the point of zero-day bounties is that you're supposed to overpay on them, not try and argue your wait out of payment obligations. next time someone finds a zero-day, they sell it on the dark web instead.
2 points
ago
+2 / -0
7 points
ago
+7 / -0
24 points
ago
+24 / -0
view more:
Next ›
not relevant. the point of bug bounties is that you're basically paying off people who might be tempted to use those vulnerabilities against you, getting them to tell you first instead of the world.
stop paying, and they take their information to the next highest bidder.