Skip to main content

Security researcher is paid $12,500 by Facebook, after discovering major security flaw

posted onSeptember 3, 2013
by l33tdawg

Security researcher Arul Kumar was paid $12,500 by Facebook, after discovering and reporting a bug that would allow any user to delete the photos of other Facebook users, simply by changing parameters in a URL.

The severity of the security flaw apparently induced Facebook to pay Kumar far more than the base bounty of $500 for bugs reported through the website’s white hat security program.

The flaw resided in Facebook’s Support Dashboard. If Facebook refused to remove an image that an attacker claimed to find offensive, the attacker would be given the option of sending a request for deletion to the owner of the picture.

Source

Tags

Facebook Security

You May Also Like

Recent News

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th