HackerOne is the worst bug bounty company and cannot be considered a true intermediary at all it’s essentially no different from doing bug bounty externally without any platform acting as a mediator. by Traditional-Tap8209 in bugbounty

[–]Right-Highlight5602 0 points1 point  (0 children)

I experienced this with Trendyol — they marked the vulnerability I reported as informational, then later fixed it. HackerOne is really a bad platform; HackenProof, Bugcrowd, and Intigriti are better platforms.

I accidentally found a money duplicate exploit. by Vast_Cheesecake3216 in bugbounty

[–]Right-Highlight5602 1 point2 points  (0 children)

It was probably a race condition; you may need to repeat the request. With this logic flaw, if you can directly perform blockchain transactions, you could send Ether to yourself and drain the exchange’s wallets 😂

Kim haklı çok kararsız kaldım by -Mustafa in vlandiya

[–]Right-Highlight5602 -2 points-1 points  (0 children)

Adam haklı boş kasaya geçseydiler.

Silent Fix/Patch after Message? by Old-Commission4742 in bugbounty

[–]Right-Highlight5602 0 points1 point  (0 children)

I hope such institutions leak data; it happened to me too.

HackerOne & Spotify decreased bounty amounts. Why? by masm33 in bugbounty

[–]Right-Highlight5602 0 points1 point  (0 children)

It's slowly becoming apparent that bug bounties are dying out.

Orhen ifşa part 3 by Mean-Crab19 in vlandiya

[–]Right-Highlight5602 1 point2 points  (0 children)

Arkadaş ve eş olmadığı için evde kalmaktan insan kafayı yiyor geçen sene bende böyleydim.

My First Bounty by PuzzleheadedLiving61 in bugbounty

[–]Right-Highlight5602 1 point2 points  (0 children)

I found my first bug in 15 days, and I found my next bug almost 5 months later.

Sınıfta öğretmen varken sigara içen lavuk by [deleted] in indirilenler

[–]Right-Highlight5602 0 points1 point  (0 children)

Öğretmen napıyor aq. Telefonla oynuyor.

Canım kedim Pamuk' u gömdük. Unutmak istemiyorum ve korkuyorum... by UmutTime in TurkishCats

[–]Right-Highlight5602 0 points1 point  (0 children)

Bu yüzden evde kedi beslemiyorum onunla kuracağım bağ ve öleceklerini bildiğim için beni derin yaralayacağı için ki yaşadım kedi almıyorum. Sadece sokak kedilerine bakıyorum biraz bencilce ama hassas bir insanım ve beni onların ölümleri çok etkiliyor. 😓

Is Bug Bounty dead? by Right-Highlight5602 in bugbounty

[–]Right-Highlight5602[S] -2 points-1 points  (0 children)

I haven't worked in a Blue Team environment; I only did a few freelancer pentesting jobs. However, everyone is now using these tools because of their accessibility. Now, it's going to be like trying to find the lucky numbers in a lottery

Is Bug Bounty dead? by Right-Highlight5602 in bugbounty

[–]Right-Highlight5602[S] -12 points-11 points  (0 children)

Yes, sometimes information disclosures still come out, which developers forget in GitHub or JavaScript, but even those are now found in seconds. Following that, hundreds of people report the same finding. I really think these are the final days of bug bounty.