Posted on Nov 24, 2016
HackerOne: Vulnerability Coordination and Bug Bounty Platform
5.5K
9
6
5
5
0
Posted 8 y ago
Responses: 2
I found one bug for Square! It's a cool place to make some $$. I need to get that book
(2)
(0)
SSG Derek Scheller
nice what process do you go through to find bugs?? That seems to be my weakest link is coming down with a process to go through to find vulnerabilities.
(0)
(0)
SPC(P) (Join to see)
SSG Derek Scheller - The one I did was a basic URL fuzzing and I found some txt files that Im guessing weren't supposed to be there.... They gave us a task though... I would test XSS and SQLi on sites
(0)
(0)
SSG Derek Scheller
SPC(P) (Join to see) - Yeah thats the thing you had a tasking, I would like to have a process list
(1)
(0)
SPC(P) (Join to see)
SSG Derek Scheller - This might help https://hackerone.com/facebook Facebook is looking for these specific things
Facebook's Vulnerability Disclosure Policy
This security page documents any known process for reporting a security vulnerability to Facebook, often referred to as vulnerability disclosure (ISO 29147), a responsible disclosure policy, or bug bounty program.
(1)
(0)
Read This Next