logo

Startup necromancy: Dead Google Apps domains can be compromised by new owners

ID: 9ffd936a-a34d-533a-a69c-e3f2a2d7d196

STIX ID: report--9ffd936a-a34d-533a-a69c-e3f2a2d7d196

Feed Name: Ars Technica Security

Threat Score
70/100

Date Published: 2025-01-15

Date Updated: 2026-04-19

Author: Kevin Purdy

...
...

A researcher demonstrated that buying expired startup domains that still have active Google Workspace/OAuth configurations can allow an attacker to re-create Google accounts for former employees and access linked third-party services (Slack, ChatGPT, Zoom, HR systems), exposing sensitive documents and communications; the root cause is poor account and domain lifecycle management by startups.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.