
Klue Breach Hits Seven Cybersecurity Vendors via Compromised Salesforce OAuth
Klue, a market intelligence platform, suffered a production breach affecting HackerOne, Huntress, Jamf, OneTrust, Recorded Future, Snyk, and Tanium. Attackers exploited the Battlecards app—which integrates with customer Salesforce via OAuth—to exfiltrate CRM and competitive data. The Icarus group claimed responsibility. The breach exemplifies how third-party SaaS integrations create downstream supply-chain exposure at enterprises where OAuth scoping and access governance remain underdeveloped relative to core security tooling.
Published