@AnthropicAI A few days ago I had Claude Fable 5 pick out a donut for me. Today it became clear: the US government knows this kind of power cannot fall into the hands of foreign nationals. God help us all.
@Hacker0x01 It has the same effect if you give an AI agent skills or retrieval. What is the difference between that and training an AI model? Hackerone keeps the benefit and doesn't give it to the third party model provider. Zero benefit for bug hunters. You'll cannibalize your best product.
@0xShaedyW I wouldn't be surprised if most of those reports were valid and they just closed them as info or duplicate. Duplicate is also not counted as a "valid" bug in that metric.
@5mart__@MrTuxracer@Masonhck3571@intigriti There is a security impact but it's too low for them to care about. You shouldn't waste time looking for that kind of bug. Most companies have a higher bar than that to pay for a bug.
@thedawgyg@johnumorujo It is what made me interested in security and bug bounties too. Profile created 1 month after that video https://t.co/IMQViQDPN6
@IceSolst I tried it and immediately got blocked by cloudflare bot detection. In burp there's a plugin to bypass that by changing the TLS fingerprint but I didn't see any simple workaround for caido so I went back to burp.
@Masonhck3571 I've had good experiences with them before and they at least usually respond and pay quickly. Not a bad program overall compared to others but the cvss reasoning is bad.
@VivekxK@richardhenry@Chase@TheJusticeDept Isn't this legal? As far as I know, price discrimination is only illegal in a few circumstances. I think student discounts would be illegal if charging different prices by user agent is illegal.