{"id":"3a45252c-eccf-4d60-a163-77362fa66418","engagementId":"3d114a36-dcf7-40cb-b102-7b524a3740fc","data":{"brief":{"id":"e2c57047-060a-4d6e-ba5b-de8e91d18f81","name":"Bitdefender","tagline":"Cybersecurity Solutions for Business and Personal Use","description":"\u003cp\u003eWe appreciate all security concerns brought forth and are constantly striving to keep on top of the latest threats. Being pro-active rather than re-active to emerging security issues is a fundamental belief at Bitdefender.\u003c/p\u003e","industryTagId":"02370343-bf13-4661-a7a2-caa1c1076ad1","targetsOverview":"\u003cp\u003e\u003cstrong\u003eDOWNLOAD LINKS:\u003c/strong\u003e\u003c/p\u003e\n\n\u003cp\u003eBitdefender Total Security -\u0026gt; \u003ca href=\"https://www.bitdefender.com/solutions/total-security.html\" rel=\"nofollow noreferrer\" target=\"_blank\"\u003ehttps://www.bitdefender.com/solutions/total-security.html\u003c/a\u003e (Consumer)\u003c/p\u003e\n\n\u003cp\u003eBitdefender GravityZone Business Security -\u0026gt; \u003ca href=\"https://www.bitdefender.com/business/free-trials/\" rel=\"nofollow noreferrer\" target=\"_blank\"\u003ehttps://www.bitdefender.com/business/free-trials/\u003c/a\u003e (Business)\u003c/p\u003e\n\n\u003ch3\u003eTarget info:\u003c/h3\u003e\n\n\u003cul\u003e\n\u003cli\u003eFor authenticated testing please self-provision utilizing your @bugcrowdninja address or an email that clearly identifies you as a researcher.\u003c/li\u003e\n\u003cli\u003eNo payment or promotional codes will be provided for testing purposes.\u003c/li\u003e\n\u003cli\u003ePlease refrain from testing contact forms or inputs that would result in a large amount of spam.\u003c/li\u003e\n\u003c/ul\u003e\n\n\u003ch3\u003eQualification Criteria\u003c/h3\u003e\n\n\u003cp\u003eA finding must demonstrate a clear and meaningful security impact. The report should identify the security boundary that is crossed, the privileges or access required to exploit the issue, and the additional capability gained by a successful attacker.\u003c/p\u003e\n\n\u003cp\u003eFindings that require administrative, root, SYSTEM, or equivalent privileges are eligible only when they demonstrate a meaningful impact beyond the capabilities already available to an attacker with those privileges. Examples may include crossing a separate trust boundary, compromising another user or tenant, bypassing a security control, obtaining access to otherwise protected data, or gaining privileges in a distinct security context.\u003c/p\u003e\n\n\u003cp\u003eEligibility will be determined based on the demonstrated security impact.\u003c/p\u003e\n\n\u003ch3\u003eRewards\u003c/h3\u003e\n\n\u003cp\u003eBitdefender will rely on the Bugcrowd Vulnerability Rating Taxonomy for prioritization of findings, but reserve the right to either downgrade or upgrade findings' severity based on the criticality of their underlying risk to Bitdefender. Appropriate payouts will then be awarded accordingly. Any downgraded submission will come with a full and detailed explanation.\u003c/p\u003e\n\n\u003cp\u003e\u003cstrong\u003eThere are some things we explicitly ask you not to do:\u003c/strong\u003e\u003c/p\u003e\n\n\u003cul\u003e\n\u003cli\u003eWhen experimenting, please only attack test accounts you control. A PoC unnecessarily involving accounts of other end users or Bitdefender employees may be disqualified.\u003c/li\u003e\n\u003cli\u003eAutomated vulnerability scans are strictly prohibited.\u003c/li\u003e\n\u003cli\u003eIn any way, do not attack our end users, or engage in the trade of stolen user credentials.