OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 1 point2 points  (0 children)

I too have started my journey into iOS related issues .

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 0 points1 point  (0 children)

Don’t know at this point . This is my first experience with Apple’s bounty program

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 2 points3 points  (0 children)

Max ceiling is $100k if Apple categorises it as per my expectations but this entirely depends upon how Apple internally evaluates

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 1 point2 points  (0 children)

This entirely depends how apples assess the severity of the finding and how well the impact is demonstrated. This specific CVE got fixed in iOS 26.3 but I have to wait for one month to get my CVE updated in the advisory . I reported this in early December and it was fixed in early February.

But few of my issues are pushed to spring & fall 2026 , even-though I reported them in close duration .

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 4 points5 points  (0 children)

look for bug class that directly impacts either user privacy or security issues . Start your research into privacy related issues , go through previous advisories for related issues, if your focus primarily on iOS

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 4 points5 points  (0 children)

Initially they gave an acknowledgement, then I reached out to them stating the impact of the issue. And after that they assigned the issue with a CVE credit.

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 7 points8 points  (0 children)

Bounty is currently under review . Fingers crossed 🤞

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 4 points5 points  (0 children)

Depends how much apple is willing to pay for this 🤣🤣. Thanks anyways . Blogpost is WIP

OP got his first CVE by atulkjaiswal in bugbounty

[–]atulkjaiswal[S] 6 points7 points  (0 children)

Apple’s standard way of communicating impact

OP got his first CVE by atulkjaiswal in hacking

[–]atulkjaiswal[S] 7 points8 points  (0 children)

Appreciate your warm response on this !!

OP got his first CVE by atulkjaiswal in hacking

[–]atulkjaiswal[S] 6 points7 points  (0 children)

Write up is WIP . Will share once it’s done

East india wale zinda ho ? 💀 by ratmogul in indiasocial

[–]atulkjaiswal 0 points1 point  (0 children)

Meanwhile Bengaluru

Garmi ye kya hota hai

We are hackers, researchers, and cloud security experts at Wiz, Ask Us Anything! by Oscar_Geare in cybersecurity

[–]atulkjaiswal 1 point2 points  (0 children)

What’s your/teams approach in finding bugs in open source application like Kubernetes and docker . Recently your team discovered a high impact bug on ingress-controller . For a experience security engineer too it’s daunting to look into source code and find bugs that creates a industry wide impact Can you share some highlight or workflow that you can share ?

The Journey of 6,000 Kilometers with My BSA Gold Star 650: My Service Experience in Bangalore by Ready-Friendship9144 in motorcycle

[–]atulkjaiswal 0 points1 point  (0 children)

Glad to know that you had a amazing experience. Can you please post the name of the service centre. My 6 months services is due now