Here we gooooo.... Attacker got into Vercel internal systems via a compromised third-party AI tool's Google Workspace OAuth app.
https://t.co/zdQJSikeqL
@robkbircher@ZackKorman I 100% hear you, but let’s be honest — at risk for *what* exactly? SOC 2 is a procurement gate, that’s it.
Let’s say SOC 2 reports are ID’s and your customer is a bouncer.
If you walk up with a fake id and they let you in… you’re not going to say a damn word
@I_amZackk@karunkaushik_ The entire cybersecurity community is laughing at them right now.
If you claim “cybersecurity forensic investigators”, you name them. That’s your credibility.
Mandiant. Crowdstrike, etc. Say literally anybody’s name. They won’t.
Also on humansecurity(.)com: @Contentsquare (session recording), @HockeyStack (scans the DOM to detect other vendors), @LiveRamp (identity resolution), and @LinkedIn tracking as the FIRST network request on page load.
Extension scanning confirmed on their own site. 4 chrome-extension:// probes in the network traffic.