Episode 40
When Google Deletes Your Workspace & Intune Becomes a Weapon
April 3rd, 2026
59 mins 25 secs
Season 3
About this Episode
Welcome back to the Scinary Information Nexus! Settle in, because we have a massive week of cybersecurity news to unpack covering bizarre arrests, cloud nightmares, and inside threats.
This week, Richard, Joseph, Mario, and Brazos kick things off with the breaking overnight news: a Supermicro co-founder has been arrested for allegedly smuggling $2.5 billion in Nvidia GPUs to China. We debate the real motives - was it just about the money, or is there a deeper, darker reason behind the black market hustle?
Then, we revisit the devastating Stryker attack. The team uncovers how the threat actors didn't use crazy malware to wipe the devices, but instead bypassed MFA and simply used a built-in Microsoft Intune feature to destroy the network. We discuss why a "two-key" admin approval system is desperately needed.
Finally, we share a terrifying real-world case study we're actively working on: A K-12 school had their entire Google Workspace completely deleted by Google without warning. After a super admin account was compromised to send bulk spam, Google's automated systems nuked the domain—leaving the school completely locked out of email and Drive.
In this episode, we discuss:
- The $2.5 Billion Super Micro scandal: Smuggling GPUs to China.
- The Stryker Attack: How attackers used Microsoft Intune against them.
- The desperate need for multi-admin approval in cloud environments.
- Social Engineering in action: Brazos’s run-in with a fake sheriff.
- The Google Workspace Nightmare: What happens when an automated system permanently deletes your domain.
- The dangerous illusion of the "Shared Responsibility" cloud model.
Could your entire infrastructure be wiped by a single rogue button? Let's discuss.
Connect with Scinary Cybersecurity:
https://www.scinary.com
https://x.com/scinarycyber
https://www.linkedin.com/company/scinarycyber/