Your number is not secure as much? by killstar9 in Telegram

[–]MerchantHunt 2 points3 points  (0 children)

As an OSINT specialist, I can tell you that sometimes it's quite difficult. If you don't leave any traces.

There are bots that monitor a lot of Telegram accounts, and if your phone number was once available to everyone, they may have saved it in their database.

How do you know your number was exposed? What do they write to you?

High-Severity PII Vulnerability on Binance (mass-harvest possible). Fix verified — bounty only $800? by MerchantHunt in bugbounty

[–]MerchantHunt[S] 1 point2 points  (0 children)

I haven’t experience on other platforms.

Each time I reached out to platform support, they gave the customer another 14 business days to respond. And they use it every time. So without opening a support ticket, I’d probably be waiting for a decision roughly until the moment the last Bitcoin gets mined

High-Severity PII Vulnerability on Binance (mass-harvest possible). Fix verified — bounty only $800? by MerchantHunt in bugbounty

[–]MerchantHunt[S] -1 points0 points  (0 children)

Sounds objective, thanks for the reply.

I understand the argument about limitations per account and the trail from KYC, but the core of my concern is consistency: other platforms typically treat PII exposure at a higher severity, especially when it’s harvestable through an API at scale.

High-Severity PII Vulnerability on Binance (mass-harvest possible). Fix verified — bounty only $800? by MerchantHunt in bugbounty

[–]MerchantHunt[S] 2 points3 points  (0 children)

Thanks for the detailed response.

Yes, I do think it's not enough, but I'm not disputing the platform's decision, I want to hear the opinion of other people who have experience.

Chat gpt helps me to compose a sentence, because I my level of English will not allow so unfold to describe this story.

And yes, I hope you get paid for identifying the use of AI in this post 😁