bug-bounty497
google347
xss301
microsoft290
facebook261
rce211
exploit198
malware168
apple161
cve135
account-takeover115
bragging-post102
privilege-escalation96
csrf90
phishing86
browser75
writeup74
authentication-bypass69
supply-chain67
dos66
stored-xss65
reflected-xss57
ssrf56
reverse-engineering54
access-control52
react52
input-validation49
cross-site-scripting48
cloudflare47
aws47
docker46
web-security46
lfi46
smart-contract45
sql-injection45
web-application44
ethereum44
ctf43
web343
defi43
oauth43
node41
race-condition39
pentest39
open-source39
idor37
cloud37
info-disclosure36
burp-suite36
auth-bypass35
0
7/10
Security researcher discovered a local file inclusion (LFI) vulnerability on Google's springboard.google.com by first identifying an authorization bypass through directory enumeration with wfuzz, then escalating it to read arbitrary files like /proc/self/environ on production servers with admin privileges. The initial auth bypass was rejected for reward, but the escalated LFI earned a $13,337 bounty after two months of coordination with Google's VRP program.
lfi
local-file-inclusion
authorization-bypass
auth-bypass
directory-enumeration
google
bug-bounty
recon
subdomain-enumeration
wfuzz
production-servers
vulnerability-escalation
Google VRP
springboard.google.com
Omar Espino
@omespino
wfuzz
domained
masscan
SecLists
ESCAL8
Intigriti
HackerOne