2/12/21
3 hrs of hunting, leading to IDOR and Auth bug
2/13/21–2/15/21
Vacation
2/16/21
Found a new target to play with, big app with many features and settings to mess with. The program is very slow on paying, > 1 month, but the bounties are decent, so I’m hoping it will pay dividends in the long run.
4 hrs for Business Logic Errors
2/17/21
The site referencing a dead domain that I purchased was closed as a dupe for someone who reported it as a “potential takeover”
Pretty bummed out about it, but that’s the game.
4 hrs for Business Logic Errors
2/18/21
4 hrs for Business Logic Errors
Weekly Wrapup
Only had $450 pay out this week from a couple of CSRFs
I’ve submitted some dozen bugs this week and hoping to start ramping up some more scripting. I’ve been neglecting that and blog reading this week.