@amazonIN
i purchased a product and today it delivered, the product which i purchased, was replaced & got the cards in the box. This happened with me second time and now that product is unavailable and even they remove their return policy. Even no reply from amazon support.
Hello @geeksforgeeks
I reported a problem to your support personnel four days ago, but I haven't heard anything since.
More information for issue, DM me.
Today, I submitted a report where misconfigure param permits any user to access directory files which contains tons of information in plaint text like: Email, password, ip, mySQL database tables, access.logs file and many more.
Waiting for their response now 🤞
Today, when I examined their program, I noticed that they had indeed addressed the two vulnerabilities I had previously alerted them to. However, they neglected to notify me of these fixes
#4/4
Here i'm reffereing about my worst bug hunting program in crypto that is @MolliePayments.
This crypto program have a BBP but they don't follow their rules of security program. You can see in the below why i'm saying this about this company.
#1/3
#bughunter#crypto
Back in November 2021, I reported an issue regarding an OTP bypass, but I had wait for around 2-3 months without receiving a response.
#3/3
#bughunter#crypto
While going through my previous cryptocurrency program, where I had conducted an investigation, I unexpectedly came across a program called Mollie BBP. In early 2022, I sent a second email to the organization, but unfortunately, their security personnel did not respond.
#2/3
Tip: Always look the content of bug hunters on Social media
I got an issue where the names of four or more private programmes were accidentally posted on social media by one of the bug hunters.
NA due to violations of other user but got some domains
#informationsecurity#Tips