The whole "We're not going to pay you because of something secret we know you didn't" has always been an abusive clause in the whole bug bounty market and I think it's funny people are just realizing it.
-
-
Replying to @daveaitel @thegrugq
I busted ms in telling two submitters that the other one was the first and therefore not paying anyone. The did not expect I could quote their answer to random other submitterpic.twitter.com/9IcI7tXeab
3 replies 17 retweets 51 likes -
How do you know there wasn't some 3rd researcher faster than both of you? Did MS disclose the ID of the "first" submitter/submission?
1 reply 0 retweets 0 likes
Jonas L Retweeted Jonas L
because they admitted it after https://twitter.com/jonasLyk/status/1282945750746509313 … how i knew it before? it was a bug class i invented.... exploited with a driver obviously not looked at before and at that time i had 0 trust in ms
Jonas L added,
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.