<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Salesforce on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/salesforce/</link><description>Recent content in Salesforce on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Thu, 19 Jun 2025 09:03:57 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/salesforce/index.xml" rel="self" type="application/rss+xml"/><item><title>Salesforce Disables Klue App After OAuth Token Abuse</title><link>https://zxcloudsecurity.co.uk/posts/salesforce-klue-oauth-token-abuse-customer-data-exposure/</link><pubDate>Fri, 19 Jun 2026 09:03:57 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/salesforce-klue-oauth-token-abuse-customer-data-exposure/</guid><description>Salesforce disabled the Klue Battlecards integration after OAuth token abuse exposed customer data. Learn what cloud security architects should do now.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://thehackernews.com/2026/06/salesforce-disables-klue-app.html">The Hacker News</a></p>
<hr>
<p>Salesforce has disabled the Klue Battlecards app integration after a security incident on 11 June 2026 in which OAuth tokens were abused to expose customer data. The breach originated at Klue, a competitive intelligence platform, but impacted organisations using its Salesforce integration. Affected customers cannot reconnect the integration until Salesforce deems it safe to reinstate.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Audit all third-party OAuth app integrations in your Salesforce org immediately — revoke tokens for any apps you do not actively use or cannot verify, and review Salesforce&rsquo;s connected app logs for anomalous access patterns. This incident is a reminder to enforce least-privilege OAuth scopes and implement periodic token rotation policies for ISV integrations.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://thehackernews.com/2026/06/salesforce-disables-klue-app.html">Salesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer Data</a></p>
]]></content:encoded></item></channel></rss>