What We Know
REST OF WORLD:Constitutional Court vote may influence Puigdemont’s arrest warrant and return to CataloniaGAMING:Control Resonant’s launch hotfix eases combat and strengthens Dylan’s early progressionSPORTS:Maple Leafs acquire Kirill Marchenko from Blue Jackets and sign him to six-year extensionMARKETS:August U.S. Inflation Rose Less Than Expected as Spending Stayed Strong and Price Pressures PersistedCYBERSECURITY:Citrix NetScaler zero-days prompt global alerts and urgent mitigation effortsPOLITICS:Iran-US Nuclear and Hormuz Discussions Continue Amid Mediation and Doubts Over a DealAI:The EU advances AI Act enforcement as draft rules and provider letters emergeTOP STORIES:Ukraine develops affordable interceptor drones as jet-powered threats expose defense gapsREST OF WORLD:Constitutional Court vote may influence Puigdemont’s arrest warrant and return to CataloniaGAMING:Control Resonant’s launch hotfix eases combat and strengthens Dylan’s early progressionSPORTS:Maple Leafs acquire Kirill Marchenko from Blue Jackets and sign him to six-year extensionMARKETS:August U.S. Inflation Rose Less Than Expected as Spending Stayed Strong and Price Pressures PersistedCYBERSECURITY:Citrix NetScaler zero-days prompt global alerts and urgent mitigation effortsPOLITICS:Iran-US Nuclear and Hormuz Discussions Continue Amid Mediation and Doubts Over a DealAI:The EU advances AI Act enforcement as draft rules and provider letters emergeTOP STORIES:Ukraine develops affordable interceptor drones as jet-powered threats expose defense gaps
Older than 2 weeksJust now

Klue OAuth breach victim list grows as Icarus hackers claim attack

  • 5 sources analyzed
  • Source mix: Web
  • Momentum: Older than 2 weeks

What We Know

Market-intelligence platform Klue experienced an OAuth compromise that researchers and reporting say allowed attackers to access customer Salesforce data through Klue’s integrations. Multiple outlets link the incident to a threat group calling itself “Icarus”; RH-ISAC and BleepingComputer reported that Icarus has claimed responsibility and that the breach enabled theft of Salesforce-linked data.

The list of affected Klue customers has expanded as investigations proceed. The Register reported that “hundreds” of Klue customers were impacted and that several cybersecurity firms are among the victims. BleepingComputer framed the event as a supply-chain exploit of Salesforce-connected integrations, and at least one large vendor — LastPass — has publicly confirmed it suffered a data breach connected to the Klue supply-chain incident.

Taken together, the reporting establishes that an OAuth compromise at Klue has been used to harvest Salesforce data from multiple downstream customers, that the extortion-oriented Icarus group is claiming responsibility, and that the roster of affected organizations is still growing.

Source Comparison

Aligned reporting
3 corroborates - 0 adds context - 0 conflicts