Bug in “Bug Tracker” Enabled Researcher to Access Google’s Internal List of Critical Bugs
http://wccftech.com/google-awards-researcher-15600/
Security Flaw Could Have Enabled Attackers to Access Internal Google Bug Reports
Google, the king of finding security flaws in everyone’s products, apparently left its database of critical vulnerabilities insecure. Alex Birsan, a security researcher, managed to gain access to the company’s internal bug reporting system by making it believe he was an employee. Birsan said that attackers could have also gained access to the database getting the power of unpatched vulnerabilities that they could have potentially exploited to target users.