en
Feedback
Bug Bounty Channel

Bug Bounty Channel

Open in Telegram

All bug bounties here.

Show more

πŸ“ˆ Analytical overview of Telegram channel Bug Bounty Channel

Channel Bug Bounty Channel (@bug_bounty_channel) in the English language segment is an active participant. Currently, the community unites 15 747 subscribers, ranking 7 144 in the Technologies & Applications category and 30 273 in the India region.

πŸ“Š Audience metrics and dynamics

Since its creation on Π½Π΅Π²Ρ–Π΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 15 747 subscribers.

According to the latest data from 29 December, 2025, the channel demonstrates stable activity. Although there has been a change in the number of participants by -49 over the last 30 days and by 0 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 0%. Within the first 24 hours after publication, content typically collects N/A% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 0 views. Within the first day, a publication typically gains 0 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 0.
  • Thematic interests: Content is focused on key topics such as cve, cwe, reporter, severity, none.

πŸ“ Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
β€œAll bug bounties here.”

Thanks to the high frequency of updates (latest data received on 30 December, 2025), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

15 747
Subscribers
No data24 hours
-107 days
-4930 days
Posts Archive
🏦 curl Report πŸ“‹ Title: Memory leak of ftp (with proxy reuse) πŸ” Reporter: catenacyber (Philippe Antoine) πŸ“‹ Details: β”” πŸ“Š Status: informative β”” ⚑ Severity: None β”” 🎯 CWE: Not Specified β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-07-01 16:25:41 UTC β”” πŸ“ Created: 2025-03-05 10:53:46 UTC

🏦 curl Report ⚠️ Title: HTTP Proxy Bypass via `CURLOPT_CUSTOMREQUEST` Verb Tunneling πŸ” Reporter: alphox (Alphox) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: High β”” 🎯 CWE: Improper Access Control - Generic β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-07-01 14:20:30 UTC β”” πŸ“ Created: 2025-07-01 12:47:44 UTC

🏦 curl Report ⚑ Title: Speculative Execution Side-Channel in `curl` πŸ” Reporter: evilginx1 (Lots-o'-Huggin' Bear) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: Medium β”” 🎯 CWE: Authentication Bypass by Primary Weakness β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-07-01 14:09:27 UTC β”” πŸ“ Created: 2025-05-03 05:56:15 UTC

🏦 curl Report ⚑ Title: arbitrary file read via `file://` path traversal with `--path-as-is` πŸ” Reporter: demsese (yeabsira) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: Medium β”” 🎯 CWE: Path Traversal β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-07-01 14:08:38 UTC β”” πŸ“ Created: 2025-06-27 09:42:53 UTC

🏦 curl Report ❓ Title: curl_easy_header runs at O(N) or worse and can be abused to use minute(s) of CPU time πŸ” Reporter: wolfsage (alh) πŸ“‹ Details: β”” πŸ“Š Status: informative β”” ⚑ Severity: Not Specified β”” 🎯 CWE: Uncontrolled Resource Consumption β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-07-01 14:07:31 UTC β”” πŸ“ Created: 2025-05-07 19:25:48 UTC

🏦 curl Report πŸ“‹ Title: curl -OJ allows creating custom .curlrc file which allows exfiltrating private data, among other things πŸ” Reporter: wolfsage (alh) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: None β”” 🎯 CWE: Not Specified β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-07-01 14:07:45 UTC β”” πŸ“ Created: 2025-05-08 15:53:37 UTC

🏦 Yelp Report ⚑ Title: RXSS AT https://proze.yelp.com/tmsubscribe.net/vidsn.aspx πŸ” Reporter: 0xold (0xold) πŸ“‹ Details: β”” πŸ“Š Status: resolved β”” ⚑ Severity: Medium β”” 🎯 CWE: Cross-site Scripting (XSS) - Reflected β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-30 15:06:44 UTC β”” πŸ“ Created: 2025-01-19 03:12:51 UTC

🏦 Tools for Humanity Report πŸ“ Title: Unlock underage blocked app without support interaction using airplane mode πŸ” Reporter: polem4rch (Polem4rch) πŸ“‹ Details: β”” πŸ“Š Status: resolved β”” ⚑ Severity: Low β”” 🎯 CWE: Business Logic Errors β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-30 11:20:50 UTC β”” πŸ“ Created: 2025-05-09 04:29:40 UTC

🏦 curl Report ⚠️ Title: Heap Buffer Overflow in libcurl curl_slist_append via Unterminated String πŸ” Reporter: geeknik (Brian Carpenter) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: High β”” 🎯 CWE: Heap Overflow β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-30 07:23:15 UTC β”” πŸ“ Created: 2025-06-29 17:33:41 UTC

