Fireside Chat - SaaS Security: Inside Recent Attacks Disrupting Global Enterprises
- Date:
- September 18th, 2025
- Time:
- 2pm EST / 7pm BST

SaaS applications are now the beating heart of enterprise operations and attackers know it. Recently, two separate campaigns by UNC6040 (aka ShinyHunters) and UNC6395 crippled organizations across industries by exploiting OAuth mechanisms to breach Salesforce and related SaaS ecosystems. The fallout was immediate: disrupted operations, stolen customer data, and extortion attempts that impacted some of the world’s most recognizable brands.
In this fireside chat, Christie Terrill, CISO at Bishop Fox, sits down with Brian Soby, CTO and Co-Founder of AppOmni and former Director of Product Security at Salesforce, to unpack how these attacks unfolded and their impact on global enterprises. The conversation will then shift into a live, interactive Q&A where attendees can engage directly with Christie and Brian on real-world SaaS security challenges and defense strategies.
Attendees will gain:
- A concise recap of the recent SaaS breach campaigns: what happened, who was impacted, and the broader business consequences.
- Actionable guidance for mitigating risk, from enforcing least privilege to hardening integration accounts.
- Direct insights from SaaS security leaders who have built defenses at the vendor and enterprise level.
- Live Q&A time with Brian and Christie to tackle your most pressing SaaS security questions.
By the end of the discussion, participants will walk away with a sharper understanding of the SaaS threat landscape and practical steps to protect their own environments from the kind of disruptions that recently shook global enterprises.