 
                                Liv Matan
@terminatorlm
Cloud Security Researcher
ID: 1488599156184825857
01-02-2022 19:44:38
122 Tweet
498 Followers
385 Following
 
         
         
         
        🏃♂️Meet ImageRunner: A privilege escalation vulnerability I discovered in GCP Cloud Run. Thank you for the Google VRP (Google Bug Hunters) team for working closely with us on this one. *Stay tuned for more blogs to come! tenable.com/blog/imagerunn…
 
        Say hi to ConfusedComposer😵💫- a fresh GCP privilege escalation vuln I discovered in Cloud Composer. This one is a variant of ConfusedFunction, which some of you might remember from my previous blog and recent talks. Shoutout to the Google VRP (Google Bug Hunters) team :) tenable.com/blog/confusedc…
 
        Published a write up on a couple of RCEs Sreeram KL Raidh Ĥere and I found in Google Cloud products. We got a $10k bounty - and somehow also received a pair of Nikes. stazot.com/?article=datap…
 
        Recently got back from Google’s bugSWAT LHE event in Tokyo 🇯🇵 - focused on AI, and what an experience! Met old friends, made new ones, and even found some valid vulns in Gemini and other AI products. Can’t wait to the next Cloud bugSWAT in a month! A big thanks to Google VRP (Google Bug Hunters)
 
                        
                    
                    
                    
                 
         
        With 𝐚 𝐭𝐨𝐭𝐚𝐥 𝐨𝐟 ~18 vulnerability reports across popular Google Cloud products, including several critical and high-severity issues, I’m excited to share that I earned 2nd place in the latest Google LHE! Huge thanks to the Google VRP (Google Bug Hunters) team and all the researchers.
 
                        
                    
                    
                    
                 
         
         
         
         
         
                         
                        