me@aaditya.cc
I recently found a high-criticality vulnerability in a listed consumer company in the UK. It allows unauthorized access to users’ private messages and even lets you impersonate other users on the platform.
They’ve offered a €1,000 bounty, but only if I sign an NDA that prevents any public write-up—even after the issue is patched.
I feel the bounty is too low for the impact, and asking to sign an NDA that prevents any public disclosure even post-fix feels like a big red flag.
I’m leaning towards declining the offer and doing a public write-up once the issue is fixed—but I’d really welcome opinions from others on what the right thing to do here is.
Thanks!
For Authors :- 1. It is very difficult for authors to do marketing for their book and as every year around 1 Lakh books publishes all over the world and of fiction books consist of a big section of this number. So, we are creating a platform where book authors by taking a little bit theme plot of their upcoming book and creates a small and interactive Facebook messenger based story which he can easily used for marketing and It will increase the sale of his upcoming book.
2. Now a days, people are more interested in interactive books where they can be also a part of the book and there are sounds, images but for authors creating a book on top of messaging application is not possible due to technical issues. So, To tackle this problem we are creating a Saas application where book authors can easily create an interactive book which going much into the technology.
It would be very helpful if you all give a review about my idea.
Thanks.
Any Suggestion of what I can do know. I even don't like being in College I am thinking of dropping out but I don't know what I am going to do afterwards.
Or anyone with some great idea and need a developer and cofounder I am ready to quit my college.