{"id":196630,"date":"2025-09-18T16:00:52","date_gmt":"2025-09-18T20:00:52","guid":{"rendered":"https:\/\/fiixdev.wpengine.com\/?p=196630"},"modified":"2025-09-22T12:07:32","modified_gmt":"2025-09-22T16:07:32","slug":"fiix-salesforce-security-incident-update","status":"publish","type":"post","link":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/","title":{"rendered":"Salesforce-Connected Third-Party Drift Application Incident Response"},"content":{"rendered":"<p>On the Fiix team we take transparency seriously, especially when it comes to protecting our customers\u2019 data.  We recently learned of a widespread data theft campaign involving the integration of Salesforce and Salesloft Drift that has impacted hundreds of organizations around the world.  Fiix was among the many impacted.<\/p>\n<p>Our ongoing investigation found evidence that an unauthorized user accessed data in Fiix\u2019s Salesforce instance.  This included access to business contact details such as names, business email addresses, and phone numbers. The Fiix CMMS application for maintenance management was not affected.<\/p>\n<p>Fiix has robust controls in place and has taken immediate action, including:<\/p>\n<ul>\n<li>Revoking and rotating all potentially compromised Salesforce, Drift, and associated credentials.<\/li>\n<li>Following up on known indicators of compromise shared by Salesforce and leading cybersecurity experts.<\/li>\n<li>Prioritized continuous monitoring of our Salesforce solutions using our established cybersecurity practices.<\/li>\n<\/ul>\n<p>For the latest updates from Salesforce, please see published updates from Salesforce: <a href=\"https:\/\/status.salesforce.com\/generalmessages\/20000217\" target=\"_blank\" rel=\"noreferrer nofollow noopener\" class=\"external-URL\">Security Advisory: Unusual Activity in a Third Party Connected App<\/a><span class=\"sr-only\"> (opens in new tab)<\/span>.  Our team remains  vigilant in its safeguarding of Fiix systems and our customers\u2019 data, and we will continue to communicate as appropriate.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>On the Fiix team we take transparency seriously, especially when it comes to protecting our customers\u2019 data. We recently learned of a widespread data theft campaign involving the integration of Salesforce and Salesloft Drift that has impacted hundreds of organizations around the world. Fiix was among the many impacted. Our ongoing investigation found evidence that an unauthorized user accessed data in Fiix\u2019s Salesforce instance. This included access to business contact details such as names, business email addresses, and phone numbers. The Fiix CMMS application for maintenance management was not affected. Fiix has robust controls in place and has taken immediate action, including: Revoking and rotating all potentially compromised Salesforce, Drift, and associated credentials. Following up on known indicators of compromise shared by Salesforce and leading cybersecurity experts. Prioritized continuous monitoring of our Salesforce solutions using our established cybersecurity practices. For the latest updates from Salesforce, please see published updates from Salesforce: Security Advisory: Unusual Activity in a Third Party Connected App (opens in new tab). Our team remains vigilant in its safeguarding of Fiix systems and our customers\u2019 data, and we will continue to communicate as appropriate.<\/p>\n","protected":false},"author":59,"featured_media":196631,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2,3],"tags":[],"coauthors":[395],"class_list":["post-196630","post","type-post","status-publish","format-standard","hentry","category-blog","category-news"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.9 (Yoast SEO v27.5) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Salesforce-Connected Third-Party Drift Application Incident Response | Fiix<\/title>\n<meta name=\"description\" content=\"Fiix experienced a security incident involving a Salesforce-connected app. We&#039;ve taken immediate action to secure our systems and protect customer data.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Salesforce-Connected Third-Party Drift Application Incident Response\" \/>\n<meta property=\"og:description\" content=\"Fiix experienced a security incident involving a Salesforce-connected app. We&#039;ve taken immediate action to secure our systems and protect customer data.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/\" \/>\n<meta property=\"og:site_name\" content=\"Fiix\" \/>\n<meta property=\"article:published_time\" content=\"2025-09-18T20:00:52+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-09-22T16:07:32+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2025\/09\/Salesforce-Connected-Third-Party-Drift_blogcard@2x-1024x537.