Google Account

Google Whistles While OAuth Burns — ‘MultiLogin’ 0-Day is 70+ Days Old
Richi Jennings | | access-token-manipulation, authentication token, Business Associate Agreements, Chrome, chrome 0-day, chrome phishing, Chrome Security, Chromium, Chromium-Based Browsers, Federated Identity, federated sso, google, Google Account, google account security, Google Advanced Protection, infostealer, infostealers, OAuth, oauth 2.0, oauth abuse, Oauth Application Abuse, oauth refresh token, OAuth Token Vunerability, Prisma, Protecting OAuth Tokens, SB Blogwatch, securing oauth
What a Mickey Mouse operation: Infostealer scrotes having a field day with unpatched vulnerability ...
Security Boulevard

‘Massive Wave’ of Hackers Exploiting Comments in Google Docs
It seems like users are now paying the price for Google not fully closing or mitigating a vulnerability in the comment feature of Google Docs—since December a “massive wave” of hackers have ...
Security Boulevard

Google accidentally sent users’ private videos to strangers in stunning ‘Takeout’ mix-up
Filip Truta | | Data breach, GDPR, Google Account, google archive, google photos, google takeout, google videos, Industry News, Privacy, privacy breach, video
In a disconcerting security warning, Google is saying videos stored in some users’ Google Photos archive were incorrectly sent to other users who requested a download of their files. The message, originally ...