Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
Security researcher receives $1M bug bounty for saving company from $350M bug | Better HN
Security researcher receives $1M bug bounty for saving company from $350M bug
(opens in new tab)
(twitter.com)
53 points
Magicstatic
4y ago
5 comments
Share
5 comments
default
newest
oldest
Magicstatic
OP
4y ago
Link to company confirming payment:
https://twitter.com/josephdelong/status/1431314816698916865
Link to researcher writeup:
https://www.paradigm.xyz/2021/08/two-rights-might-make-a-wro...
grogers
4y ago
Wow, 10 minutes to start reading the code from scratch and find the vulnerability. Then just another 20 minutes to confirm the bug with an exploit, some of which were spent fighting with a broken dev environment. That is impressive!
rvz
4y ago
Now that is a great payout towards this security researcher for finding this cryptocurrency bug. Well done to them.
baobabKoodaa
4y ago
Is this the largest bug bounty in history? (Not counting black hat / gray area "bounties")
dkdk8283
4y ago
I looked at the write up but as a layman I don’t understand any of it. Is there something else that eli5?
j
/
k
navigate · click thread line to collapse