Salesforce.com IncData breach exposes customer data via third-party integration, intensifying scrutiny on Salesforce's third-party risk management and potential regulatory/AppExchange policy implications.

Salesforce has disabled the Klue Battlecards integration across its platform after a data breach exposed customer data. The company says the root vulnerability was in Klue's legacy integration, not in Salesforce's core systems, but attackers used stolen OAuth tokens to pull records through the Salesforce API. The incident affected multiple enterprise customers, including security-focused clients, and has intensified scrutiny on third-party integrations within the Salesforce ecosystem. The breach comes as Salesforce's stock trades at $150.19, down 40.8% year to date, and investors are reassessing risk alongside financial performance. The focus now is on how Salesforce manages third-party risk, incident response, and communication, with potential implications for AppExchange policies and API security controls.
Salesforce.com IncData breach exposes customer data via third-party integration, intensifying scrutiny on Salesforce's third-party risk management and potential regulatory/AppExchange policy implications.
Klue's legacy integration had a root vulnerability that led to a data breach, and Salesforce disabled the integration, damaging Klue's reputation and product trust.