The Register Home Page

back to article Stolen OAuth tokens expose Palo Alto customer data

Palo Alto Networks is writing to customers that may have had commercially sensitive data exposed after criminals used stolen OAuth credentials lifted from the Salesloft Drift break-in to gain entry to its Salesforce instance. Marc Benoit, chief information security officer at PAN, confirmed in a note to clients - seen by The …

  1. hamiltoneuk

    Salesloft Drift Break-In

    Salesloft Drift Break-In: better call in Barnaby and Jones.

  2. Michael Hoffmann Silver badge
    Unhappy

    Huh, I thought at first it's a phishing attempt when I got a PaloAlto info mail to my private email. I've never bought a P.A. device in my life.

    So, why the hell am I in their DB at all? (he asks resignedly, mentally going through decades of trade shows and conferences and naively dropping in a card for some swag)

  3. Missing Semicolon Silver badge
    Facepalm

    OAuth?

    I thought that was sooper-secure, with no chance of being hacked by design!

    /sarc

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like