Outage in Pantheon

Salesloft Drift Security Incident: Pantheon Response

Minor
September 05, 2025 - Started 1 day ago
Official incident page

Need to monitor Pantheon outages?
Stay on top of outages with IsDown. Monitor the official status pages of all your vendors, SaaS, and tools, including Pantheon, and never miss an outage again.
Start Free Trial

Outage Details

Pantheon has been made aware of a widespread security incident impacting companies that use Drift, a third-party vendor used for communicating with visitors on our website via chat. We, and our customers, are affected by this breach. The Pantheon platform and customer-hosted websites were not impacted. Our investigation has confirmed that a threat actor exploited a vulnerability in the Salesloft Drift application’s OAuth integration with Salesforce to gain unauthorized access to CRM data. Pantheon was notified on August 28, 2025 of this compromise that occurred between August 12–15, 2025. The breach resulted in the exfiltration of business information about customer renewals and internal sales account data from our CRM system. While this exposure was limited to Salesforce data connected through Drift, some contact details related to accounts were compromised. Our platform and your hosted websites were not infiltrated and have not been affected. Upon learning of the incident, Pantheon took immediate steps to contain the threat and safeguard customer data, including: - Locking down permissions across Salesforce Apps to prevent unauthorized access. - Removing vulnerable applications associated with Salesforce. We continue to work closely with Salesforce and Salesloft Drift to conduct a forensic analysis and confirm the full scope of the event. Protecting our customers’ data and maintaining their trust is our highest priority. As we continue our investigation, we are also conducting thorough reviews of our defenses and security assessments for all third-party integrations. Updates will be shared here as more information becomes available. If you have questions or concerns, please reach out to your Customer Success Manager.
Latest Updates ( sorted recent to last )
MONITORING 1 day ago - at 09/05/2025 08:52PM

We are continuing to monitor for any further issues.

MONITORING 1 day ago - at 09/05/2025 08:50PM

Pantheon has been made aware of a widespread security incident impacting companies that use Drift, a third-party vendor used for communicating with visitors on our website via chat. We, and our customers, are affected by this breach.

The Pantheon platform and customer-hosted websites were not impacted.

Our investigation has confirmed that a threat actor exploited a vulnerability in the Salesloft Drift application’s OAuth integration with Salesforce to gain unauthorized access to CRM data. Pantheon was notified on August 28, 2025 of this compromise that occurred between August 12–15, 2025.

The breach resulted in the exfiltration of business information about customer renewals and internal sales account data from our CRM system. While this exposure was limited to Salesforce data connected through Drift, some contact details related to accounts were compromised. Our platform and your hosted websites were not infiltrated and have not been affected.

Upon learning of the incident, Pantheon took immediate steps to contain the threat and safeguard customer data, including:

- Locking down permissions across Salesforce Apps to prevent unauthorized access.
- Removing vulnerable applications associated with Salesforce.

We continue to work closely with Salesforce and Salesloft Drift to conduct a forensic analysis and confirm the full scope of the event. Protecting our customers’ data and maintaining their trust is our highest priority.

As we continue our investigation, we are also conducting thorough reviews of our defenses and security assessments for all third-party integrations. Updates will be shared here as more information becomes available.

If you have questions or concerns, please reach out to your Customer Success Manager.

Be the First to Know When Vendors Go Down

With IsDown, you can monitor all your critical services' official status pages from one centralized dashboard and receive instant alerts the moment an outage is detected. Say goodbye to constantly checking multiple sites for updates and stay ahead of outages with IsDown.

Start free trial

No credit card required · Cancel anytime · 4400 services available

Integrations with Slack Microsoft Teams Google Chat Datadog PagerDuty Zapier Discord Webhook