Salesforce Flags Unauthorized Data Access via Gainsight-Linked OAuth Activity
Summary
Salesforce has detected unusual activity linked to Gainsight applications that may have led to unauthorized access to customer data. The company has responded by revoking all active access to mitigate potential risks.
Original Article Summary
Salesforce has warned of detected "unusual activity" related to Gainsight-published applications connected to the platform. "Our investigation indicates this activity may have enabled unauthorized access to certain customers’ Salesforce data through the app's connection," the company said in an advisory. The cloud services firm said it has taken the step of revoking all active access and refresh
Impact
Salesforce platform, Gainsight applications
In the Wild
Unknown
Timeline
Newly disclosed
Remediation
Revoked all active access and refresh tokens related to the Gainsight applications