Bug Bounty

Mon
15
Apr

PayPal Inc pays 3000$ reward to Laboratory Researcher

PayPal Inc pays 3000$ reward to Laboratory Researcher

Some month ago the vulnerability laboratory research team disclosed a critical vulnerability to the paypal site security team. The issue was tracked as 52th bug bounty submission by the laboratory core team. The author of the issue is Benjamin Kunz Mejri the owner and founder of the research company. The advisory document uncovered a remote sql injection vulnerability with critical severity in the official PayPal GP+ company service web application.

Thu
04
Oct

PayPal Inc Bug Bounty Submission #9 – Analysis & Review

PayPal Inc Bug Bounty Submission #9 – Analysis & Review

In the last month our Team participated multiple times in the official paypal bug bounty program. Karim H.B., Benjamin Kunz Mejri, Ibrahim El-Sayed and a lot of international friends joined large hacking session and discovered bugs to paypal inc. Today we want to talk about the first complete fixed and released issue in the paypal core application. The vulnerabilities has been discovered by Benjamin Kunz Mejri the founder of the vulnerability-labs 2 days ago.

Multiple persistent input validation vulnerabilities are detected in the official Paypal ecommerce website content management system (Customer/Pro/Seller). The bugs allow remote attackers to implement/inject malicious script code on the application side (persistent) of the paypal web service.

Pages

Subscribe to RSS - Bug Bounty