SECURITY ALERT:

OAuth abuse: lessons from the Salesloft-drift breach

  • Login
  • Contact Us
CheckRed Security logo
  • Home
  • Platform
        • SSPMProtect your SaaS applications from security risks
        • DNSPMFull visibility & control over all DNS providers
        • CSPMDetect security misconfigurations in your cloud
        • CIEMSafeguard your cloud identities and entitlements
        • Continuous ComplianceAchieve regulatory compliance with custom frameworks
        • IntegrationsImprove collaboration with our integration capabilities
        • CWPPProtect all layers of your cloud workloads
        • CNAPPSecure 100% of your cloud with a single platform
        • KSPMSecure all your Kubernetes clusters
        • ADPMDetect Active Directory vulnerabilities
        • Identity PostureGovern all identities – human & non-human
        • ITDRReal-time SaaS identity threat detection & response
  • Solutions
        • SaaS Apps

        • Microsoft 365
        • Salesforce
        • ServiceNow
        • Okta
        • Other Supported Apps
        • Cloud Apps

        • Amazon Web Services
        • Microsoft Azure
        • Google Cloud
        • Akamai Linode
        • Multi-cloud
  • Use Cases
        • By Capability

        • 360° Asset Visibility
        • Misconfiguration Assessment
        • Identity and Access Management (IAM)
        • 3rd Party App Management
        • Alert Prioritization
        • Guided Remediation
        • Continuous Compliance Assessment
        • By Industry

        • Finance
        • Healthcare
        • MSSP
        • Technology
        • Other
        • By Role

        • CISO
        • CIO
        • CTO
        • Analysts
  • Resources
    • Blog
    • White Papers
    • Use Cases
    • Case Studies
    • Datasheets
    • In The News
  • Company
    • About Us
    • Testimonials
    • Careers
    • Contact Us
    • Partner Login
  • Partners
  • Get a Demo
  • Login
  • Contact Us

SSPM

Back To All Resources
When OAuth Tokens Go Rogue: Lessons from the Salesloft–Drift Breach

When OAuth Tokens Go Rogue: Lessons from the Salesloft–Drift Breach

Sep 3, 2025

In August 2025, attackers exploited the Salesloft-Drift OAuth integration to compromise over 700 organizations' Salesforce...

read more
Columbia University Breach Exposes 870,000 Records: The Case for Unified Cloud and SaaS Security

Columbia University Breach Exposes 870,000 Records: The Case for Unified Cloud and SaaS Security

Aug 28, 2025

When news broke that Columbia University suffered a cyberattack affecting nearly 870,000 individuals, the scale immediately...

read more
6 Cloud and SaaS Security Missteps That Can Leave Grocery Shelves Empty

6 Cloud and SaaS Security Missteps That Can Leave Grocery Shelves Empty

Jul 22, 2025

In recent months, thousands of shoppers across Minnesota encountered an all-too-familiar pandemic-era sight: empty grocery...

read more
From Aware to Actionable: Closing the Cloud Security Resilience Gap

From Aware to Actionable: Closing the Cloud Security Resilience Gap

Jun 23, 2025

At a period when cloud adoption is at an all-time high and the attack surface continues to expand, most organizations still...

read more
The NASCAR Ransomware Breach Shows Why Cloud and SaaS Security Can’t Be an Afterthought

The NASCAR Ransomware Breach Shows Why Cloud and SaaS Security Can’t Be an Afterthought

May 19, 2025

When news broke that the Medusa ransomware gang had claimed a breach of NASCAR, it might have seemed like yet another...

read more
JP Morgan Sounds the Alarm on SaaS Security: Here’s What You Need to Know

JP Morgan Sounds the Alarm on SaaS Security: Here’s What You Need to Know

May 12, 2025

In an age where digital transformation drives business success, few things are as universally relied upon as SaaS...

read more
Is That Vendor Account Still Secure? A Checklist for SaaS & Cloud Access

Is That Vendor Account Still Secure? A Checklist for SaaS & Cloud Access

Apr 28, 2025

In March 2025, a forgotten credential led to a very public incident. A threat actor known as “GHNA” published 270,000...

read more
7 Critical SaaS Security Lessons from the CHC Data Breach

7 Critical SaaS Security Lessons from the CHC Data Breach

Mar 28, 2025

In January 2025, Community Health Center (CHC), a nonprofit healthcare provider, discovered a data breach that compromised...

read more
Security Risks in Microsoft 365: Why Enterprises Are Taking a Closer Look Before Deploying at Scale

Security Risks in Microsoft 365: Why Enterprises Are Taking a Closer Look Before Deploying at Scale

Mar 18, 2025

In a move that’s turning heads across the enterprise IT world, Amazon has paused its $1 billion Microsoft 365 rollout, just...

read more
Page 1 of 812345...Next →Last Page
CheckRed Security logo

Inspect misconfigurations. Meet compliance requirements. Analyze risks.
An all-in-one platform for cloud, SaaS and DNS security!

Follow us on

  • Platforms
    • SSPM
    • DNSPM
    • CSPM
    • CIEM
    • CWPP
    • CNAPP
    • ITDR
    • Continuous Compliance
    • Integrations
  • SaaS Security
    • Microsoft 365
    • Salesforce
    • ServiceNow
    • Okta
    • Other Supported Apps
  • Cloud Security
    • Amazon Web Services (AWS)
    • Microsoft Azure
    • Google Cloud
    • Akamai Linode
    • Multi-cloud
  • Company
    • About Us
    • Careers
    • Contact Us
    • Resources
    • Support
Top Infosec Awards certification logo
Top Infosec Awards
SOC 2 Compliant certification logo
SOC 2 Compliant
 ISO 27001 Certified certification logo
ISO 27001 Certified
 CSA Member
CSA Member
 CSA Member
Star Level 1
© 2025 CheckRed. All Rights Reserved.
  • Privacy Policy