Daily log of security activity for people curious what bug bounty life is like.
1.5 hrs of going to old wells with no luck
1 hr of old well digging and found an xss
The xss was a result of HTTP parameter polluition to get by a filter
The filter would fix the first iteration, but the second would lay the payload