Twitter, I think I’ve found a HUGE security flaw on an Indian website. I want to do responsible disclosure but have never done it before. There’s no security.txt or bug bounty on it. Need advice on how to proceed. My questions:
-
-
Hi Elliot, thanks for responding. Any tips for responsible disclosure?
-
First, try to contact them by all the possible ways (email, phone, Twitter,…)
-
Anoymously or non-anoymyously?
-
It’s up to you :)
End of conversation
New conversation -
-
-
Here comes the savior
#superman
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.