Report a Vulnerability
Submit, help fixing, get kudos.
Start a Bug Bounty
Run your bounty program for free.
534,520 coordinated disclosures
337,617 fixed vulnerabilities
791 bug bounties with 1,562 websites
16,084 researchers, 1105 honor badges

M3T4HUM4N | Security Researcher Profile


Security researcher M3T4HUM4N has already helped fix 212 vulnerabilities.



Researcher reputation:  40

Real name:
N. Sampas #M3T4HUM4N

About me:
A Portuguese XSS hunter and addicted to SQLI, Website Pentester! Ethical Hacker!

https://hackerone.com/m3t4hum4n

How to contact me:
[email protected]
https://www.facebook.com/M3t4hum4nn
https://twitter.com/M3T4HUM4N_

Alternative Contacts:
https://twitter.com/M3T4HUM4N_

Certifications & Diplomas:
CEH (Certified Ethical hacker)

Experience in Application Security
over 5 years

Award / Bug Bounty I prefer:
# PayPal money - paypal.me/m3t4hum4n
# Amazon Vouchers
# T-shirts, Sweats, Caps, Gadgets etc. (Swag)
# Hall of Fame
# Certificate of Appreciation
# Profile recommendation will be really appreciat

Follow me on:
Twitter
Facebook

Recommendations and Acknowledgements

    30 April, 2019
     octogone Claude Brisson from FFG:
Thanks to M3T4HUM4N for identifying our XSS vulterability. Very useful.
    8 November, 2018
     pejadesign Gabriele Peja from Peja Design:
Many thanks to M3T4HUM4N who has found and help me to correct a possible security problem on my site. He is the best researcher that I have ever known. Great professionality!
    5 June, 2018
     VTX_Telecom Patrick from VTX Telecom:
Thanks a lot M3T4HUM4N for helping us correct a XSS vulnerabilty on our website. Based on the very detailed description of the problem, we have been able to fix the problem very quickly. Great Job!
    28 May, 2018
     supportdi31 Patrick from Depeche Interactive:
Thanks to M3T4HUM4N, and we've been able to correct a XSS vulnerabilty on our website. Very good description of the problem, and great reactivity.
Nice work !

Please login via Twitter to add a recommendation

Honor Badges


Number of Secured Websites

10+ Websites
50+ Websites
500+ Websites
WEB SECURITY VETERAN
1000+ Websites

Advanced Security Research

WAF Bypasser
CSRF Master
30+ Reports
AppSec Logic Master
30+ Reports
Fastest Fix
Fix in 24 hours

Outstanding Achievements

Secured OBB
OBB Advocate
Improved OBB

Commitment to Remediate and Patch

Patch Master
55% Patched
Patch Guru
65% Patched
Patch Lord
75% Patched

Recommendations and Recognition

REPUTABLE
10+ Recommends
FAMOUS
25+ Recommends
GLOBALLY TRUSTED
50+ Recommends

Distinguished Blog Author

1 Post
3 Posts
5+ Posts

Research Statistics



Total reports:1128
Total reports on VIP sites:16
Total patched vulnerabilities:212
Total vulnerabilities on Hold (Open Bug Bounty):31
Recommendations received:4
Active since:19.05.2018

Open Bug Bounty Certificate





No posts in blog yet


Reported Vulnerabilities

All Submissions VIP Submissions

Domain Reported Status Type
06.05.2020
On Hold
Cross Site Scripting
06.05.2020
On Hold
Cross Site Scripting
06.05.2020
patched
Cross Site Scripting
06.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting
05.05.2020
On Hold
Cross Site Scripting

  Latest Patched

 06.06.2020 diyar.ps
 06.06.2020 ebi.ac.uk
 06.06.2020 cnbctv18.com
 06.06.2020 trueplookpanya.com
 06.06.2020 cornell.edu
 05.06.2020 moneycontrol.com
 05.06.2020 whtop.com
 05.06.2020 micvideal.es
 05.06.2020 polito.it
 04.06.2020 psu.kz

  Latest Blog Posts

04.04.2020 by Rando02355205
(Alibaba) message.alibaba.com [IDOR] - [Bug Bounty]
12.03.2020 by Rando02355205
(Paypal) www.paypal.com [CSP High Level] - [XSS Reflected] - [Bug Bounty] - [Write Up]
08.03.2020 by CybeReports
JDECO.net XSS Vulnerability| CybeReports
29.02.2020 by Rando02355205
(Google) groups.google.com - [Stored XSS] - [Bug Bounty] - [WriteUp] - [24/02/2020]
10.02.2020 by 0xrocky
Stored XSS on h2biz.net

  Recent Recommendations

    4 June, 2020
     vovsoft:
Thank you for making the web a better place.
    4 June, 2020
     LKee6r:
Research privately disclosed XSS vulnerability. Thank you for the notification!
    3 June, 2020
     viewbug:
Thank you for helping us make our product safer. We appreciate how you reported the vulnerability and the detailed explanation with what could be done if left unattended. Really helpful :)
    2 June, 2020
     haneynj:
Rajesh noted we had some vulnerabilities on one of our sites. When we reached out, he was helpful and shared his report. Thank you for reporting.
    2 June, 2020
     haraldbro:
Thank you for helping us identify an XSS. The description of the vulnerability was clear and allowed us to make a fix quickly.