Blogs

7 Technology Trends That Will Dominate In 2026
September 4, 2025
7 Server Trends You Can Not Afford To Ignore In 2026
September 8, 2025Salesforce Drift Data Breach: Google, Cloudflare, Palo Alto Networks, ZScaler and Many More Impacted
Salesforce Drift Data Breach impacted Google, Palo Alto Networks, Zscaler and Cloudflare. The campaign, attributed to the threat group UNC6395, occurred between August 8 and August 18, 2025 and involved stolen authentication tokens for Salesforce Drift, a sales workflow automation tool owned by Salesloft.
These tokens allowed unauthorized access to Salesforce customer relationship management instances, leading to the theft of sensitive data, primarily business contact information and support case details. Zscaler disclosed on August 30, 2025, that attackers gained access to its Salesloft Drift credentials, exposing “commonly available business contact details” such as names, email addresses, phone numbers and location data. The breach was confined to Zscaler’s Salesforce customer relationship management environment and did not affect its products, services or other systems.
Salesforce Drift Data Breach: Palo Alto Networks: Cloudflare, Google Impacted
Palo Alto Networks confirmed on September 2, 2025 that it was among the victims of this supply chain attack, which impacted hundreds of Salesloft Drift customers. The compromised data included business contact information, internal sales account details and basic customer case data.
Upon discovering the breach, Palo Alto Networks disconnected Drift from its Salesforce environment to mitigate further risk. Like Zscaler, it emphasized that its products and other systems remained unaffected. Cloudflare also confirmed on September 2, 2025, that it was impacted, noting that the stolen data primarily consisted of customer contact information and basic support case data.
However, some customer support interactions may have included sensitive details such as access tokens, logs or passwords. Cloudflare urged its customers to rotate any credentials shared through its support system, as these should be considered compromised. The campaign was first reported by Google’s Threat Intelligence Group on August 26, 2025.
Google itself was a victim, with attackers using stolen tokens to access email from a small number of Google Workspace accounts on August 9, 2025. Google advised all Salesloft Drift customers to treat any authentication tokens connected to the platform as potentially compromised. It recommended reviewing third-party integrations, revoking and rotating credentials and investigating connected systems for unauthorized access.
This attack follows an unrelated social engineering campaign earlier in 2025 that targeted Salesforce customers through voice phishing. That campaign affected companies like Google, Cisco, Workday, Adidas, Allianz Life, Qantas and LVMH subsidiaries including Louis Vuitton, Dior and Tiffany and Co. Unlike the current attack, the earlier campaign directly targeted Salesforce instances rather than exploiting a third-party application.
The Salesloft Drift data breach highlight the risks of third-party integrations in cloud-based customer relationship management systems. Organizations using Drift are urged to take immediate action to secure their systems by revoking compromised credentials and monitoring for suspicious activity. Salesforce Drift Data Breach underscores the importance of robust cybersecurity measures including regular audits of third-party applications and prompt credential rotation, to protect sensitive data in interconnected digital ecosystems.
Muhammad Osama
Featured Post
AWS re:Invent 2025: 10 Biggest Announcements
The AWS re:Invent 2025 conference was held on December 1–5, 2025 in Las Vegas, delivered a flurry of high-profile announcements, highlighting a major push toward “agentic […]
Supercomputing 2025 Elevates the AI-HPC Convergence with Performance-Driven Infrastructure
Supercomputing 2025, held in St. Louis, underscored how the high-performance computing (HPC) market is increasingly being shaped by artificial intelligence (AI) demands. From ultra-dense GPU servers […]
Microsoft Ignite 2025: Major Breakthroughs in AI, Agents and Data
At Microsoft Ignite 2025, the company made a bold push into “agentic AI” — unveiling a series of updates across Copilot, Windows, Azure and data platforms […]



