Report a Vulnerability
Submit, help fixing, get kudos.
Start a Bug Bounty
Run your bounty program for free.
534,771 coordinated disclosures
336,788 fixed vulnerabilities
791 bug bounties with 1,562 websites
16,081 researchers, 1105 honor badges

Spam404 Top Security Researcher Top Security Researcher of the Month Top VIP Security Researcher of the Month | Security Researcher Profile


Security researcher Spam404 has already helped fix 16365 vulnerabilities.



Researcher reputation:  720

Real name:
Cameron

How to contact me:
You can contact me via email - [email protected]

I encourage you to contact me ASAP so we can work together to quickly protect your users! All communication will be kept private.

Alternative Contacts:
Should I not respond via email (never happened!) please reach out via Twitter - @Spam404Online

Experience in Application Security
over 5 years

Award / Bug Bounty I prefer:
An acknowledgment on my profile is enough but if you feel like treating me to something extra for my time I appreciate the following -

Bug Bounty (PayPal, Bitcoin)
Swag (T-Shirt etc)

Halls of Fame:
http://www.spam404.com/security-research.html
https://hackerone.com/spam404

Follow me on:
Twitter
LinkedIn

Recommendations and Acknowledgements

    17 January, 2019
     sniko_ Harry Denley from EtherScamDB:
Thank you for notifying us of an XSS vulnerability in our project
    19 July, 2018
     OBB74286025 Security from IIR:
Thank you for locating some ancient code that we no longer needed anymore. Land mine defused!
    22 May, 2018
     aartvdwerf Aart from OI:
Thanks for letting us know about this XSS vulnerability. We appreciate the quick feedback.
    15 December, 2017
     FRPJason Jason from FrontRunner:
Cameron went through a few sites for us and identified a wide range of vulnerabilities. We really appreciated his work and will definitely stay in touch.
    1 December, 2017
     nlptimes Tom from DT:
Cameron discovered an XSS vulnerability in one of our 3rd party applications and was very helpful in bringing this to our attention, notifying the software vendor and advising what area needed to be fixed. Thank you very much!
    2 October, 2017
     amercader Adri√† Mercader from Open Knowledge International:
Cameron helped identify an XSS vulnerability affecting several sites. The communication was excellent and the prompt and exhaustive details helped put a patch in place in a really short time. Much appreciated.
    23 June, 2017
     ole_morten Ole Amundsen from Paladin Software:
Cameron identified several vulnerabilities for us, making us aware and giving us the opportunity to fix. Greatly appreciated !
    11 April, 2017
     TheRealXaiin Xaiin from H1Z1DB:
Cameron alerted me to some vulnerabilities on a couple of new sites I had released, he was exceptionally polite and very professional and I was able to act before anything happened to either site. Thank you Cameron!!
    27 January, 2017
     1und1 Andreas Maurer from 1&1 Internet:
Cameron reported severals bugs on our website. He was fast, polite and professional. A great help and much appreciated.
    21 December, 2016
     TeamViewer Axel Schmidt from TeamViewer:
Cameron helped us significantly improve our services, and certainly proved to be extremely knowledgeable. We are extremely grateful to him and very much appreciate his research.

Shows the first 10 recommendations. See all.

Please login via Twitter to add a recommendation

Honor Badges


Number of Secured Websites

10+ Websites
50+ Websites
500+ Websites
WEB SECURITY VETERAN
1000+ Websites

Advanced Security Research

WAF Bypasser
CSRF Master
30+ Reports
AppSec Logic Master
30+ Reports
Fastest Fix
Fix in 24 hours

Outstanding Achievements

Secured OBB
OBB Advocate
Improved OBB

Commitment to Remediate and Patch

Patch Master
55% Patched
Patch Guru
65% Patched
Patch Lord
75% Patched

Recommendations and Recognition

REPUTABLE
10+ Recommends
FAMOUS
25+ Recommends
GLOBALLY TRUSTED
50+ Recommends

Distinguished Blog Author

1 Post
3 Posts
5+ Posts

Research Statistics



Total reports:25188
Total reports on VIP sites:1868
Total patched vulnerabilities:16365
Recommendations received:69
Active since:03.11.2015
Top Security Researcher Awards: The Top Security Researcher The Top Security Researcher Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month Top Security Researcher of the Month
Top VIP Security Researcher Awards: Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Month Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week

Open Bug Bounty Certificate





No posts in blog yet


Reported Vulnerabilities

All Submissions VIP SubmissionsFeatured Submissions

Domain Reported Status Type
07.11.2015
patched
Cross Site Scripting
07.11.2015
unpatched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
unpatched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Cross Site Scripting
07.11.2015
patched
Open Redirect

  Latest Patched

 06.06.2020 diyar.ps
 06.06.2020 ebi.ac.uk
 06.06.2020 cnbctv18.com
 06.06.2020 trueplookpanya.com
 06.06.2020 cornell.edu
 05.06.2020 moneycontrol.com
 05.06.2020 whtop.com
 05.06.2020 micvideal.es
 05.06.2020 polito.it
 04.06.2020 psu.kz

  Latest Blog Posts

04.04.2020 by Rando02355205
(Alibaba) message.alibaba.com [IDOR] - [Bug Bounty]
12.03.2020 by Rando02355205
(Paypal) www.paypal.com [CSP High Level] - [XSS Reflected] - [Bug Bounty] - [Write Up]
08.03.2020 by CybeReports
JDECO.net XSS Vulnerability| CybeReports
29.02.2020 by Rando02355205
(Google) groups.google.com - [Stored XSS] - [Bug Bounty] - [WriteUp] - [24/02/2020]
10.02.2020 by 0xrocky
Stored XSS on h2biz.net

  Recent Recommendations

    4 June, 2020
     vovsoft:
Thank you for making the web a better place.
    4 June, 2020
     LKee6r:
Research privately disclosed XSS vulnerability. Thank you for the notification!
    3 June, 2020
     viewbug:
Thank you for helping us make our product safer. We appreciate how you reported the vulnerability and the detailed explanation with what could be done if left unattended. Really helpful :)
    2 June, 2020
     haneynj:
Rajesh noted we had some vulnerabilities on one of our sites. When we reached out, he was helpful and shared his report. Thank you for reporting.
    2 June, 2020
     haraldbro:
Thank you for helping us identify an XSS. The description of the vulnerability was clear and allowed us to make a fix quickly.