Webinar: How malicious OAuth apps can lead to Google Workspace breaches
Recorded: Sept. 14, 2026, 1:09 p.m.
| Original | Summarized |
Webinar: How malicious OAuth apps can lead to Google Workspace breaches News Featured Passkey-themed phishing attacks lead to Microsoft 365 data theft Artifactory flaws chained in attacks deploying backdoor malware Trezor: 347,000 users targeted in phishing attacks after Brevo breach September Windows Server updates break Remote Desktop Services Webinar: How malicious OAuth apps can lead to Google Workspace breaches Lifetime access to this full cybersecurity bootcamp is only $53 on sale Microsoft: September updates cause RDS failures on Windows Server Revolut discloses data breach exposing financial info, passports Tutorials Latest How to access the Dark Web using the Tor Browser How to enable Kernel-mode Hardware-enforced Stack Protection in Windows 11 How to use the Windows Registry Editor How to backup and restore the Windows Registry How to start Windows in Safe Mode How to remove a Trojan, Virus, Worm, or other Malware How to show hidden files in Windows 7 How to see hidden files in Windows Webinars Latest Qualys BrowserCheck STOPDecrypter AuroraDecrypter FilesLockerDecrypter AdwCleaner ComboFix RKill Junkware Removal Tool Deals Categories eLearning IT Certification Courses Gear + Gadgets Security VPNs Popular Best VPNs How to change IP address Access the dark web safely Best VPN for YouTube Forums Virus Removal Guides HomeNewsSecurityWebinar: How malicious OAuth apps can lead to Google Workspace breaches Webinar: How malicious OAuth apps can lead to Google Workspace breaches By BleepingComputer September 14, 2026 Google Workspace attackers don't necessarily need to exploit a software vulnerability or steal a user's password to gain access to an organization's data. When attackers convince users to grant access Cybersecurity Previous Article Comments have been disabled for this article. Upcoming Webinar Popular Stories Passkey-themed phishing attacks lead to Microsoft 365 data theft Hackers abused Claude to extract secrets from 1.8M Android apps GitLab urges users to patch max severity path traversal flaw Sponsor Posts EtherHiding Malware on macOS: How Attackers Hide C2 on the Blockchain Find your gaps before an auditor does. Check your EU CRA readiness in 5 questions. Overdue a password health-check? Audit your Active Directory for free Stay one step ahead of new threats in the new year. Join Huntress for the monthly Tradecraft Tuesday.
Follow us: Main Sections News Community Forums Useful Resources Welcome Guide Company About BleepingComputer Terms of Use - Privacy Policy - Ethics Statement - Affiliate Disclosure Copyright @ 2003 - 2026 Bleeping Computer® LLC - All Rights Reserved Login Username Password Remember Me Sign in anonymously Sign in with Twitter Not a member yet? Register Now Help us understand the problem. What is going on with this comment? Spam Abusive or Harmful Inappropriate content Strong language Other Read our posting guidelinese to learn what content is prohibited. Submitting... |
Attackers targeting Google Workspace environments are leveraging malicious OAuth applications and social engineering techniques to breach organizational data, bypassing reliance on stolen passwords or exploiting direct software vulnerabilities. The mechanism centers on the OAuth authorization process, which permits users to grant applications access to Google Workspace data and services without sharing their credentials. Attackers exploit this system by employing social engineering to persuade users to authorize access to malicious applications, thereby granting the attackers permissions over sensitive information within the Workspace environment. This method shifts the focus of the breach from credential theft to exploiting trust and authorization permissions granted by the end-user. The webinar presented by Rajan Kapoor, Vice President of Security at Material Security, and Rick Fitzgerald, President of Fireside Consulting LLC, will examine two specific attacks that utilized this combination of malicious OAuth applications and social engineering to compromise Google Workspace systems. The core takeaway is that organizations must adopt a security posture that extends beyond traditional password protection and standard authentication controls to gain visibility into which third-party applications possess access and what permissions users are authorized to grant. The discussion will detail the sequence of these attacks, analyze the specific weaknesses that enabled the breaches, and assess the critical response decisions made during the initial hours of the incidents. Furthermore, the session aims to provide attendees with actionable knowledge regarding which security controls offer the most significant value for fast-growing organizations with constrained security resources. The presenters will also outline practical security improvements that can be implemented rapidly, ranked by their potential impact and the effort required for deployment. The overarching goal is to equip attendees with a practical understanding of how malicious OAuth applications and social engineering facilitate these breaches and what defensive measures are most effective against them in a real-world context. |