India

Google Rewards 2 Indian Hackers; Know Why

New York: New York: Google has rewarded two Indian hackers for reporting vulnerabilities in four Google Cloud Platform (GCP) projects.

Google gave Sreeram KL and Sivanesh Ashok $22,000 (around Rs 18 lakh) as bug bounty, which is given by tech giants to individuals who detect an error or vulnerability in their computer programme or system.

The hacker duo’s biggest bounty was machine learning training and deployment platform Vertex AI, which earned them a pair of $5,000 payouts for a server-side request forgery (SSRF) bug and patch bypass, The Daily Swig reported.

Sivanesh explained the bug and how they came across vulnerabilities in GCP in his personal blog ‘Geeky Cat’.

“A write-up about how Sreeram KL and I found a bug in Google Cloud that allowed us to take over a victim’s compute engine VM,” Sivanesh wrote on Twitter.

“The flaw resided in Vertex AI’s workbench feature, which enables the creation of Jupyter notebook-based development environments on the cloud,” Sreeram said in his blog.

What Is SSRF Bug?

SSRF is a web security vulnerability which allows an attacker to induce the server-side application make requests to an unintended location.

The attacker may cause the server to make a connection to internal-only services within the organisation’s infrastructure. The attacker may also be able to force the server to connect to arbitrary external systems, potentially leaking sensitive data such as authorization credentials.

OB Bureau

Recent Posts

Bhubaneswar Sees Over 2°C Drop In Night Temp As Mercury Plummets Below 10°C At 11 Places In Odisha

Bhubaneswar: While night temperature slightly increased in western Odisha, a declining trend was seen in…

21 minutes ago

Odisha Likely To Host Hockey As Bid For 2036 Olympics Takes Pan-India Route

Bhubaneswar: Although Ahmedabad remains the focal point of India’s bid to host the 2036 Olympics,…

35 minutes ago

Here’s Why Class 12 Student Who Was Detained Sent Bomb Threat To Delhi Schools

New Delhi: The Delhi Police detained a Class 12 student for a series of bomb…

56 minutes ago

Pravasi Bharatiya Divas: Saudi Royals’ Doctor, Japan CEO Among 27 To Be Honoured Today

Bhubaneswar: President Droupadi Murmu, who arrived in Bhubaneswar last evening, will honour overseas Indians during…

1 hour ago

Is Virat Kohli A Victim Of Elite Performance Decline Syndrome?

"The arc of a cricketer's career often concludes with a struggle to come to terms…

2 hours ago

One Dead, 30 Injured As Tourist Bus Falls Off Bridge In Odisha’s Nayagarh

Bhubaneswar: One person died and 30 others were injured when a tourist bus fell off…

2 hours ago