Liv Matan
154 posts


🫣LeakyLooker: 1 Cross-tenant vulnerability? How about 9? (1/10)🧵 I’m incredibly proud to share LeakyLooker. I discovered 9 novel cross-tenant vulnerabilities in Google Cloud’s Looker Studio that broke fundamental design assumptions. Here is how I broke tenant isolation: 👇




🎄🎄🎄 I went to a meetup last night about cloud attacks and watched a talk by @terminatorLM about GCP, and it was SO GOOD!! I came home with so many ideas and so much motivation. Turns out it’s also on YouTube! please watch it, no matter which cloud you’re into🤭 youtu.be/nZWpDeY9p6g?si…







The inaugural Cloud VRP ☁️ bugSWAT event was a record-setter 🏆: With 91 identified vulnerabilities resulting in ~$1.6 million in rewards, the event underscored the value of collaboration with external security researchers. bughunters.google.com/blog/536440198…




