No Insurer Has Asked Which SaaS Apps You Use

Cyber Insurance News story on SaaS supply chain risk showing two app tiles joined by a cracked connector leaking red light

Nudge Security CEO Russell Spitler says cyber insurance applications miss the question that decides SaaS supply chain risk. He has yet to see an insurer ask for a company’s list of applications. In August 2025, attackers stole OAuth tokens from Salesloft’s Drift integration. They used them to pull data out of Salesforce instances across many … Read more

Hidden OAuth Grants Draw New AI Agents: Nudge Security Targets A Cyber Insurance Blind Spot

Two breaches rode trusted app connections into hundreds of Salesforce environments. Nudge Security says AI agents can police those connections. Its CEO says insurers should start asking about them. Nudge Security has announced two AI agents aimed at OAuth grants and browser extensions. The Austin-based vendor calls these two of the fastest-growing attack surfaces in … Read more

×