5 ms·
How much did you get for this bug via their bug bounty program?
by ryhanson 13y ago
How much did you get for this bug via their bug bounty program?
- objclxt 13y agoGiven the seriousness, I would hope it is in the five figures (Facebook don't go into details about rewards, but a comparable exploit for a Google Account would net you at least $10k).
- deleted 13y ago[deleted]
- pdappollonio 13y agoLet's hope author will update the post with some clues :P
- franjkovic 13y ago12,500$. (More than)Good enough for me, takes a year of work on average salary to get this much money in my country.
- bennyg 13y agoThat's awesome. Congrats to making the money, and raising the issue correctly - as well as not going off of the ethical deep end.
- meowface 13y agoThat's awesome. Also sounds like you should maybe try to move to a different country, if you can!
- brianshaler 13y agoHe'd probably be better off staying where he is and courting customers in the US and UK. The combination of a low cost of living and a metropolitan income (or as close as possible) is a splendid combination.
- adamnemecek 13y agoOut of curiosity, how much time did you spend on this?
- franjkovic 13y agoI spend 4-5 hours a week hunting for bugs. The "session" I found this bug in was around 2 hours long.
- tomschlick 13y agoCongrats. This is exactly how responsible disclosure is supposed to work. You spend valuable time looking for holes and when you find one they fix it quickly and compensate you for your trouble.
- TomAnthony 13y agoWere you able to do this all with the dummy accounts that Facebook provides for the Bug Bounty program or did any steps require a genuine account? Just curious as I always wonder whether there are bugs that affect genuine accounts and not dummy accounts or vice-versa.
- turshija 13y agoSvaka cast druze :)
- foobarqux 13y agoProbably worth $500k to government actor.