No Insurer Has Asked Which SaaS Apps You Use

Cyber Insurance News story on SaaS supply chain risk showing two app tiles joined by a cracked connector leaking red light

Nudge Security CEO Russell Spitler says cyber insurance applications miss the question that decides SaaS supply chain risk. He has yet to see an insurer ask for a company’s list of applications. In August 2025, attackers stole OAuth tokens from Salesloft’s Drift integration. They used them to pull data out of Salesforce instances across many … Read more

Hidden OAuth Grants Draw New AI Agents: Nudge Security Targets A Cyber Insurance Blind Spot

Two breaches rode trusted app connections into hundreds of Salesforce environments. Nudge Security says AI agents can police those connections. Its CEO says insurers should start asking about them. Nudge Security has announced two AI agents aimed at OAuth grants and browser extensions. The Austin-based vendor calls these two of the fastest-growing attack surfaces in … Read more

Cyber Incidents 2025: 10 Costly Shocks That Redefined Cyber Liability Insurance

In 2025, a series of cyber incidents hit businesses hard. Marks & Spencer stopped online orders and faced weeks of disruption. Jaguar Land Rover paused production and took major losses. npm supply-chain attacks put developer secrets at risk. Cloud outages at AWS, Azure, and Cloudflare caused widespread service failures. Tokio Marine HCC International documented these … Read more

×