Supply chain
⛓ Supply Chain
Tanium Third-Party Breach (August 2025)
Primary Source ↗Incident Details
Salesloft Drift Data Breach: What We Know and What We’re Doing. Hackers breached Salesloft in a major data theft campaign, stealing OAuth and refresh tokens linked to the Drift AI chat agent. The impact of their unauthorized access to Salesloft Drift was limited to Salesforce and no other Tanium systems. Accelerate decision-making agility, strengthen resilience, and save costs with a single, unified platform for both IT and security—powered by AI and real-time intelligence. Accelerate decision-making agility and save costs with autonomous operations, integrated IT and security, and comprehensive endpoint management. Third-party company: Drift (Salesloft).
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- Drift (Salesloft)
- Supply Chain Attack
- ✅ Confirmed third-party / vendor compromise
Timeline
- 2025-08-01 Breach occurred
- 2025-08-28 Publicly disclosed