A large credential-theft wave tied to Fortinet devices shows how internet-facing firewalls and VPNs can become high-value identity targets, even when no new exploit is confirmed.
A disabled app integration has turned into a lesson in delegated access, where one abused token can force a platform to shut the door on an entire data path.
A reported abuse of OAuth-linked SaaS trust shows how one third-party integration can become a quiet path to CRM data.
A reported compromise of a Klue Battlecards integration shows how OAuth-backed connections can turn routine Salesforce access into a low-noise collection path.