TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Security researcher penalised $3750 by Facebook for verifying vulnerability

46 点作者 kailanb超过 3 年前

3 条评论

executive超过 3 年前
Seems you did not disclose this over the Facebook Portal Smart Video Calling Touch Screen. Consider yourself lucky they did not deduct $7000 instead.
some_chap超过 3 年前
Hmm, so they reported it to FB &amp; apparently had the vuln confirmed but then retested the vuln a couple of times at 12h &amp; 22h after reporting&#x2F;confirmation, with the implication that each time they were exposing other user&#x27;s data...<p>Not too surprised they reduced the award, tbh...
1B05H1N超过 3 年前
Sucks but it goes against their bug bounty tos facebook.com&#x2F;whitehat.<p>It&#x27;s sorta bad to punish folks who have been helping secure the org for a while (in my opinion).