3 hrs of hunting, leading to IDOR and Auth bug
Found a new target to play with, big app with many features and settings to mess with. The program is very slow on paying, > 1 month, but the bounties are decent, so I’m hoping it will pay dividends in the long run.
4 hrs for Business Logic Errors
The site referencing a dead domain that I purchased was closed as a dupe for someone who reported it as a “potential takeover”
Pretty bummed out about it, but that’s the game.
4 hrs for Business Logic Errors
4 hrs for Business Logic Errors
Weekly Wrapup
Only had $450 pay out this week from a couple of CSRFs
I’ve submitted some dozen bugs this week and hoping to start ramping up some more scripting. I’ve been neglecting that and blog reading this week.