possible case of extortion from a researcher?

Questions or suggestions about the platform
Post Reply
pejadesign
Posts:1
Joined:Tue May 29, 2018 1:46 pm
possible case of extortion from a researcher?

Post by pejadesign » Wed Oct 31, 2018 9:04 am

Monday one of my site was under an attack of an hacker.
Yesterday I received an e-mail from a person that I could find as a open bug bounty researcher. My site is not in the open bug bounty list of sites to test.
This person have said to me that he found critical bugs. I reply to him and I asked for more information via mail.
Today he replys that firstly he want to discuss about one payment.
In my opinion this is an extortion. I have not ask for this service.
how I should behave?
thaks in advance.

User avatar
x1admin
Site Admin
Posts:3102
Joined:Sun Nov 15, 2015 7:04 pm

Re: possible case of extortion from a researcher?

Post by x1admin » Thu Nov 01, 2018 5:26 am

pejadesign wrote:
Wed Oct 31, 2018 9:04 am
Monday one of my site was under an attack of an hacker.
Yesterday I received an e-mail from a person that I could find as a open bug bounty researcher. My site is not in the open bug bounty list of sites to test.
This person have said to me that he found critical bugs. I reply to him and I asked for more information via mail.
Today he replys that firstly he want to discuss about one payment.
In my opinion this is an extortion. I have not ask for this service.
how I should behave?
thaks in advance.
Please provide researcher nickname

secuninja
Posts:508
Joined:Fri Apr 28, 2017 2:34 pm

Re: possible case of extortion from a researcher?

Post by secuninja » Fri Nov 02, 2018 7:01 am

yeah... that probably the worst thing one can do... making the community look like assholes.

Post Reply

Who is online

Users browsing this forum: Bing [Bot] and 2 guests