Sreeram KL

2.1K posts

Sreeram KL banner
Sreeram KL

Sreeram KL

@kl_sree

Infosec enthusiast! | @googlevrp fan boy 😍 | CTF @thehackerscrew1 | Web Security

Republic of India เข้าร่วม Ocak 2018
924 กำลังติดตาม2.6K ผู้ติดตาม
Sreeram KL รีทวีตแล้ว
nopnop
nopnop@__nopnop·
The written version of my BSides Riga and @bsidesvilnius talks is up: exploiting git integrations in cloud services, with four bugs I found in GCP (Looker, Dataform), including the one that won me MVH. nopnop.pro/2026/06/17/exp…
English
4
41
178
25.2K
Sreeram KL รีทวีตแล้ว
Critical Thinking - Bug Bounty Podcast
Source maps left enabled in production on a Google site exposed the full spec for First Party Auth v2, down to the header fields that no public writeup had. These exist so minified JS maps back to readable source for debugging, they hand that source to anyone who looks, comments and all. The fields it laid out were the ones FPAv2 folds into its signed authorization header, the internal scaffolding that normally never leaves Google. With them Brutecat could compute a valid FPAv2 header and authenticate to most of Google's API surface straight from the browser, one click per method, and since first-party auth is the way in for roughly nine of ten APIs carrying a client6.google.com alias, a single forgotten source map became working auth across nearly the whole estate. That was the layer the AI scanning sat on top of as it worked through Google's APIs, $670K in bounties over the following 3~4 months.
English
3
6
98
6.2K
Sreeram KL รีทวีตแล้ว
skull
skull@brutecat·
Not everyone who reports to Google Cloud VRP does a writeup, but critical bugs still show up in CVEs and release notes Made a tool that aggregates both so you can see the types of bugs getting found in GCP gcp-cves.brutecat.com
English
5
41
327
20.6K
Sreeram KL รีทวีตแล้ว
GanaSec
GanaSec@ganaseclabs·
The same bug class Google Project Zero's Ian Beer reported in 2017 as CVE-2017-13847. Apple patched it then. The fix regressed. Nine years later, the ghost came back. Read here : ganasec.com/blog/the-2017-… Patched across iOS, iPadOS, macOS, tvOS, visionOS, and watchOS. #GanaSec
English
0
8
25
6.2K
Sreeram KL รีทวีตแล้ว
@securitymb@infosec.exchange
@[email protected]@SecurityMB·
Anyone I know interested in joining the Google Security Team in Zurich? Let me know, I can give a referral :D Here's the job posting: google.com/about/careers/…
English
12
36
224
29.7K
Sreeram KL รีทวีตแล้ว
0xSabir
0xSabir@0xSabir·
$14,337 Google Bug Bounty 🤑 Hacking Google Support: Leaking millions of customer records by Michael Dalton 🤯🔥 👨‍💻 Michael Dalton (michaeldalton.au) 🔗 michaeldalton.au/posts/hacking-…
English
3
51
402
17.4K
Sreeram KL รีทวีตแล้ว
inspector-ambitious
inspector-ambitious@inspector_amb·
My first memory corruption report. Believe it or not, I didn't use AI to find the vulnerability or to write the exploit. I used it only to learn faster. Took me 5 months. It will be my last, starting new projects...
inspector-ambitious tweet media
English
56
94
3.5K
105.9K
Sreeram KL รีทวีตแล้ว
OmerAF
OmerAF@omer_asfu·
The takeaway: If you don't account for how your cloud provider handles resources internally, you aren't really in control of your data. Big thanks to the @GoogleVRP team for the quick patches. Read the full breakdown here: focalsecurity.io/blog/kicking-t…
English
1
10
26
1.7K
Sreeram KL รีทวีตแล้ว
NDevTK
NDevTK@ndevtk·
The first version of APIClient has been released chromewebstore.google.com/detail/api-sec… it supports API learning with key tracking based on usage and Google/Swagger discovery documents plus XSS finding also replacement for postLogger extension. It's not perfect, create GitHub issues :)
English
0
3
14
1.4K