Mycrypto


reports in last 90 days

7

disclosed resolved issues

0

disclosed informative issues

0

disclosed N/A issues

Listed on HackerOne — Updated on 2019/10/15

Bug Title Bug Type Found By Report Info Report Status

Low The twitter accounts are linked on page but unclaimed.

None supplied zeroxyele Time to triage: 0 Days and 0 hours


Time to close: 0 Days and 0 hours
Resolved

Medium SPF Records (SMTP protection not used)

Violation of Secure Design Principles shantuman Time to triage: 1 Days and 14 hours


Time to close: 1 Days and 18 hours
Resolved

Medium Missing SPF Records.

None supplied pradyumna1998 Issue was not triaged


Time to close: 1 Days and 7 hours
Duplicate

Medium Missing SPF record for the in scope domain

Phishing nitesculucian Issue was not triaged


Time to close: 0 Days and 21 hours
Duplicate

Low Content Spoofing or Text Injection support.mycrypto.com

Phishing w2w Time to triage: 0 Days and 7 hours


Time to close: 26 Days and 3 hours
Resolved

No rating HTML Injection on https://www.mycrypto.com/

Code Injection t-pwn Time to triage: 1 Days and 5 hours


Time to close: 22 Days and 19 hours
Resolved

Medium Reflected XSS { support.mycrypto.com }

Cross-site Scripting (XSS) - Reflected sup3r-b0y Time to triage: 0 Days and 23 hours


Time to close: 5 Days and 11 hours
Resolved

High Html injection mycrypto.com

Cross-site Scripting (XSS) - Generic w2w Time to triage: 0 Days and 8 hours


Time to close: 1 Days and 8 hours
Resolved

Medium DOM Based XSS in mycrypto.com

Cross-site Scripting (XSS) - DOM bigshaq Time to triage: 1 Days and 19 hours


Time to close: 1 Days and 8 hours
Resolved