Breach taxonomy
Summary
A threat actor exploited the Klue Labs third-party API integration connected to 8x8's Salesforce CRM between June 11 and 12, 2026, gaining unauthorized access and exfiltrating competitively sensitive information about current, former and prospective customers, including fragmented contract and opportunity information, sales team notes, and customer contact information. 8x8 and Klue, with Salesforce support, disabled the compromised integration and removed the access.
Tagging rationale
ThreatUnknown
Filing refers only to 'an unauthorized third party threat actor' with no attribution -> UNKNOWN.
MethodsData ExfilSupply ChainApp Exploit
Threat actor 'exploited the Klue Labs, Inc. third-party application programming integration connected to the Company's Salesforce system' and 'exfiltrated certain information' -> DATA-EXFIL + SUPPLY-CHAIN + APP-EXPLOIT.