\u003c/li\u003e\n\u003c/ul\u003e\n\n\u003cp\u003e\u003cstrong\u003eThe following kinds of findings are specifically non-rewardable within this program:\u003c/strong\u003e\u003c/p\u003e\n\n\u003cul\u003e\n\u003cli\u003eSelf XSS or other types of self-exploitation (cookie reuse, self DoS, self-cookie-bomb, etc.)\u003c/li\u003e\n\u003cli\u003eDescriptive error messages (e.g., stack traces, application or server errors).\u003c/li\u003e\n\u003cli\u003eEmail spoofing issues (incomplete or lack of SPF, DMARC, DKIM records)\u003c/li\u003e\n\u003cli\u003eOut of date software versions\u003c/li\u003e\n\u003cli\u003eContent Spoofing\u003c/li\u003e\n\u003cli\u003eVulnerabilities that are limited to unsupported browsers or operating systems\u003c/li\u003e\n\u003cli\u003ePassword policies not enforced on user accounts\u003c/li\u003e\n\u003cli\u003eClickjacking or any issue exploitable through clickjacking\u003c/li\u003e\n\u003cli\u003eVulnerabilities in third-party software. Please reach out to the company responsible for the code to have the issues fixed. We may contact the upstream provider, depending on the impact of the vulnerability.\u003c/li\u003e\n\u003cli\u003eLack of Secure and HTTPOnly cookie flags.\u003c/li\u003e\n\u003cli\u003eUsername / email enumeration\u003c/li\u003e\n\u003cli\u003eCORS issues without a working PoC\u003c/li\u003e\n\u003cli\u003eLogin or Forgot Password page brute force and account lockout not enforced\u003c/li\u003e\n\u003cli\u003eCSRF issues that have no security impact\u003c/li\u003e\n\u003cli\u003eAntimalware detections bypass or undetected malware samples\u003c/li\u003e\n\u003cli\u003eLocal privilege elevation on GravityZone On-Premises OS\u003c/li\u003e\n\u003cli\u003eRecently disclosed critical vulnerabilities in third-party software where there is no patch, or a recent patch (less than one week) is available.\u003c/li\u003e\n\u003cli\u003eMissing HTTP security headers\u003c/li\u003e\n\u003cli\u003eTLS/SSL Issues, bad cipher suite, expired certificates, etc.\u003c/li\u003e\n\u003cli\u003eInternal IP address disclosure\u003c/li\u003e\n\u003cli\u003eReports of spam (i.e., any report involving ability to send emails without rate limits).\u003c/li\u003e\n\u003cli\u003ePre-Authentication Account Takeover\u003c/li\u003e\n\u003cli\u003eMobile issues that require root access or unsupported OS versions\u003c/li\u003e\n\u003cli\u003eNon-sensitive exposed API keys (Google Maps, etc.).\u003c/li\u003e\n\u003cli\u003eFailure to invalidate session on password change or MFA change.\u003c/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eInsufficient or non-incremental security impact:\u003c/strong\u003e\n\n\u003cul\u003e\n\u003cli\u003eFindings that require administrative, root, SYSTEM, or equivalent privileges and do not demonstrate a meaningful security impact beyond the capabilities already available with those privileges.\u003c/li\u003e\n\u003cli\u003eAbuse of intended product functionality by a user who is already authorized to perform an equivalent action.\u003c/li\u003e\n\u003cli\u003eReports that demonstrate only the absence of a security detection, alert, or prevention event, without identifying an underlying exploitable vulnerability or a bypass of an explicitly documented security boundary.\u003c/li\u003e\n\u003cli\u003eDefense-in-depth or product-hardening recommendations that do not demonstrate a practical attack scenario and a meaningful security impact.\u003c/li\u003e\n\u003cli\u003eReports based solely on theoretical impact, without sufficient reproduction steps or a working proof of concept demonstrating the claimed security consequence.