Bug Bounty

Fri
09
Jan

Heroku Bug Bounty Program 2015 - Persistent Invitation Vulnerability

Heroku Bug Bounty Program 2015 - Persistent Invitation Vulnerability & Video

Vulnerability researchers of the evolution security gmbh team discovered two application-side vulnerabilities in the official heroku api and online-service web application. The issue has been discovered to the official bug bounty program of heroku in 2014Q4.

During the last week the updates has been confirmed by officials of the company after the famous bug bounty hunter disclosed a video that demonstrates the issue to the developer team. The second issue has the same impact with another location (deep dive). We only insert the link at the buttom that becomes available in some hours.

Tue
23
Dec

Facebook Social Network - Privacy Issue disclosed to Bug Bounty Program by Whitehat

Facebook Social Network - Bug Bounty Program reward 2500$ to Whitehat

A privacy issue has been disclosed by the whitehat "Paulos Yibelo" to the official Facebook Bug Bounty Program. The vulnerability in the framework that was disclosed to the bug report site allows to review restricted context without access permission.

Facebook patched the vulnerability to monday after the report arrived and the researcher disclosed the information 1 day later to the vulnerability laboratory infrastructure.

Pages

Subscribe to RSS - Bug Bounty