🏦 curl Report πŸ“‹ Title: Memory leak from doh_write_cb πŸ” Reporter: catenacyber (Philippe Antoine) πŸ“‹ Details: β”” πŸ“Š Status: informative β”” ⚑ Severity: None β”” 🎯 CWE: Allocation of Resources Without Limits or Throttling β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-29 19:12:35 UTC β”” πŸ“ Created: 2025-04-11 20:06:53 UTC

🏦 curl Report ⚠️ Title: HTTP/2 CONTINUATION Flood Vulnerability πŸ” Reporter: evilginx1 (Lots-o'-Huggin' Bear) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: High β”” 🎯 CWE: Allocation of Resources Without Limits or Throttling β”” πŸ”’ CVE: CVE-2023-44487 ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 21:13:12 UTC β”” πŸ“ Created: 2025-05-04 04:10:47 UTC

🏦 curl Report πŸ”₯ Title: Buffer Overflow in curl MQTT Test Server (tests/server/mqttd.c) via Malicious CONNECT Packet πŸ” Reporter: deep-hackerone (Deepak Dubey) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: Critical β”” 🎯 CWE: Memory Corruption - Generic β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 21:11:25 UTC β”” πŸ“ Created: 2025-04-19 20:20:07 UTC

🏦 curl Report ⚠️ Title: Path Traversal Vulnerability in curl via Unsanitized IPFS_PATH Environment Variable πŸ” Reporter: ziad616 (Ziad Salah) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: High β”” 🎯 CWE: Path Traversal β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 21:11:42 UTC β”” πŸ“ Created: 2025-04-18 17:41:19 UTC

🏦 curl Report ❓ Title: Free of uninitialized pointer in doh_decode_rdata_name() πŸ” Reporter: tdp3kel9g (Ronald Crane (Zippenhop LLC)) πŸ“‹ Details: β”” πŸ“Š Status: informative β”” ⚑ Severity: Not Specified β”” 🎯 CWE: Use After Free β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 21:10:50 UTC β”” πŸ“ Created: 2025-03-13 21:59:27 UTC

🏦 curl Report πŸ”₯ Title: Improper Restriction of Authentication Attempts in cURL πŸ” Reporter: irfanmughal1122 (irfan) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: Critical β”” 🎯 CWE: Improper Restriction of Authentication Attempts β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 21:09:52 UTC β”” πŸ“ Created: 2025-03-10 21:00:59 UTC

🏦 curl Report ⚑ Title: Stack Buffer Overflow in curl's OpenSSL Provider Handling πŸ” Reporter: oblivionsage (No name) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: Medium β”” 🎯 CWE: Stack Overflow β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 12:40:36 UTC β”” πŸ“ Created: 2025-05-20 00:07:26 UTC

🏦 curl Report ⚠️ Title: OS Command Injection in scripts/firefox-db2pem.sh via untrusted certificate nicknames πŸ” Reporter: behindtheblackwall (Tacitus) πŸ“‹ Details: β”” πŸ“Š Status: informative β”” ⚑ Severity: High β”” 🎯 CWE: OS Command Injection β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-28 12:19:19 UTC β”” πŸ“ Created: 2025-06-26 21:10:59 UTC

🏦 TikTok Report πŸ“ Title: Unauthorized Access to Private Video Description via Translation API for Private Accounts πŸ” Reporter: z3phyrus (Zephyrus) πŸ“‹ Details: β”” πŸ“Š Status: resolved β”” ⚑ Severity: Low β”” 🎯 CWE: Insecure Direct Object Reference (IDOR) β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-27 20:24:33 UTC β”” πŸ“ Created: 2025-01-04 04:55:52 UTC

🏦 Basecamp Report πŸ”₯ Title: Mutation Based Stored XSS on Trix Editor version latest (2.1.8) πŸ” Reporter: sudi (Sudhanshu Rajbhar) πŸ“‹ Details: β”” πŸ“Š Status: resolved β”” ⚑ Severity: Critical β”” 🎯 CWE: Not Specified β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-27 12:55:01 UTC β”” πŸ“ Created: 2024-11-04 14:09:01 UTC

🏦 curl Report ⚑ Title: Failure to strip Proxy-Authorization header on change in origin πŸ” Reporter: grahamcampbell (Graham Campbell) πŸ“‹ Details: β”” πŸ“Š Status: not-applicable β”” ⚑ Severity: Medium β”” 🎯 CWE: Information Disclosure β”” πŸ”’ CVE: None ⏰ Timeline: β”” πŸ”“ Disclosed: 2025-06-27 09:48:04 UTC β”” πŸ“ Created: 2025-06-06 01:26:57 UTC