Why hack when it's leaking? How we attacked google firestore customers.

SUB-ZER0

SUB-ZER0

Advanced Member
Joined
December 4, 2025
Messages
116
Reaction score
6
Points
18
Firestore security rules are configured to allow public access (i.e., allow read, write: if true , you can use a curl command to test if the collection is publicly readable. You would make a GET request to the Firestore REST API.

To see this hidden content, you must reply and react with one of the following reactions : Like Like, Love Love, Haha Haha, Wow Wow
 
Activity
So far there's no one here
  • Tags
    cybersecurity data_leak google_firestore
  • Top