Google is rolling out end-to-end encryption for Gmail on iOS and Android to enterprise users. The feature lets Workspace users compose and read encrypted emails directly in the Gmail app without additional tools.
Google has expanded its client-side encryption offering to mobile platforms, bringing end-to-end encryption (E2EE) to Gmail users on iOS and Android devices. The rollout targets enterprise customers using Google Workspace.
■ Direct Integration
Eligible users can compose and read encrypted emails directly within the native Gmail app. This eliminates the need for separate applications or web portals to access encrypted messages.
■ Expanding Existing Features
The mobile rollout follows Google's introduction of E2EE for Gmail on the web, which launched over a year ago. Client-side encryption (CSE) gives organizations control over encryption keys and the identity service used to access those keys.
With E2EE enabled, email content is encrypted before it reaches Google's servers. Only the sender and intended recipients can decrypt and read the messages. Google cannot access the plaintext content of encrypted emails.
■ Enterprise Focus
The feature remains limited to Google Workspace enterprise users. Organizations must enable client-side encryption in their Workspace admin console before users can access the functionality.
Workspace editions that support CSE include Enterprise Plus, Education Plus, and Education Standard. The feature is not available to personal Gmail accounts or basic Workspace tiers.
■ Gradual Deployment
Google is implementing a gradual rollout schedule. The feature may take up to 15 days to become visible to all eligible users after initial deployment begins in their organization.
Authorities have arrested two alleged members of TeamPCP, a hacking group responsible for infecting over 1,000 organizations through supply-chain attacks.
A Georgia police officer used Flock surveillance technology to track the movements of his ex-partner and another officer after their affair ended, according to internal investigation records.
McKesson, a major healthcare and pharmaceutical distributor, confirmed a cybersecurity incident involving unauthorized access to third-party applications. Extortion group ShinyHunters claims responsibility for stealing 284 million patient data records.
Fraudsters are exploiting Microsoft Teams and similar enterprise chat apps to deceive Chinese users into sending large sums of money. The trend has sparked a wave of complaints across the region.