A recent supply-chain attack on Klue, a market intelligence provider, has compromised the Salesforce data of hundreds of its customers, including several cybersecurity companies1. The breach, attributed to a new extortion crew called Icarus, has affected an undisclosed number of Klue's over 250,000 global customers. Cybersecurity vendor Huntress was among the first to report being impacted by the breach. The attack highlights the evolving methods used by threat actors to target downstream suppliers, potentially leading to regulatory and supply-chain repercussions. As more companies come forward to disclose their involvement, the true extent of the breach remains unclear. The fact that security shops are among the victims underscores the severity of the incident, as it suggests that even organizations with robust security measures in place can fall prey to sophisticated attacks, so what this means for practitioners is that they must remain vigilant and reassess their own supply-chain vulnerabilities.