Cato Networks Statement on Salesforce-Salesloft Drift Incident
ID: 4d4f367e-a53d-571e-a3c1-d1ee30a94973
STIX ID: report--4d4f367e-a53d-571e-a3c1-d1ee30a94973
Feed Name: Cato Networks
Cato Networks notified customers of a security incident stemming from misuse of OAuth tokens tied to the Salesloft Drift integration with Salesforce, with unauthorized access occurring between August 8–18, 2025 and impacting hundreds of Salesforce customers; exposed data included business contact details, company attributes, and basic case information. Cato states its SASE platform and internal systems were not affected, lists containment actions (disconnecting Drift, disabling APIs, investigation, dark web monitoring), and advises customers to be vigilant for targeted outreach.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
