Page 1 of 1

Domain Takeover bugs etc

Posted: Thu Jul 12, 2018 2:29 am
by AnotherWayIn
Are we able to submit domain takeover bugs? They can be proved passively (inferred by error pages and dig output) so wouldn't cause any impact. What about authentication bypass too? It would be great if you can provide some samples of issues you have validated that don't fall under the regular XSS etc.

Thanks

Re: Domain Takeover bugs etc

Posted: Thu Jul 12, 2018 6:37 am
by x1admin
At this moment we accept xss,csrf,or and iac only