 Server Trends You Can Not Afford To Ignore In 2026
September 8, 2025Salesforce Drift Data Breach: Google, Cloudflare, Palo Alto Networks, ZScaler and Many More Impacted
Salesforce Drift Data Breach impacted Google, Palo Alto Networks, Zscaler and Cloudflare. The campaign, attributed to the threat group UNC6395, occurred between August 8 and August 18, 2025 and involved stolen authentication tokens for Salesforce Drift, a sales workflow automation tool owned by Salesloft.
These tokens allowed unauthorized access to Salesforce customer relationship management instances, leading to the theft of sensitive data, primarily business contact information and support case details. Zscaler disclosed on August 30, 2025, that attackers gained access to its Salesloft Drift credentials, exposing “commonly available business contact details” such as names, email addresses, phone numbers and location data. The breach was confined to Zscaler’s Salesforce customer relationship management environment and did not affect its products, services or other systems.
Salesforce Drift Data Breach: Palo Alto Networks: Cloudflare, Google Impacted
Palo Alto Networks confirmed on September 2, 2025 that it was among the victims of this supply chain attack, which impacted hundreds of Salesloft Drift customers. The compromised data included business contact information, internal sales account details and basic customer case data.
Upon discovering the breach, Palo Alto Networks disconnected Drift from its Salesforce environment to mitigate further risk. Like Zscaler, it emphasized that its products and other systems remained unaffected. Cloudflare also confirmed on September 2, 2025, that it was impacted, noting that the stolen data primarily consisted of customer contact information and basic support case data.
However, some customer support interactions may have included sensitive details such as access tokens, logs or passwords. Cloudflare urged its customers to rotate any credentials shared through its support system, as these should be considered compromised. The campaign was first reported by Google’s Threat Intelligence Group on August 26, 2025.
Google itself was a victim, with attackers using stolen tokens to access email from a small number of Google Workspace accounts on August 9, 2025. Google advised all Salesloft Drift customers to treat any authentication tokens connected to the platform as potentially compromised. It recommended reviewing third-party integrations, revoking and rotating credentials and investigating connected systems for unauthorized access.
This attack follows an unrelated social engineering campaign earlier in 2025 that targeted Salesforce customers through voice phishing. That campaign affected companies like Google, Cisco, Workday, Adidas, Allianz Life, Qantas and LVMH subsidiaries including Louis Vuitton, Dior and Tiffany and Co. Unlike the current attack, the earlier campaign directly targeted Salesforce instances rather than exploiting a third-party application.
The Salesloft Drift data breach highlight the risks of third-party integrations in cloud-based customer relationship management systems. Organizations using Drift are urged to take immediate action to secure their systems by revoking compromised credentials and monitoring for suspicious activity. Salesforce Drift Data Breach underscores the importance of robust cybersecurity measures including regular audits of third-party applications and prompt credential rotation, to protect sensitive data in interconnected digital ecosystems.
Muhammad Osama
Featured Post
Google to Acquire Intersect Power For $4.75 Billion
Google to acquire Intersect Power in the first half of 2026, accelerates Google’s efforts to meet soaring demand for computing power driven by generative AI, Google Cloud, […]
Microsoft Acquires Osmos to Supercharge AI-Driven Data Engineering in Fabric
Microsoft acquires Osmos to supercharge AI-driven data engineering in Fabric. This makes it a strategic move to accelerate and simplify data workflows within its Microsoft Fabric […]
Google Cloud and Palo Alto Networks Ink Landmark $10 B Strategic AI and Security Deal
Google Cloud and Palo Alto Networks has entered a major multi-year partnership that is set to reshape how enterprises secure cloud and artificial intelligence workloads. According […]



