View Single Post
Old 07-25-2016, 12:43 AM  
Konda
...
 
Konda's Avatar
 
Industry Role:
Join Date: Apr 2003
Posts: 2,280
Quote:
Originally Posted by vvvvv View Post
It always amazes me how little people will work for. If I root you and you are worth $100m+, a bounty of $25k isn't going to cut it.

Like this guy https://hackerone.com/reports/72243
they offered him only $500 for gaining access to production servers (because the domain he found the info on was not part of the official bounty program).
a year later they still paid him $9.5K though


Last month these people got $20K

https://www.evonide.com/how-we-broke...-20000-dollar/

Quote:
We gained remote code execution and would?ve been able to do the following things:
- Dump the complete database of pornhub.com including all sensitive user information.
- Track and observe user behavior on the platform.
- Leak the complete available source code of all sites hosted on the server.
- Escalate further into the network or root the system.
$20K is very little for something like that
Konda is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote