Yandex also has a bug bounty program which pays a reasonable amount to security researchers who find security vulnerabilities inside their website, Recently i found multiple XSS vulnerabilities in a subdomain of yandex, The company accepted it as a vulnerability, but unfortunately i did not qualify for a bounty as the vulnerability was already reported by some one else.Here is the email by yandex
Tidak ada komentar:
Posting Komentar