\u003c/li\u003e\n\u003cli\u003eFindings where the reported result can be achieved through standard operating-system functionality at the same privilege level, unless the Bitdefender component enables an additional capability, crosses a separate trust boundary, or bypasses a security control.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\n\u003cp\u003e\u003cstrong\u003eHAPPY HUNTING!!\u003c/strong\u003e\u003c/p\u003e\n\n\u003ch2\u003eSafe Harbor\u003c/h2\u003e\n\n\u003cp\u003eWhen conducting vulnerability research according to this policy, we consider this research to be:\u003c/p\u003e\n\n\u003cul\u003e\n\u003cli\u003eAuthorized in accordance with the Computer Fraud and Abuse Act (CFAA) (and/or similar state laws), and we will not initiate or support legal action against you for accidental, good faith violations of this policy;\u003c/li\u003e\n\u003cli\u003eExempt from the Digital Millennium Copyright Act (DMCA), and we will not bring a claim against you for circumvention of technology controls;\u003c/li\u003e\n\u003cli\u003eExempt from restrictions in our Terms \u0026amp; Conditions that would interfere with conducting security research, and we waive those restrictions on a limited basis for work done under this policy;\u003c/li\u003e\n\u003cli\u003eLawful, helpful to the overall security of the Internet, and conducted in good faith.\u003c/li\u003e\n\u003c/ul\u003e\n\n\u003cp\u003eYou are expected, as always, to comply with all applicable laws.\u003c/p\u003e\n\n\u003cp\u003eIf at any time you have concerns or are uncertain whether your security research is consistent with this policy, please submit a report through one of our official channels before going any further.\u003c/p\u003e","safeHarborStatus":{"status":"full","label":"Safe harbor","description":"This engagement is fully committed to providing safe harbor for good-faith security research."},"collaborationEnabled":true,"additionalInformation":""},"scope":[{"id":"ba13aac3-efae-463c-b461-a46639503e39","name":"Bitdefender","targets":[{"id":"115bea42-2701-4aec-8faf-6dbf90b7c6b1","uri":null,"name":"Bitdefender Total Security","category":"other","ipAddress":null,"description":null,"engagementBriefTargetGroupTarget":{"id":"9dd4fba7-d56e-4fe8-a0bb-28403922de74","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"8ec454c1-5c3a-41ff-a025-c179c7c7c5d2","uri":null,"name":"*.bitdefender.net","category":"website","ipAddress":null,"description":null,"engagementBriefTargetGroupTarget":{"id":"b68b7881-cb48-4f2d-a78d-c1032911f09c","sortOrder":0},"sortOrder":0,"tags":[{"id":"a51a78cb-e0a6-4043-a736-335dec2d238c","name":"jQuery","targetId":"8ec454c1-5c3a-41ff-a025-c179c7c7c5d2"},{"id":"abbd0575-727e-4565-8046-f7fa78eaf368","name":"PHP","targetId":"8ec454c1-5c3a-41ff-a025-c179c7c7c5d2"},{"id":"bc744424-2ab8-48c8-b938-c6d6abcdf500","name":"Website Testing","targetId":"8ec454c1-5c3a-41ff-a025-c179c7c7c5d2"},{"id":"c3412833-26e7-4bbd-907f-760d9da61232","name":"Newrelic","targetId":"8ec454c1-5c3a-41ff-a025-c179c7c7c5d2"}],"recentChangeFlags":null},{"id":"b3978006-36c2-4ab8-b99d-7a6853030263","uri":null,"name":"Bitdefender Antimalware Engines","category":"other","ipAddress":null,"description":null,"engagementBriefTargetGroupTarget":{"id":"5436f5cb-469e-4a19-806f-c8b65aa5101c","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"5dc49e51-52fe-475b-b771-2ba71bbec1ae","uri":null,"name":"*.bitdefender.com","category":"website","ipAddress":null,"description":null,"engagementBriefTargetGroupTarget":{"id":"aa16c5c4-af52-471d-a33d-026143dfd383","sortOrder":0},"sortOrder":0,"tags":[{"id":"a51a78cb-e0a6-4043-a736-335dec2d238c","name":"jQuery","targetId":"5dc49e51-52fe-475b-b771-2ba71bbec1ae"},{"id":"abbd0575-727e-4565-8046-f7fa78eaf368","name":"PHP","targetId":"5dc49e51-52fe-475b-b771-2ba71bbec1ae"},{"id":"bc744424-2ab8-48c8-b938-c6d6abcdf500","name":"Website