The Vercel and Composio breaches show a repeated attack pattern where stolen OAuth grants, not email, become the entry point into Google Workspace, enabling access to Gmail, Drive, and downstream systems. The same workspace chain can also be followed by AI agents operating with legitimate permissions, making full-chain defenses essential. #Vercel #Composio #GoogleWorkspace #OAuth
Keypoints
- Vercel and Composio were both hit by the same attack pattern.
- Stolen OAuth tokens can bypass password resets and persist unnoticed.
- Attackers use Gmail and Drive data to pivot across connected services.
- AI agents can follow the same path when overpermissioned.
- Defenses must cover email, OAuth, Drive, and account behavior together.