
Klue Breach Exposes OAuth Weakness Across Seven Security Vendors
Klue's market intelligence platform was breached via the Battlecards app, which connects to customer Salesforce instances through OAuth—a standard authorization protocol. Attackers accessed CRM and competitive data at HackerOne, Huntress, Jamf, OneTrust, Recorded Future, Snyk, and Tanium. The Icarus group claimed responsibility. The incident underscores how third-party SaaS integrations can become supply-chain vulnerabilities when OAuth permissions and access controls lack rigor.
Published