Finding and disclosing 0-days in the cloud, protecting organizations in sensitive industries from nation state actors

Joined January 2026
Photos and videos
Focal Security retweeted
I achieved a cross-tenant #RCE in #GoogleCloud simply by abusing predictable bucket names. ๐Ÿชฃ In my latest research for @FocalSecurity, I look into "Bucket Squatting" - a cross-tenant attack that landed me 3 critical vulnerabilities in GCP. Here is how it works:
3
50
216
25,834
We found ๐—š๐—ฎ๐˜๐—ฒ๐˜„๐—ฎ๐˜†๐—ง๐—ผ๐—›๐—ฒ๐—ฎ๐˜ƒ๐—ฒ๐—ป (๐—–๐—ฉ๐—˜-๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฑ-๐Ÿญ๐Ÿฏ๐Ÿฎ๐Ÿต๐Ÿฎ)โ€”a critical cross-tenant flaw in Google Cloud's Apigeeโ€”but what if a malicious actor found it first? Check out our article explaining how to preemptively mitigate such vulnerabilities: focalsecurity.io/blog/mitigaโ€ฆ
1
1
426
Check out our article showcasing how we found GatewayToHeaven (CVE-2025-13292), a cross-tenant vulnerability in GCP's Apigee: focalsecurity.io/blog/gatewaโ€ฆ
1
220