Researcher Hacked Google Using AI and Earned $500,000 Bug Bounty
ID: f34e06be-e173-5c04-879c-0f240abd5d73
STIX ID: report--f34e06be-e173-5c04-879c-0f240abd5d73
Feed Name: cybersecurityNews.com
Threat Score
A researcher used an AI-driven fuzzing pipeline plus harvested API keys and custom tooling to discover systemic access-control failures in roughly 1,500 Google APIs, uncovering PII leaks, account-takeover vectors (notably a Google Voice/Fiber API), Widevine key exposure, and other high-severity flaws; the campaign earned over $500k in bounties after responsible disclosure and prompted rapid patching of critical issues.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
