Supply chain ⛓ Supply Chain

Lucid Software Inc. Third-Party Breach (August 2025)

📅 2025-08-01 🏢 Drift (Salesloft)
Primary Source ↗

Incident Details

Salesloft Drift application incident response. Read Lucid’s response to a recent security incident that affected the Drift application, which involved CRM data across numerous Salesforce customers. At Lucid, protecting your data and maintaining transparency are core to our business, and as such, we are committed to keeping you informed about developments that may impact your organization. Lucid was made aware of a campaign targeted at the Salesloft Drift application, which impacted a large number of Salesforce customers, including us. This incident was not a breach of Lucid Software’s SaaS (lucid.app). No Lucid production data was accessed or impacted (software code, products, the data secured by those products, or our internal network). Third-party company: Drift (Salesloft).

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Drift (Salesloft)
Supply Chain Attack
✅ Confirmed third-party / vendor compromise

Timeline

  1. 2025-08-01 Breach occurred
  2. 2025-08-28 Publicly disclosed