Startup necromancy: Dead Google Apps domains can be compromised by new owners
ID: 9ffd936a-a34d-533a-a69c-e3f2a2d7d196
STIX ID: report--9ffd936a-a34d-533a-a69c-e3f2a2d7d196
Feed Name: Ars Technica Security
Threat Score
A researcher demonstrated that buying expired startup domains that still have active Google Workspace/OAuth configurations can allow an attacker to re-create Google accounts for former employees and access linked third-party services (Slack, ChatGPT, Zoom, HR systems), exposing sensitive documents and communications; the root cause is poor account and domain lifecycle management by startups.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
