DEV Community

Discussion on: From data leak to account takeover

Collapse
 
gmartigny profile image
Guillaume Martigny

Nice post, I hope you warn the owner of said application. You could even ask for some compensation for your security check.

Collapse
 
antogarand profile image
Antony Garand

Of course!

After finding the vulnerability, I responsibly disclosed it and waited until it was patched before publishing this post.

For those interested in such process, hackerone and bugcrowd are public bug bounty programs!