Company
Date Published
Author
Michael Tremante, Bill Sobel, and Ed Conolly
Word count
1443
Language
English
Hacker News points
None

Summary

The Salesloft breach highlighted the difficulty of monitoring connections between SaaS applications, revealing significant security vulnerabilities for data owners and SaaS platform providers. In response, Cloudflare is developing a solution that utilizes a proxy to consolidate SaaS connections, enhancing monitoring, detection, and response capabilities. This approach aims to give data owners control over who accesses their data, where it's accessed from, and allows for instant access shutdown in case of a breach. For SaaS platforms, Cloudflare's deployment model offers improved visibility into SaaS to SaaS connections, complemented by API Shield enhancements for better session and token management. The solution employs key splitting to securely manage tokens, preventing unauthorized access even in the event of a breach. Cloudflare seeks feedback from the community to refine these tools and is inviting interested parties to participate in early access programs.