Hacker Newsnew | past | comments | ask | show | jobs | submit | garlic-man's commentslogin

That wouldn't surprise me — A few years ago I reported a vulnerability through their bug bounty program that allowed "mandatory" 2FA for crypto withdrawals to be bypassed.

They paid a pittance and permanently buried the report even though its release wouldn't have posed a risk anymore.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: