Daily Dark Web
  • Home
  • Data Breaches
  • Inside the Adversary
    • Dark Web Informants
  • DDW Top Lists
  • Ransomware News
  • DarkWeb News
    • Vulnerability
    • Cyber Attacks
  • Unauthorized Accesses
  • About Us
No Result
View All Result
  • Home
  • Data Breaches
  • Inside the Adversary
    • Dark Web Informants
  • DDW Top Lists
  • Ransomware News
  • DarkWeb News
    • Vulnerability
    • Cyber Attacks
  • Unauthorized Accesses
  • About Us
No Result
View All Result
Daily Dark Web
No Result
View All Result
Home Data Breaches

Cloudflare and Palo Alto Networks Named as Additional Victims in Salesloft Supply-Chain Attack

September 3, 2025
Reading Time: 1 min read
Cloudflare and Palo Alto Networks Named as Additional Victims in Salesloft Supply-Chain Attack

The fallout from the Salesloft supply-chain attack continues to expand, with cybersecurity giants Cloudflare and Palo Alto Networks now confirming they were also victims of the widespread data breach. The attack, which originated from the compromise of Salesloft’s Drift platform, has allegedly led to the unauthorized access of sensitive customer information from the Salesforce environments of these major tech companies. This development follows the recent disclosure of a similar breach at Zscaler, indicating a broad and opportunistic campaign by the threat actors.

The two newly disclosed victims are major players in the cybersecurity industry, providing critical services to a vast number of global organizations. The impact of the breach appears to vary between the two companies, with both stating that their core products and services were not affected by the incident.

  • Cloudflare 🇺🇸: A San Francisco-based company that is a global leader in web performance and security services, providing content delivery network services, DDoS mitigation, and internet security.
  • Palo Alto Networks 🇺🇸: A Santa Clara-based multinational cybersecurity company that is a leading provider of advanced firewalls and cloud-based security solutions.

The threat actors, identified as UNC6395, allegedly exfiltrated data by using compromised OAuth tokens from the Salesloft Drift integration to access the companies’ Salesforce instances. In the case of Cloudflare, the exposed information reportedly includes customer contact details and the content of support cases, which could potentially contain sensitive information like API tokens, keys, or passwords shared by customers. Palo Alto Networks has stated that the breach primarily exposed business contact information and details from some support cases. Both companies have confirmed they have taken steps to mitigate the impact, including revoking compromised credentials, and are in the process of notifying affected customers.

Tags: Cloudflarecustomer-dataCyberSecuritydata-breachDriftPalo Alto NetworksSalesforceSalesloftsupply-chain attackUNC6395USA
ShareTweet

Related Posts

Uganda Ministry of Agriculture MAAIF Suffers Data Breach
Data Breaches

Uganda Ministry of Agriculture MAAIF Suffers Data Breach

April 27, 2026
Ellipal Cryptocurrency Wallet Suffers Alleged Data Breach
Data Breaches

Ellipal Cryptocurrency Wallet Suffers Alleged Data Breach

April 27, 2026
BlackSexFinder Adult Platform Suffers Massive Data Breach
Data Breaches

BlackSexFinder Adult Platform Suffers Massive Data Breach

April 27, 2026
Jeff Honeycutt Insurance Agency Data Breach Exposes Client Info
Data Breaches

Jeff Honeycutt Insurance Agency Data Breach Exposes Client Info

April 27, 2026
FFWPU and Tongil Group Face Extensive Data Breach
Data Breaches

FFWPU and Tongil Group Face Extensive Data Breach

April 27, 2026
Terra West Management Services Suffers Major Data Breach
Data Breaches

Terra West Management Services Suffers Major Data Breach

April 24, 2026
Next Post
Prep Hoops Allegedly Breached, Data of Over 430,000 Users Leaked Online

Prep Hoops Allegedly Breached, Data of Over 430,000 Users Leaked Online

Anuvu (Global Eagle) Major Satellite Connectivity Provider Allegedly Breached

Anuvu (Global Eagle) Major Satellite Connectivity Provider Allegedly Breached

Recommended Stories

Bell Lifestyle Products Hit by Akira Ransomware

Bell Lifestyle Products Hit by Akira Ransomware

December 11, 2025
Krece Fintech Data Breach Exposes Millions of User Records

Krece Fintech Data Breach Exposes Millions of User Records

March 5, 2026
Defensoría del Pueblo de Colombia Hit by Data Breach

Defensoría del Pueblo de Colombia Hit by Data Breach

November 10, 2025

Popular Stories

  • SudamericaData Breach Exposes Over 1TB of Argentine Records

    SudamericaData Breach Exposes Over 1TB of Argentine Records

    0 shares
    Share 0 Tweet 0
  • Threat Actor Claims Sale of Dell Database Containing 49 Million Customer Records

    0 shares
    Share 0 Tweet 0
  • SUUMO, CHINTAI, At Home, HOME’S Suffer Data Breach

    0 shares
    Share 0 Tweet 0
  • Financial Tech Giant SilverLake Axis Allegedly Breached – 423GB of Data for Sale

    0 shares
    Share 0 Tweet 0
  • Telekom Serbia Investigates Leak of 160,000 Customer Records

    0 shares
    Share 0 Tweet 0
Daily Dark Web

Disclaimer: Daily Dark Web (DDW) is an independent media platform providing information, analysis, and reporting on cybersecurity, cyber incidents, and related digital developments. All content published on this website is for informational and journalistic purposes only. DDW does not support, endorse, or promote any illegal activities, threat actors, or organizations referenced in its content. Any statements, claims, or opinions expressed by third parties, including interview subjects, are their own and do not reflect the views of DDW. Such content may include unverified information and should be interpreted critically. DDW does not participate in, facilitate, or coordinate any activities discussed or referenced on this platform. Under no circumstances should any content be interpreted as encouragement, instruction, or endorsement of unlawful actions. All interactions and publications are conducted in the public interest to enhance awareness and understanding of the evolving cyber landscape.

No Result
View All Result
  • About Us
  • Home
  • Newsletter
  • Privacy Policy

Disclaimer: Daily Dark Web (DDW) is an independent media platform providing information, analysis, and reporting on cybersecurity, cyber incidents, and related digital developments. All content published on this website is for informational and journalistic purposes only. DDW does not support, endorse, or promote any illegal activities, threat actors, or organizations referenced in its content. Any statements, claims, or opinions expressed by third parties, including interview subjects, are their own and do not reflect the views of DDW. Such content may include unverified information and should be interpreted critically. DDW does not participate in, facilitate, or coordinate any activities discussed or referenced on this platform. Under no circumstances should any content be interpreted as encouragement, instruction, or endorsement of unlawful actions. All interactions and publications are conducted in the public interest to enhance awareness and understanding of the evolving cyber landscape.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?