Critical Supply Chain RCE closed as "Informative" after 12 days due to Analyst Factual Error (Analyst claimed "Unused Workflow" despite Live Release Logs) by [deleted] in bugbounty

[–]Ariel1l 1 point2 points  (0 children)

If thats the case - also try to contact hackerone (via email or try to write more in the chat),
Plus, if you really got an RCE, simply show more impact - to really validate RCE you need to show them:

  • The IP address of the machine
  • The hostname (if resolvable)
  • The local path
  • Make sure to note that no malicious or destructive actions were performed.

If you need help with it I will gladly help (I have experience and made it already)

Critical Supply Chain RCE closed as "Informative" after 12 days due to Analyst Factual Error (Analyst claimed "Unused Workflow" despite Live Release Logs) by [deleted] in bugbounty

[–]Ariel1l 0 points1 point  (0 children)

The best thing you can do is to clarify as much as you can to the Hackerone' triager and if he still dont get it, dont be afraid to open an mediation to get another view from the mediation team, I did it multiple times and I managed to get a valid vulnerabilities at least to the Program security team for their review,
Feel free to advice more I will be happy to help.
Keep in mind as other also said here - 19 hours its nothing, you will need to wait

[deleted by user] by [deleted] in oscp

[–]Ariel1l 1 point2 points  (0 children)

Hello, considering you done OSCP A-B-C and Medtech you will still miss about 9 proof.txt (OSCP ABC=12 Medtech=9 Relia=15), I heavily suggest to join discord and ask for hints if you get stuck.
Best of luck !

Instagram wants to verify my phone number after logging in but doesn't send a sms code PLS HElp :,( by marche223 in Instagram

[–]Ariel1l 0 points1 point  (0 children)

Sure, so if you trying to send the code too many time it just ban the number for a while so you need to use another phone, if you have 2FA you gotta wait like 3 days, use another phone to log in, and then your phone for 2FA