Webinar: How Google Workspace breaches happen and what to do next

Google Workspace has become a critical part of how fast-growing companies operate, giving employees access to email, files, applications, and other business resources. But when attackers find a way into that environment, the same connectivity can create opportunities for a breach to spread.

On September 23, 2026, BleepingComputer will host a live webinar titled “Breach autopsy: How fast-growing companies are breached through Google Workspace” with Material Security.

The webinar will feature Rajan Kapoor, Vice President of Security at Material Security, and Rick Fitzgerald, President of Fireside Consulting LLC, examining real, publicly documented Google Workspace breaches and what organizations can learn from them.

Many of these incidents don’t begin with sophisticated exploits. Attackers may instead find an unexpected path into an organization through a convincing social-engineering call or a forgotten third-party integration that still has extensive access to the Google Workspace environment.

Once access is gained, the decisions made during the first hours of an incident can have a significant impact on what happens next.

The speakers will examine how these breaches unfold, which security controls provide the most value, which may be overrated, and what they would prioritize if they were building a Google Workspace security program for a fast-growing company from scratch.

Rather than providing another lengthy security checklist, the discussion will focus on practical controls and response measures that lean security teams can realistically implement.

Attendees will gain a clearer understanding of where Google Workspace environments can be exposed, what matters during the earliest stages of a breach, and which security improvements can have the greatest impact.

Attackers don’t necessarily need a sophisticated vulnerability to gain access to a company’s Google Workspace environment.

Social engineering can convince an employee to provide access, while an old third-party integration may retain permissions long after anyone remembers why they were granted.

These overlooked paths can expose users, data, and connected applications, leaving security teams to determine how attackers gained access and how far the compromise has spread.

This webinar will examine real-world Google Workspace breaches to identify where defenses failed, what happened during the critical first hours, and which controls could have made the greatest difference.

How threat actors gain access to Google Workspace environments through social engineering and overly permissive third-party integrations

What happens during the first hours of a Google Workspace breach and which decisions can limit or worsen the impact

Which security controls provide the greatest value for fast-growing companies with limited security resources

Commonly overlooked weaknesses that can leave users, data, and connected applications exposed

Practical security improvements organizations can implement quickly, ranked by effort and potential impact

Join us to learn how real Google Workspace breaches unfold and what lean security teams can do to reduce the risk and impact of an attack.

Ubiquiti patches three max severity security vulnerabilities

Police arrests dozens of suspects in global cybercrime crackdown

Microsoft Teams now lets admins block external bots from meetings

Discover how least agency keeps your AI tools capable, controlled, and secure.

Overdue a password health-check? Audit your Active Directory for free

Protect yourself from data brokers, scammers, and the next data breach with digital identities.

Discover why encryption and key management are critical for modern business.

See how AI is reshaping email attacks. Download the 2026 Kaseya Email Security Report.

Pixellot discovered and secured hundreds of unmanaged AI agent identities in weeks, not months. Download the case study for how.

Terms of Use – Privacy Policy – Ethics Statement – Affiliate Disclosure

Read our posting guidelinese to learn what content is prohibited.