Incident response
A Business Password Was Stolen
Quick answer
Treat a stolen business password as an active access problem. Protect the account, revoke sessions, and check where the same credential was reused.
Who this is for: Teams that received a credential leak alert or suspect a password was exposed.
What to do
- 01Change the password from a trusted device and revoke active sessions.
- 02Enable MFA and replace any reused password on another service.
- 03Review sign-ins, forwarding rules, delegated access, and recent changes.
- 04Preserve alerts and timestamps, then monitor the account closely.
What this does not cover
The correct response depends on the provider, account privilege, and information accessed. Get professional help when sensitive data may be exposed.
This page is educational information, not legal advice or a professional security audit. Check the official requirements and get qualified help when your circumstances require it.
Continue exploring