Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A threat actor tracked as Icarus breached Klue’s integration infrastructure on June 11-12, 2026, by exploiting a dormant legacy service account credential to obtain OAuth tokens, then used those tokens to query Salesforce environments via the REST API and exfiltrate business contacts, pricing data, and sales messaging. At least one confirmed victim, cybersecurity firm Huntress, received an extortion demand with a 48-hour payment deadline. Organizations using Klue’s Battlecards integration with Salesforce face direct exposure of competitively sensitive CRM data and potential extortion, with the root cause being systemic failures in non-human identity governance rather than a software vulnerability.

Author

Tech Jacks Solutions