Уровень 0 · материалов: 3
В кластер входят документы об обнаружении технических ошибок в продуктах Google и взаимодействии исследователей с системой вознаграждений компании.
Общие признаки: безопасность сервисов Google, поиск и сообщение об уязвимостях, программы вознаграждения за баги, ошибки в работе систем Google
Группа выше: Bug bounty и раскрытие уязвимостей
Смысл: The text describes a security flaw in Google Webmaster Tools that allowed any user to request the removal of any website from Google's search index by manipulating request parameters, bypassing ownership verification. It notes that the flaw was patched quickly after being discovered by James Breckenridge, while also discussing the challenges and rewards associated with reporting bugs to Google.
A flaw in Google Webmaster Tools once allowed users to remove any website from the search index due to poor parameter validation.
Смысл: The text describes a peculiar incident where a hacker bought the google.com domain due to a glitch and the subsequent reward Google paid him for reporting it ethically.
A hacker briefly bought google.com for $12 due to a glitch and was rewarded with over $6,000 for his ethics.
Смысл: The text reveals a storage quota bypass in Google Drive and highlights the friction between independent security researchers and large tech companies' bug bounty processes.
A user discovered a way to get unlimited free storage on Google Drive by uploading new versions of the 'Getting started' file, which Google initially ignored until the discovery was made public.