Cloudflare has joined the growing list of victims in the Drift-Salesforce breach, confirming that attackers accessed its Salesforce instance between August 12–17. While core infrastructure remained untouched, exposed data included customer contacts, support tickets, and potentially sensitive details like tokens. Cloudflare attributed the attack to threat group GRUB1 and has rotated all credentials as a safeguard. The company warned that the stolen information could fuel targeted attacks against affected organizations.
