Skip to content
Tech News
← Back to articles

Webinar: The forgotten Google Workspace access that can lead to a breach

read original get Yubico YubiKey 5C NFC Security Key → more articles
Why This Matters

OAuth-connected third-party apps are a routine part of Google Workspace productivity, but the permissions they hold to email, files, and contacts often outlive their usefulness and drop off security teams' radar. BleepingComputer and Material Security are hosting a webinar dissecting real, publicly documented Workspace breaches and the controls that matter most for fast-growing companies with thin security staffing.

Key Takeaways
Worth a Look

Yubico YubiKey 5C NFC Security Key — If forgotten Google Workspace access worries you, hardware-backed sign-in is a solid layer to add: the YubiKey 5C NFC works with Google accounts as a phishing-resistant second factor over USB-C or NFC tap. It's pocket-sized, needs no battery, and makes account takeover far harder for the humans behind those risky app integrations.

See Yubico YubiKey 5C NFC Security Key on Amazon → Affiliate link — we may earn a commission on purchases, at no extra cost to you. Product picked by AI based on this article; it is not a tested recommendation.

Third-party applications can make Google Workspace far more useful, but integrations granted access months or years ago can also become an overlooked path into an organization's data.

On September 23, 2026, BleepingComputer will host a live webinar titled "Breach autopsy: How fast-growing companies are breached through Google Workspace" with Material Security.

The webinar will feature Rajan Kapoor, Vice President of Security at Material Security, and Rick Fitzgerald, President of Fireside Consulting LLC, examining real, publicly documented Google Workspace breaches and what organizations can learn from them.

As companies grow, employees connect applications and services to Google Workspace to improve productivity and automate business processes. Those integrations may receive access to email, files, contacts, and other sensitive information.

The problem is that access can outlive its original purpose. An application may no longer be actively used, its owner may have left the company, or security teams may simply have lost track of the permissions granted to it.

These forgotten integrations can leave users, data, and connected applications exposed while creating access paths that aren't necessarily obvious to defenders.

The webinar will examine how overly permissive third-party integrations and other overlooked weaknesses contribute to Google Workspace breaches, as well as which controls can provide the greatest value for fast-growing companies with limited security resources.

Attendees will also hear what happens during the critical first hours after a breach and which decisions can help contain an incident or make its impact worse.

When yesterday's integration becomes today's security risk

Fast-growing organizations can accumulate a large number of applications connected to Google Workspace as employees adopt new services and business processes change.

... continue reading