FeedThreat IntelligenceKlue OAuth breach victim list grows as Icarus hackers claim ...
Threat IntelligenceBleeping Computer
8.0CRITICAL

Klue OAuth breach victim list grows as Icarus hackers claim attack

📅 19 June 2026 at 22:31 UTC📰 Bleeping ComputerView original source ↗
Klue OAuth breach victim list grows as Icarus hackers claim attack

Market intelligence platform Klue has publicly confirmed a recent security incident that allowed threat actors to steal OAuth tokens used to connect to customers' Salesforce environments, as the new "Icarus" extortion group publicly claims the attack. [...]

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

Klue, a market intelligence platform, suffered an OAuth breach allowing Icarus hackers to steal Salesforce CRM data from multiple organizations, with the attackers using compromised Klue Battlecards integrations and OAuth tokens.

⚙️Technical Details
Affected Systems
KlueSalesforce
Attack Vectors
compromised legacy credentialOAuth token abuse
💥Impact Assessment
Severity: high
🛡️Recommended Actions
1Implement multi-factor authentication for OAuth tokens
2Regularly review and update integration credentials
3Monitor Salesforce API activity for suspicious queries
📦Affected Products
KlueSalesforce

Read the full article

This is a curated summary. The complete article is available at Bleeping Computer.

Read on Bleeping Computer
← Back to feed