PowerBI Data Analyst - Create visualizations and dashboards from scratch
Save 40% on 3 months of Coursera Plus
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
This conference talk from nullcon Goa 2025 explores techniques for hunting authorization and logic vulnerabilities across Google products using basic hacking tools like Burp Suite. Learn how security researcher Cameron Vincent discovered significant vulnerabilities, including the ability to edit other users' apps on Google Play Store, access entire Google Workspace organizations' admin consoles, publish apps to Android devices in organizations, and view users' files on Google Ads. Discover practical approaches to vulnerability hunting with simple yet creative attack scenarios, and gain insights into making a living through bug bounty programs like Google's Vulnerability Reward Program (VRP). The 30-minute presentation covers responsible disclosure practices and provides valuable knowledge for both beginner and intermediate security researchers interested in bug bounty hunting.
Syllabus
Nullcon Goa 2025: Google Give Me Vulnz - Cameron Vincent
Taught by
nullcon