Back to directory
WRITEUP #4413

Firebase Cloud Messaging Service Takeover: A small research that led to 30k$+ in bounties

APIHardcoded API keysInformation disclosure
by@absshax(Abss)
Bounty
30,000
Program
Google
Published
Aug 17, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://abss.me/posts/fcm-takeover/
RELATED WRITEUPS
P3 (Medium) : How I Gain Access To NASA's Internal Workspace?!
ReconInformation disclosure
How I Got Bugs From Google Dorks
ReconInformation disclosure
How I can easily get four P1 at NASA using Simple Google Dorking.
ReconInformation disclosure
Vulnerabilities in Homepage Dashboard
RCESSRF
Authorization bypass due to cache misconfiguration
APIAuthorization bypass

Built with ❤️ by Shubham Rawat