Company
Date Published
Author
Pritesh Parekh
Word count
541
Language
English
Hacker News points
None

Summary

PagerDuty was informed in August 2025 about a security breach involving Salesloft's Drift application, which compromised the OAuth integration with Salesforce, affecting some PagerDuty customer support and case management data. While there is no evidence of unauthorized access to the PagerDuty platform itself, the breach exposed customer contact information and sensitive data, including API access tokens, leading PagerDuty to revoke affected API keys and advise customers to rotate their credentials as a precaution. The company is actively investigating the issue, has deactivated the integration between Salesforce and Drift, and is working with security partners to enhance the security of third-party integrations. Despite the breach originating from a third-party service, PagerDuty acknowledges its responsibility in safeguarding customer data and has apologized for the impact on its customers, urging vigilance against possible phishing and social engineering attacks.