Coordinated and Responsible Vulnerability Disclosure Free Bug Bounty Program 383,429 coordinated disclosures
217,789 fixed vulnerabilities
518 bug bounties with 1018 websites
10,304 researchers, 905 honor badges

How create xml report file via Burp Suite

1. Reproduce the vulnerability using Burp Suite

2. Proxy - HTTP History tab should contain at least 3 HTTP requests

  • First request with page contents for CSRF exploitation
  • Second request – the actual exploitation of CSRF vulnerability
  • Third request with page contents after CSRF exploitation

3. Add comments to request, as shown below


4. Select the requests and save them into file


5. Send the saved file using report form.

  Latest Patched

 18.06.2019 uliege.be
 18.06.2019 cntraveler.com
 18.06.2019 karaoke-version.com
 18.06.2019 vatgia.com
 18.06.2019 webnode.sk
 18.06.2019 mega.cl
 18.06.2019 monstersandcritics.com
 18.06.2019 despegar.cl
 18.06.2019 condos.ca
 18.06.2019 topachat.com

  Latest Blog Posts

12.06.2019 by Open Bug Bounty
Open Bug Bounty pursues a steady growth in 2019 with over 212,148 fixed vulnerabilities
27.05.2019 by fakessh
bing openredirect
20.05.2019 by fakessh
Hitachi Incident Response Team (HIRT)
11.05.2019 by MAS00712
Footprinting and Reconnaissance with DIRB Tool (For Security Researcher and Bug Bounty Hunters)
01.05.2019 by Renzi25031469
1000's of default passwords on http://open-sez.me

  Recent Recommendations

    18 June, 2019
     anorwood:
Thanks for pointing out an XSS vulnerability in the markup of one of our applications. Good to have it patched up.
    18 June, 2019
     JuniorTidal:
Thank you Paulo for sharing your expertise. It is much appreciated!
    18 June, 2019
     Jerski124:
Thank you for information about vulnerabilities on our site.
    18 June, 2019
     opensolr:
Thank you for your notification and helping us build a safer environment for our users!
    17 June, 2019
     opensolr:
The research on the cross-domain vulnerability, was a very good catch !
Thank you very much for your time and professional report !