Google fixes bug that could reveal users' private phone numbers | TechCrunch

Key takeaways:

  • A researcher found a bug that could reveal Google account recovery phone numbers.
  • The bug exploited Google’s account recovery system and bypassed rate limits.
  • The process could expose numbers in under 20 minutes using a script.
  • Google fixed the issue after being notified in April.
  • The researcher, brutecat, was awarded $5,000 by Google’s bug bounty program.
Google fixes bug that could reveal users' private phone numbers | TechCrunch
Site Logo
TechCrunch
Go to source




Be Part of Something Big

Shifters, a developer-first community platform, is launching soon with all the features. Don't miss out on day one access. Join the waitlist: