Upgrade to PRO for Only $50/Year—Limited-Time Offer! 🔥
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Bug Bounty: Do and Don’t
Search
Raden Ardiansyah Natakusumah
August 30, 2019
Technology
0
62
Bug Bounty: Do and Don’t
Raden Ardiansyah Natakusumah
August 30, 2019
Tweet
Share
More Decks by Raden Ardiansyah Natakusumah
See All by Raden Ardiansyah Natakusumah
Security stories in online payment company
rully
0
26
Protect your business with PCI DSS
rully
0
42
Intrusion Prevention System based on Machine Learning
rully
0
160
PCI DSS Security Awareness
rully
0
160
Other Decks in Technology
See All in Technology
AWS Security Agentの紹介/introducing-aws-security-agent
tomoki10
0
310
Lookerで実現するセキュアな外部データ提供
zozotech
PRO
0
170
会社紹介資料 / Sansan Company Profile
sansan33
PRO
11
390k
Snowflakeでデータ基盤を もう一度作り直すなら / rebuilding-data-platform-with-snowflake
pei0804
6
1.6k
Fashion×AI「似合う」を届けるためのWEARのAI戦略
zozotech
PRO
2
850
AlmaLinux + KVM + Cockpit で始めるお手軽仮想化基盤 ~ 開発環境などでの利用を想定して ~
koedoyoshida
0
110
生成AI時代におけるグローバル戦略思考
taka_aki
0
200
MariaDB Connector/C のcaching_sha2_passwordプラグインの仕様について
boro1234
0
670
生成AI活用の型ハンズオン〜顧客課題起点で設計する7つのステップ
yushin_n
0
240
日本Rubyの会: これまでとこれから
snoozer05
PRO
3
120
学習データって増やせばいいんですか?
ftakahashi
2
490
業務のトイルをバスターせよ 〜AI時代の生存戦略〜
staka121
PRO
2
220
Featured
See All Featured
What’s in a name? Adding method to the madness
productmarketing
PRO
24
3.8k
Faster Mobile Websites
deanohume
310
31k
JavaScript: Past, Present, and Future - NDC Porto 2020
reverentgeek
52
5.8k
How to Think Like a Performance Engineer
csswizardry
28
2.4k
[SF Ruby Conf 2025] Rails X
palkan
0
540
Building an army of robots
kneath
306
46k
Optimising Largest Contentful Paint
csswizardry
37
3.5k
Docker and Python
trallard
47
3.7k
How to Ace a Technical Interview
jacobian
281
24k
Save Time (by Creating Custom Rails Generators)
garrettdimon
PRO
32
1.8k
Build The Right Thing And Hit Your Dates
maggiecrowley
38
3k
Let's Do A Bunch of Simple Stuff to Make Websites Faster
chriscoyier
508
140k
Transcript
None
Bug Bounty: Do and Don’t @r_u_l_l_y For Educational Purpose Only
None
https://about.me/r_u_l_l_y
Bug bounty
February 2019
None
None
Bug report
Bounty hunters
None
None
Previous reports
Duplicate
They report
E-mail
Private chat
Customer care
The form
Text
Screenshots
Docx
PDF
Video
From all of that
One
None
Sample cases
None
None
6 minutes later
None
None
None
None
Proper report
Description
Impact
Recommendation
Severity
OWASP Risk Rating
CVSS v3.1
Proof of Concept
Bug bounty program?
None
Want to report?
[email protected]
Thank you