Posts tagged with #abuse-vrp
-
🔒 Zero-Click Phishing & Email DoS via Google's Identity Toolkit
1000 rvfet
Affected Company:GoogleHow I discovered a logic flaw in Google's Identity Toolkit that allowed unauthenticated attackers to send unlimited official security notifications with content injection for high-fidelity phishing and DoS.
-
P2/S2 Unauthenticated Redirect Loop Leading to DoS In Google Image Proxy
1000 rvfet
Affected Company:GoogleHow I discovered a logic flaw in Google's internal proxy service that led to unauthenticated, attribution-free DDoS amplification and infrastructure resource exhaustion.