Coordinated and Responsible Vulnerability Disclosure Free Bug Bounty Program 267,673 coordinated disclosures
156,905 fixed vulnerabilities
215,584 websites, 17,470 VIP websites
7,195 researchers, 6,915 subscribers

Bittytorrent Bug Bounty Program

Bittytorrent runs a bug bounty program to ensure the highest security and privacy of its websites. Everyone is eligible to participate in the program subject to the below-mentioned conditions and requirements of Bittytorrent

Open Bug Bounty performs triage and verification of the submissions. However, we never intervene to the further process of vulnerability remediation and disclosure between Bittytorrent and researchers.

Bug bounty program allow all submissions.

Bug Bounty Scope

The following websites are within the scope of the program:

demo.bittytorrent.com

Non-Intrusive Submissions Handling

The following section encompasses submission of the vulnerabilities that do not require intrusive testing as per Open Bug Bounty rules:

- Cross Site Scripting (XSS)
- Open Redirect

- Cross Site Request Forgery (CSRF)
- Improper Access Control

General Requirements:

This script is demo of bittytorrent.

Account test on demo: openbugbounty:openbugbounty

Testing Requirements:

No restrictions!
Just avoid putting the site out

Possible Awards:

I do not have much possibility of reward but for every fault find, you will be on the hall of fame of the project github =)

Special Notes:

You can find all source here: https://github.com/atmoner/Bittytorrent

Community Rating

Provided by security researchers who reported security vulnerabilities via this bug bounty program:

 
Response Time  How quickly researchers get responses to their submissions.
Remediation Time  How quickly reported submissions are fixed.
Cooperation and Respect  How fairly and respectfully researchers are being treated.

  Latest Patched

      decolar.com
    Patched on 20.09.2018
      despegar.cl
    Patched on 20.09.2018
      despegar.com.ar
    Patched on 20.09.2018
      despegar.com.mx
    Patched on 20.09.2018
      axis.com
    Patched on 20.09.2018
      customs.go.kr
    Patched on 20.09.2018
      autotempest.com
    Patched on 19.09.2018
      tradekorea.com
    Patched on 19.09.2018
      radio.de
    Patched on 19.09.2018
      athensmagazine.gr
    Patched on 19.09.2018

  Recent Recommendations

    20 September, 2018
     Paruzzi_webm:
He pointed out a problem and was very helpfull in checking if I had fixed the problem.
    19 September, 2018
     franciscomesa:
Gh05tPT found a XSS vulnerability on our website and was quick to respond with technical detail. It's cool to find online researchers with this efficient profile.
    18 September, 2018
     iwayAG:
Thanks for the detailed report and the fast ans competent communication.
    18 September, 2018
     WebMore2:
Vielen Dank Armin für die gemeldete Schwachstelle. Wir könnten diese anhand deiner umfangreichen Informationen direkt beheben.
    18 September, 2018
     bencus23:
Thank you very much Rui for informing us about XSS (Cross Site Scripting) problem! You really helped us a lot! Big thanks!