Klue's Battlecards is now the third integrated application that has been compromised to steal customers' Salesforce data, and victims include Huntress, the cybersecurity vendor.
June 18, 2026
More Salesforce instances have been breached by threat actors abusing a third-party application integration, this time through Klue's Battlecards app.
The attacks, which are the latest in a series of breaches against Salesforce customers, came to light on June 17, when the CRM vendor announced it had suspended integration with Battlecards in response to a security incident.
"Salesforce took this action because our security teams recently detected unusual activity involving the app that may have resulted in unauthorized access to a subset of customer data via the app's connection to Salesforce," the company said in an alert. "This issue is limited to Klue's app connection and does not arise from a vulnerability within the Salesforce platform."













