writeups.xyz writeups.xyz / Google

Title Vulnerabilities Programs Authors
The Time I Hacked Google’s Manual Actions Database
CCAI
Information disclosure or GDPR breach? A Google tale…
Play with Google, Twitter, Apple, Dell
How i was able to get critical bug on google by get full access on [Google Cloud BI Hackathon]
XSS using postMessage in Google Cloud Theia notebooks [Google VRP]
Bypassing authorization in Google Cloud Workstations [Google VRP]
Client-Side SSRF to Google Cloud Project Takeover [Google VRP]
SSH key injection in Google Cloud Compute Engine [Google VRP]
Identity-Aware Proxy Misconfiguration- Google Cloud Vulnerability
[ GCP 2022 ] Few bugs in the google cloud shell
Turning Google smart speakers into wiretaps for $100k
Custom role details are exposed in Google groups.
IDOR allows to assign deleted tasks to other members in Google Chat Space
Source code leakage due to exposed sourcemap
User names and email addresses are exposed to unprivileged admins in the Google Marketing Platform
Users of other organizations can be confirmed on the Google Marketing Platform - User enumeration Error based
Public Report – VPN by Google One Security Assessment
The space creators can still see the members of the space, even after they have been removed from the space.
Multiple Vulnerabilities found in Airtel Android Application
Exploiting CORS Misconfigurations
Security and Privacy Failures in Popular 2FA Apps
Accidental $70k Google Pixel Lock Screen Bypass
Discovering vendor-specific vulnerabilities in Android
Google VRP (Acquisitions) — [Insecure Direct Object Reference] 2nd