Testing","targetId":"5dc49e51-52fe-475b-b771-2ba71bbec1ae"},{"id":"c3412833-26e7-4bbd-907f-760d9da61232","name":"Newrelic","targetId":"5dc49e51-52fe-475b-b771-2ba71bbec1ae"}],"recentChangeFlags":null},{"id":"18dbc838-99b1-442e-972d-92fbe46f11fb","uri":"https://www.bitdefender.com/business/smb-products/business-security.html?cid=ppc|b|google|smb\u0026s_kwcid=AL!6076!3!514235572261!p!!g!!bitdefender%20business\u0026utm_term=bitdefender%20business\u0026utm_campaign=USA+SMB+Branded+30\u0026utm_source=adwords\u0026utm_medium=ppc\u0026hsa_acc=8155205354\u0026hsa_cam=7848657822\u0026hsa_grp=124745713150\u0026hsa_ad=514235572261\u0026hsa_src=g\u0026hsa_tgt=kwd-308396066873\u0026hsa_kw=bitdefender%20business\u0026hsa_mt=p\u0026hsa_net=adwords\u0026hsa_ver=3\u0026gclid=CjwKCAjwqIiFBhAHEiwANg9szk-Rr3iSn4mrwsvAUOn-pzrO12ufWDmyCLopWigaLQW0t_xtlBE65RoCr6kQAvD_BwE","name":"Bitdefender GravityZone Business Security ","category":"other","ipAddress":null,"description":null,"engagementBriefTargetGroupTarget":{"id":"eb46698b-cf48-461b-b758-8ad0bca2e4c5","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null}],"inScope":true,"sortOrder":0,"description":null,"rewardRange":{"id":"fc13232c-ec71-4dbf-89a6-50541cda8d39","p1MaxCents":1500000,"p1MinCents":350000,"p2MaxCents":500000,"p2MinCents":150000,"p3MaxCents":100000,"p3MinCents":20000,"p4MaxCents":50000,"p4MinCents":10000,"p5MaxCents":null,"p5MinCents":null,"engagementMaxCents":null},"descriptionHtml":null,"rewardRangeData":{"1":{"min":3500,"max":15000},"2":{"min":1500,"max":5000},"3":{"min":200,"max":1000},"4":{"min":100,"max":500},"5":{"min":null,"max":null}},"recentChangeFlags":null},{"id":"be374125-4193-423d-98d4-119524141529","name":"Out of scope targets","targets":[{"id":"63f104f0-34a8-4c3c-8161-8a5b59cb72ab","uri":"","name":"businessinsights.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"a920147f-a654-4dbf-a7e5-b19237742561","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"7346a0db-185e-4ebd-a604-8991515b3cc8","uri":"","name":"businessemail.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"d3f4013d-a83b-4a61-a69b-f9752132ef23","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"dcb52a12-9b2a-4c51-a97f-fb26207e7798","uri":"","name":"businessresources.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"236fb471-b77d-4a3d-8ead-555a645b88aa","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"1d3453ad-ba11-405c-bb4b-b43a349222f0","uri":"","name":"oemhub.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"7d3ce64f-350c-459e-b9aa-e768f48ea503","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"b967f0cf-7cac-4da0-a7ef-6c4a40fc339c","uri":"","name":"oemresources.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"eaa44186-8181-4e80-8020-69ecdf0286af","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"43211581-2629-4c87-a0c0-a41dd1d9b657","uri":"","name":"community.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"a97837b6-a3d1-4046-87bb-442971e4238e","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"4ca9f4dd-c79c-4d90-8119-ec4b9ac1a9a4","uri":"","name":"resellerportal.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"33294c16-10b3-47b6-9ccc-166ccc483616","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"ae52e066-b1f8-48a1-9111-7ea0dd601dda","uri":"","name":"brand.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"3e461fee-1197-49ca-a5cd-60d1a9ba595e","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"cad90213-871f-46b6-ab64-807ef73dfb0c","uri":"","name":"stats.