Bug-Bounty

3 posts

/configconfusion-google-no-bounty/configconfusion-google-no-bounty.png
Google Told the Researcher Nice Catch Then Refused to Pay and Never Fixed It

June 23, 2026

Google told a security researcher his bug was a nice catch, lined up his payout, then eleven days later called it harmless and refused to pay a cent. The flaw …

/nightmare-eclipse-microsoft-zero-day-war/nightmare-eclipse-microsoft-zero-day-war.png
Six Working Windows Zero Days and the Researcher Microsoft Called a Criminal

May 31, 2026

Six working Windows attacks are sitting in the open right now, three of them already seen in a real intrusion, and the researcher who published them did it …

/github-rce-cve-2026-3854/featured-image.png
GitHub RCE CVE-2026-3854: One Semicolon, Millions of Private Repositories

April 29, 2026

GitHub RCE CVE. A semicolon broke GitHub. One character in a push option field, and a security researcher was running code on the backend servers that store …