Hacking, AppSec, and Bug Bounty newsletter
2017-10-27 | Section 702 reforms, Hom-Bot camera vuln, and Equifax was warned
Friday, October 27
Allowing arbitrary amount to become a Gold Member [20 upvotes] - $500 bounty for this report to Zomato by @prateek_0490.
CSV Injection https://hub.grab.com [9 upvotes] - $251 bounty for this report to Grabtaxi by @poison.
Yahoo, Quora, Airbnb, Infogram, Qiwi, IRCCloud, Uber and dozens more resolved bugs in the past 24-hours. As always, you can see all the latest and greatest disclosures and bounties on www.hackerone.com/hacktivity
OTHER ARTICLES WE’RE READING
iOS Privacy: watch.user - Once a user grants access to the camera, the app can use it without the user's consent
Check Point research reveals LG IoT vulnerability in Hom-Bot robot vacuum cleaner
ABOUT ZERO DAILY
Zero Daily is a daily newsletter that highlights application security, bug bounty, and hacker focused topics. The content is curated with love by @luketucker and brought to you by HackerOne.
Friends don’t keep good things to themselves - forward this to your homies and co-workers. BTW, want to see who runs bug bounties?
Have a news tip / story to highlight? We’d love to hear about it. Email: firstname.lastname@example.org
Get this email forwarded to you? Click here to subscribe to the Zero Daily
"The reason bad behavior on the Internet occurs is because of a lack of consequence"