Skip to main content
Back to overview
High

OneTrust Salesforce Environment Compromised via Klue Supply Chain Attack

OneTrust identified unauthorized activity in its Salesforce environment on June 17, 2026, linking it to the broader Klue third-party integration incident.

Key points

  • Unauthorized activity detected in OneTrust's Salesforce environment on June 17, 2026.
  • Incident linked to the Klue third-party integration breach.
  • Exposure limited to CRM-related data accessible via the Klue-Salesforce integration.

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

02

Likely method

Explore attack patterns

Threat source not confirmed

03

Potential impact

Potential business exposure

Impact remains under assessment

Published
Jun 17, 2026
Updated
Jul 1, 2026
Confidence
High
Evidence
7 sources

Structured assessment

Signal analysis

Structured signal analysis is not available for this incident yet. It will appear here when enough industry or incident-pattern metadata is available.

Quick context

Questions about this signal

What happened in this signal?

OneTrust identified unauthorized activity in its Salesforce environment on June 17, 2026, linking it to the broader Klue third-party integration incident. The exposure appears limited to CRM-related data accessible through the Klue-Salesforce integration. OneTrust took containment measures and began notifying affected customers.

When was this signal reported?

Shadow Tier lists Jun 17, 2026 as the signal date.

Which organization is connected to this signal?

Onetrust is the organization connected to this public signal.

Explore Onetrust