

⚡🌌🌌teslatheg0d🌌🌌⚡
5.2K posts

@TeslaTheGod
🌐Top 60 https://t.co/FjfGmQxPWD || https://t.co/pPR9UWSmG1 || Just a Teenage Hacker Spirit || Full Time BugHunter since July 2023 || Streamer





Bug bounty community quick question. When you discover mass PII or large scale sensitive data exposure, how do you handle sharing it in your report? Do you include only minimal redacted samples, or attach encrypted files separately? I am trying to clearly demonstrate impact without unnecessarily exposing sensitive data. Also how do you avoid severity being misunderstood during triage when you intentionally limit the shared data? Sometimes showing only small samples can make the issue look low impact. How do you communicate the actual scale in those cases? Lastly, do you use any secure file transfer services for sharing large sensitive datasets? If you have any secure and reliable recommendations, please share.










uh... why are loads of staff leaving hackerone? what's going on?




