By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
PulseReporterPulseReporter
  • Home
  • Entertainment
  • Lifestyle
  • Money
  • Tech
  • Travel
  • Investigations
Reading: Google patched a significant safety flaw that would’ve uncovered YouTubers’ electronic mail addresses
Share
Notification Show More
Font ResizerAa
PulseReporterPulseReporter
Font ResizerAa
  • Home
  • Entertainment
  • Lifestyle
  • Money
  • Tech
  • Travel
  • Investigations
Have an existing account? Sign In
Follow US
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
PulseReporter > Blog > Tech > Google patched a significant safety flaw that would’ve uncovered YouTubers’ electronic mail addresses
Tech

Google patched a significant safety flaw that would’ve uncovered YouTubers’ electronic mail addresses

Pulse Reporter
Last updated: February 12, 2025 6:35 pm
Pulse Reporter 5 months ago
Share
Google patched a significant safety flaw that would’ve uncovered YouTubers’ electronic mail addresses
SHARE


Google has fastened a safety flaw that uncovered the e-mail addresses of YouTube customers, a doubtlessly large privateness breach.

Google — which owns YouTube — has confirmed that the vulnerabilities found by cybersecurity researchers, who go by Brutecat and Nathan, have been addressed, in accordance with a report in BleepingComputer.

Apart from the breach of privateness that may’ve affected all YouTube accounts, many YouTubers like controversial content material creators, investigators, whistleblowers, and activists maintain their identities nameless to guard their security. Exposing such customers’ emails may have had large ramifications.

SEE ALSO:

Google is reportedly creating a ‘pretend’ electronic mail function that can assist you keep away from spam

Brutecat found that blocking a person on YouTube revealed a singular inside identifier Google makes use of for every person throughout all of its platforms (Gmail, Google Drive, and many others.) known as a Gaia ID. They then found out that merely clicking the three dot icon of a person’s stay chat profile to entry the block perform triggered an API request that exposed their Gaia ID.

Mashable Gentle Velocity

This in itself is already a safety flaw because it uncovered the distinctive identifiers for YouTube accounts that’s solely meant for use internally. However now that Brutecat was capable of retrieve customers’ Gaia IDs, they got down to see if they might reveal the e-mail addresses related to every ID.

With Nathan’s assist, the 2 researchers surmised they might do that with “previous forgotten Google merchandise since they most likely contained some bug or logic flaw to resolve a Gaia ID to an electronic mail.” Utilizing Google’s Recorder app for Pixel gadgets, they examined sharing a recording with an obfuscated Gaia ID and blocked the person from receiving an electronic mail notification by renaming the file with a 2.5 million letter title, which broke the e-mail notification system as a result of it was too lengthy.

Now that the hypothetical sufferer would not be notified, the researchers despatched the file sharing request with the Gaia IDs, successfully changing the ID into an electronic mail deal with.

Due to Brutecat and Nathan’s sleuthing, Google was capable of lock down that vulnerability and stop hackers from accessing everybody’s electronic mail deal with related to their YouTube accounts. The vulnerability was disclosed to Google in Sep. 2024 and was lastly fastened on Feb. 9, 2025. That is a very long time for potential publicity, however Google confirmed to BleepingComputer that there have been “no indicators that any attacker actively exploited the failings.”

In alternate for his or her work, the researchers obtained a cool $10,633. Phew, disaster averted.

Matters
Cybersecurity
YouTube



You Might Also Like

US sanctions Russian group over AI-generated election disinformation

Even Streaming Providers May Be Damage by Trump’s Tariffs

Moveworks joins AI agent library craze

17 Greatest Early Amazon Spring Sale Offers (2025)

As we speak’s Hurdle hints and solutions for December 25

Share This Article
Facebook Twitter Email Print
Previous Article Heathrow broadcasts main revamp and third runway plans Heathrow broadcasts main revamp and third runway plans
Next Article Drake Response To Kendrick Lamar Tremendous Bowl Halftime Present Drake Response To Kendrick Lamar Tremendous Bowl Halftime Present
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Weekly Newsletter

Subscribe to our newsletter to get our newest articles instantly!

More News

HP OmniBook X Flip 14 Assessment: Flip Flop
HP OmniBook X Flip 14 Assessment: Flip Flop
29 minutes ago
Jimmy Buffett’s widow accuses late musician’s monetary advisor of mishandling his 5 million property
Jimmy Buffett’s widow accuses late musician’s monetary advisor of mishandling his $275 million property
44 minutes ago
Wolverine And Jack Reacher Are Made For Male Gaze
Wolverine And Jack Reacher Are Made For Male Gaze
58 minutes ago
Tesla Diner & Drive-In opens in California
Tesla Diner & Drive-In opens in California
1 hour ago
The last word information to Viking cruise ships and itineraries
The last word information to Viking cruise ships and itineraries
2 hours ago

About Us

about us

PulseReporter connects with and influences 20 million readers globally, establishing us as the leading destination for cutting-edge insights in entertainment, lifestyle, money, tech, travel, and investigative journalism.

Categories

  • Entertainment
  • Investigations
  • Lifestyle
  • Money
  • Tech
  • Travel

Trending

  • HP OmniBook X Flip 14 Assessment: Flip Flop
  • Jimmy Buffett’s widow accuses late musician’s monetary advisor of mishandling his $275 million property
  • Wolverine And Jack Reacher Are Made For Male Gaze

Quick Links

  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Service
  • Disclaimer
2024 © Pulse Reporter. All Rights Reserved.
Welcome Back!

Sign in to your account