Another interesting case involved an open redirect vulnerability on a nearly decade-old login page within a YesWeHack program, which required a JWT signature bypass technique to successfully trigger the exploit.
We successfully identified security vulnerabilities across major platforms including Google, as well as multiple private and public bug bounty programs on YesWeHack and other platforms.
#bugbounty#hackerone#startup#cybersecurity