Coordinated and Responsible Vulnerability Disclosure Free Bug Bounty Program 318,215 coordinated disclosures
186,561 fixed vulnerabilities
374 bug bounties with 812 websites
8,830 researchers, 316 honor badges

MLT Top Security Researcher Top VIP Security Researcher of the Month | Security Researcher Profile


Security researcher MLT has already helped fix 2021 vulnerabilities.



Researcher reputation:  20

Real name:
Matt Telfer

About me:
Back from hiatus. I will now be submitting vulnerabilities again.

How to contact me:
[email protected]

Experience in Application Security
over 5 years

Award / Bug Bounty I prefer:
$$$ (PayPal, Bitcoin, Bank Transfer)
Gift Cards (Amazon, etc)
T-Shirts, clothing
Food and Drinks :)

Recommendations and Acknowledgements

    9 March, 2016
     zothar David Sowder from UT Arlington:
MLT responded with the relevant details in a reasonable amount of time. Our thanks to MLT for providing this information.

Please login via Twitter to add a recommendation

Awards and Achievements


Number of Secured Websites

10+ Websites
50+ Websites
500+ Websites
WEB SECURITY VETERAN
1000+ Websites

Advanced Security Research

WAF Bypasser
CSRF Master
30+ Reports
AppSec Logic Master
30+ Reports
Fastest Fix
Fix in 24 hours

Outstanding Achievements

Secured OBB
OBB Advocate
Improved OBB

Commitment to Remediate and Patch

Patch Master
55% Patched
Patch Guru
65% Patched
Patch Lord
75% Patched

Recommendations and Recognition

REPUTABLE
10+ Recommends
FAMOUS
25+ Recommends
GLOBALLY TRUSTED
50+ Recommends

Research Statistics



Total reports:2536
Total reports on VIP sites:364
Total patched vulnerabilities:2021
Recommendations received:1
Active since:28.02.2015
Top Security Researcher Awards: The Top Security Researcher Top Security Researcher of the Month Top Security Researcher of the Month
Top VIP Security Researcher Awards: Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week

Open Bug Bounty Certificate





No posts in blog yet


Reported Vulnerabilities

All Submissions VIP SubmissionsFeatured Submissions

Domain Reported Status Type
06.03.2016
patched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting
06.03.2016
unpatched
Cross Site Scripting
06.03.2016
patched
Cross Site Scripting

  Latest Patched

 22.02.2019 fetchtube.com
 20.02.2019 ioffer.com
 20.02.2019 ucanr.edu
 20.02.2019 lbc.co.uk
 20.02.2019 forever21.com
 20.02.2019 twistys.com
 20.02.2019 trackwrestling.com
 20.02.2019 20minutos.es
 19.02.2019 skyeng.ru
 19.02.2019 ubisoft.com

  Latest Blog Posts

20.02.2019 by drok3r
ModSecurity - ByPass XSS
15.02.2019 by ismailtsdln
Adobe Israel Website XSS Vulnerability
07.02.2019 by aye_robot
Reporting CSRF via Openbugbounty
06.02.2019 by Open Bug Bounty
Launching Open Bug Bounty Blog and new platform features

  Recent Recommendations

    20 February, 2019
     JimM97459222:
Thank you for pointing out the XSS vulnerability in our site. We appreciate your assistance. Thank you!
    20 February, 2019
     michael_eckel:
Thank you very much for helping me discover and fix several XSS vulnerabilities.
    20 February, 2019
     JanetInfoSec:
Thank you for helping improve security at Jisc by reporting a vulnerability to us according to our vulnerability disclosure policy.
    20 February, 2019
     PHPDev8:
Quick and accurate communication. Wonderful to work with.
    18 February, 2019
     cyberday_gmbh:
thanks for reporting again