techhub.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A hub primarily for passionate technologists, but everyone is welcome

Administered by:

Server stats:

4.7K
active users

#GoogleWorkspace

4 posts4 participants0 posts today
Fediverse, I have a rant I need to get off my chest. Groups in Google Workspace is a security nightmare and has been for years! Why has Google STILL not fixed the glaring problems!?

I've had admin powers at 5+ companies' Google Workspace/G Suite over the past decade or so. Every single one had groups which were misconfigured, often so anyone in the whole company could join without approval or see the message history at https://groups.google.com without being a member at all.

This is because for any sensible configuration of Google Groups when using it for email groups you have to use the "Custom" permissions mode. The default Public mode doesn't allow external people to email the group, but does allow the whole company to see all the messages. The default Team mode, has the same problem of everyone being able to see all the messages.

Also let's not forget that dangerous little "Anyone in the organisation can join" toggle at the bottom which is on by default. So any random new starter can join your confidential company directors group and get all the emails sent to it.

Giving Google the benefit of the doubt here, I think the reasoning might be that Google Groups is intended as a kind of company forum, not for private email groups. However that isn't how anyone uses it in my experience...

#security #infosec #google #googleworkspace

🚀 Klaar voor AI? Ontdek Google Gemini nu met onze Nederlandse handleiding! 🇳🇱

Geen overweldigende tech-taal, wel praktische tips voor dagelijks gebruik en integratie in Google Workspace. Leer effectief prompten & bespaar tijd!

Meer info 👇
gemini.cloud-captains.com

gemini.cloud-captains.comGemini Handleiding - Jouw Startpunt | Cloud CaptainsDe complete Gemini Handleiding door Cloud Captains. Ontdek AI, leer prompten, bekijk updates, Workspace integratie, use cases en meer.