He found a way to Hijack Private Google Docs Screenshots with a clever hack - Google paid him $4000
The Backend Engineering Show with Hussein Nasser

He found a way to Hijack Private Google Docs Screenshots with a clever hack - Google paid him $4000

2021-01-24

A vulnerability in Google Feedback component in postMessage allowed this security researcher to find a way to hijack private screenshots https://blog.geekycat.in/google-vrp-hijacking-your-screenshots/ https://developer.mozilla.org/en-US/docs/Web/API/Window/postMessage

--- Send in a voice message: https://anchor.fm/hnasr/message
Comments (3)

More Episodes

All Episodes>>

Get this podcast on your phone, Free

Create Your Podcast In Minutes

  • Full-featured podcast site
  • Unlimited storage and bandwidth
  • Comprehensive podcast stats
  • Distribute to Apple Podcasts, Spotify, and more
  • Make money with your podcast
Get Started
It is Free