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"537\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Daniel Swann\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@fiixsoftware\" \/>\n<meta name=\"twitter:site\" content=\"@fiixsoftware\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/\"},\"author\":{\"name\":\"Daniel Swann\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#\\\/schema\\\/person\\\/fe6dd802e57846f0c330cedcabc78ff4\"},\"headline\":\"Salesforce-Connected Third-Party Drift Application Incident Response\",\"datePublished\":\"2025-09-18T20:00:52+00:00\",\"dateModified\":\"2025-09-22T16:07:32+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/\"},\"wordCount\":194,\"publisher\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png\",\"articleSection\":[\"Blog\",\"Press\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/\",\"url\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/\",\"name\":\"Salesforce-Connected Third-Party Drift Application Incident Response | Fiix\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png\",\"datePublished\":\"2025-09-18T20:00:52+00:00\",\"dateModified\":\"2025-09-22T16:07:32+00:00\",\"description\":\"Fiix experienced a security incident involving a Salesforce-connected app. We've taken immediate action to secure our systems and protect customer data.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#primaryimage\",\"url\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png\",\"contentUrl\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png\",\"width\":2403,\"height\":1259,\"caption\":\"Salesforce blog card\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/blog\\\/fiix-salesforce-security-incident-update\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/fiixsoftware.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Salesforce-Connected Third-Party Drift Application Incident Response\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#website\",\"url\":\"https:\\\/\\\/fiixsoftware.com\\\/\",\"name\":\"Fiix\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/fiixsoftware.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#organization\",\"name\":\"Fiix\",\"url\":\"https:\\\/\\\/fiixsoftware.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/ml8fbkdlkw7f.i.optimole.com\\\/cb:PfuI.4128b\\\/w:522\\\/h:368\\\/q:mauto\\\/f:best\\\/https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2015\\\/12\\\/fiix_linkedin.jpg\",\"contentUrl\":\"https:\\\/\\\/ml8fbkdlkw7f.i.optimole.com\\\/cb:PfuI.4128b\\\/w:522\\\/h:368\\\/q:mauto\\\/f:best\\\/https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2015\\\/12\\\/fiix_linkedin.jpg\",\"width\":522,\"height\":368,\"caption\":\"Fiix\"},\"image\":{\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/fiixsoftware\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/#\\\/schema\\\/person\\\/fe6dd802e57846f0c330cedcabc78ff4\",\"name\":\"Daniel Swann\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2019\\\/04\\\/icons-_blue_0097DC_200px_profile@2x.png766bdb07fa412b8309260ae455ca5bd8\",\"url\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2019\\\/04\\\/icons-_blue_0097DC_200px_profile@2x.png\",\"contentUrl\":\"https:\\\/\\\/fiixsoftware.com\\\/wp-content\\\/uploads\\\/2019\\\/04\\\/icons-_blue_0097DC_200px_profile@2x.png\",\"caption\":\"Daniel Swann\"},\"url\":\"https:\\\/\\\/fiixsoftware.com\\\/author\\\/daniel-swann\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Salesforce-Connected Third-Party Drift Application Incident Response | Fiix","description":"Fiix experienced a security incident involving a Salesforce-connected app. We've taken immediate action to secure our systems and protect customer data.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/","og_locale":"en_US","og_type":"article","og_title":"Salesforce-Connected Third-Party Drift Application Incident Response","og_description":"Fiix experienced a security incident involving a Salesforce-connected app. We've taken immediate action to secure our systems and protect customer data.","og_url":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/","og_site_name":"Fiix","article_published_time":"2025-09-18T20:00:52+00:00","article_modified_time":"2025-09-22T16:07:32+00:00","og_image":[{"width":1024,"height":537,"url":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2025\/09\/Salesforce-Connected-Third-Party-Drift_blogcard@2x-1024x537.png","type":"image\/png"}],"author":"Daniel