
How a single OAuth oversight led to the Vercel data breach
A compromised AI tool, a stolen OAuth token, and overlooked environment variables combined to expose Vercel’s internal systems. The breach reveals critical gaps in OAuth monitoring that most security teams still miss.
