Patronum Logo
00%
cookie-iconThis website uses cookies.Learn MoreGet Started

Google Group data exposure due to misconfiguration at Weather Company and SpotX

By Patronum

October 11, 2017

Share Article

    Last week, RedLock identified that many companies running Google Workspace including Weather Company, Fusion Media Group, The Onion, Freshworks, and SpotX were affected by a security issue caused by a misconfiguration of Google Groups.

    In the report, RedLock indicated that “hundreds” of Google Groups have publicly exposed messages containing personally identifiable information (PII) including employee salary compensation, sales pipeline data, customer passwords, names, and home addresses. This exposure was caused due to Google Groups Sharing Options being set to “Public on the Internet” instead of “Private“.

    Google Group

    Although this isn’t a security issue itself it does show that a simple oversight can be potentially devastating for businesses. It is recommended that be default all Google Groups should be configured as “Private”, for further instructions see the following support articles from Google.

    Related Blogs

    Latest updates in Patronum for Google Drive Management Image

    By Patronum

    January 05, 2024

    Latest updates in Patronum for Google Drive Management
    Read MoreAbout This Blog
    Patronum’s Updates for 2023: The Year In Review 🎉 Image

    By Patronum

    January 04, 2024

    Patronum’s Updates for 2023: The Year In Review 🎉
    Read MoreAbout This Blog
    Deep Dive into Google Contact Sharing: Best Practices for Organising & Sharing Contacts Image

    By Patronum

    October 13, 2023

    Deep Dive into Google Contact Sharing: Best Practices for Organising & Sharing Contacts
    Read MoreAbout This Blog