Swann","twitter_card":"summary_large_image","twitter_creator":"@fiixsoftware","twitter_site":"@fiixsoftware","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#article","isPartOf":{"@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/"},"author":{"name":"Daniel Swann","@id":"https:\/\/fiixsoftware.com\/#\/schema\/person\/fe6dd802e57846f0c330cedcabc78ff4"},"headline":"Salesforce-Connected Third-Party Drift Application Incident Response","datePublished":"2025-09-18T20:00:52+00:00","dateModified":"2025-09-22T16:07:32+00:00","mainEntityOfPage":{"@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/"},"wordCount":194,"publisher":{"@id":"https:\/\/fiixsoftware.com\/#organization"},"image":{"@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#primaryimage"},"thumbnailUrl":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2025\/09\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png","articleSection":["Blog","Press"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/","url":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/","name":"Salesforce-Connected Third-Party Drift Application Incident Response | Fiix","isPartOf":{"@id":"https:\/\/fiixsoftware.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#primaryimage"},"image":{"@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#primaryimage"},"thumbnailUrl":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2025\/09\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png","datePublished":"2025-09-18T20:00:52+00:00","dateModified":"2025-09-22T16:07:32+00:00","description":"Fiix experienced a security incident involving a Salesforce-connected app. We've taken immediate action to secure our systems and protect customer data.","breadcrumb":{"@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#primaryimage","url":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2025\/09\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png","contentUrl":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2025\/09\/Salesforce-Connected-Third-Party-Drift_blogcard@2x.png","width":2403,"height":1259,"caption":"Salesforce blog card"},{"@type":"BreadcrumbList","@id":"https:\/\/fiixsoftware.com\/blog\/fiix-salesforce-security-incident-update\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/fiixsoftware.com\/"},{"@type":"ListItem","position":2,"name":"Salesforce-Connected Third-Party Drift Application Incident Response"}]},{"@type":"WebSite","@id":"https:\/\/fiixsoftware.com\/#website","url":"https:\/\/fiixsoftware.com\/","name":"Fiix","description":"","publisher":{"@id":"https:\/\/fiixsoftware.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/fiixsoftware.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/fiixsoftware.com\/#organization","name":"Fiix","url":"https:\/\/fiixsoftware.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/fiixsoftware.com\/#\/schema\/logo\/image\/","url":"https:\/\/ml8fbkdlkw7f.i.optimole.com\/cb:PfuI.4128b\/w:522\/h:368\/q:mauto\/f:best\/https:\/\/fiixsoftware.com\/wp-content\/uploads\/2015\/12\/fiix_linkedin.jpg","contentUrl":"https:\/\/ml8fbkdlkw7f.i.optimole.com\/cb:PfuI.4128b\/w:522\/h:368\/q:mauto\/f:best\/https:\/\/fiixsoftware.com\/wp-content\/uploads\/2015\/12\/fiix_linkedin.jpg","width":522,"height":368,"caption":"Fiix"},"image":{"@id":"https:\/\/fiixsoftware.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/fiixsoftware"]},{"@type":"Person","@id":"https:\/\/fiixsoftware.com\/#\/schema\/person\/fe6dd802e57846f0c330cedcabc78ff4","name":"Daniel Swann","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2019\/04\/icons-_blue_0097DC_200px_profile@2x.png766bdb07fa412b8309260ae455ca5bd8","url":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2019\/04\/icons-_blue_0097DC_200px_profile@2x.png","contentUrl":"https:\/\/fiixsoftware.com\/wp-content\/uploads\/2019\/04\/icons-_blue_0097DC_200px_profile@2x.png","caption":"Daniel Swann"},"url":"https:\/\/fiixsoftware.com\/author\/daniel-swann\/"}]}},"_links":{"self":[{"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/posts\/196630","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/users\/59"}],"replies":[{"embeddable":true,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/comments?post=196630"}],"version-history":[{"count":0,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/posts\/196630\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/media\/196631"}],"wp:attachment":[{"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/media?parent=196630"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/categories?post=196630"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/tags?post=196630"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/fiixsoftware.com\/wp-json\/wp\/v2\/coauthors?post=196630"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}