My most recent bug bounty. Guidelines show that the expected payout is around $1k. <3 these programs
  • The vuln is an xss which I've been able to trigger even with both the client WAF and clouldflare WAF trying to prevent me.

    I think i'll start a blog at some point mainly for disclosures after these vulns get fixed.

    I fucking love living in an era where hacking things is not only legal, but you even get paid to do it!
    1
    reply