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"86c25918-4da1-4288-b4d2-6232280c5bc7","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"d128a37a-46ea-4ff4-9fe3-119cb50e2159","uri":"","name":"sstats.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"94b23b31-fae2-4e17-a75d-f13bf5467540","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"c7ee395f-fab9-4ebf-834d-e91d13d7ecae","uri":"","name":"lsems.gravityzone.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"57a6e345-0119-4e8e-abd6-d8c1224abdf6","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"dc6e016c-738a-4384-a748-a5a7d104076c","uri":"","name":"ssems.gravityzone.bitdefender.com/","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"a922ed31-b0bf-4180-858f-b925a60fa002","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"e38acba7-c82d-48d6-a75b-2a2eda02ea6d","uri":"","name":"crp.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"4debb494-aaa1-4b65-b47a-87ebae9c71e7","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"2cad217d-2a5f-407b-b097-f4c2b418b54c","uri":"","name":"telcosuccess.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"c64f6346-343d-4b0a-bead-cb9708a72034","sortOrder":0},"sortOrder":0,"tags":null,"recentChangeFlags":null},{"id":"3fccc189-cf7a-4fd7-abd3-806eefac4828","uri":"","name":"demo.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"9612a7d1-41cd-4747-80e4-077ccdb89cce","sortOrder":15},"sortOrder":15,"tags":null,"recentChangeFlags":null},{"id":"bdfc21ab-e4b5-4412-8292-1b7671c2ee87","uri":"","name":"translate.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"a3b92738-0be6-4dc3-9747-61b9d5b97c1d","sortOrder":16},"sortOrder":16,"tags":null,"recentChangeFlags":null},{"id":"07e852f3-a722-40d4-be01-5cd0fe955523","uri":"","name":"explore.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"e8aaea2c-5056-40a6-8c64-6f77c96ff046","sortOrder":17},"sortOrder":17,"tags":null,"recentChangeFlags":null},{"id":"8e95c070-d82a-4d84-9fa9-c8d57de741c9","uri":"","name":"explore-lb.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"bd4cab89-3cf9-470b-984d-c87d9829e233","sortOrder":18},"sortOrder":18,"tags":null,"recentChangeFlags":null},{"id":"5448c5b1-ad16-4678-b6b8-9d8c783dd201","uri":"","name":"partner-marketing.bitdefender.com ","category":"website","ipAddress":null,"description":null,"engagementBriefTargetGroupTarget":{"id":"446649fa-f4a0-46c5-ad1c-37d2201e8d7c","sortOrder":18},"sortOrder":18,"tags":null,"recentChangeFlags":null},{"id":"a18fdc6f-a2e1-4354-ae2a-0f5cb101f3fd","uri":"","name":"seems.gravityzone.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"91b056cb-693b-41db-bd7b-1ac9a419dd96","sortOrder":19},"sortOrder":19,"tags":null,"recentChangeFlags":null},{"id":"8ce9e77f-d578-451f-936c-fbe855fc6ea4","uri":"","name":"workflow.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"23d5ee2a-cc95-4874-a46f-affd0cc0ac8a","sortOrder":20},"sortOrder":20,"tags":null,"recentChangeFlags":null},{"id":"a6e76e84-d466-4f0b-9cfd-777171bdeec0","uri":"","name":"workflow-test.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"8433ca7e-cb72-41d3-a14a-0d3e61db4ab3","sortOrder":21},"sortOrder":21,"tags":null,"recentChangeFlags":null},{"id":"1067193a-ca10-47b1-8fc4-d413eca1269f","uri":"","name":"workflow-dev.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"baaecbbe-d1f0-441f-ba27-db436c5543f6","sortOrder":22},"sortOrder":22,"tags":null,"recentChangeFlags":null},{"id":"39799301-fe5d-4a53-9b3b-0ecced7ad162","uri":"","name":"trust.bitdefender.com","category":"website","ipAddress":"","description":null,"engagementBriefTargetGroupTarget":{"id":"feae024e-c2ad-4b75-9719-361de112ed70","sortOrder":23},"sortOrder":23,"tags":null,"recentChangeFlags":null}],"inScope":false,"sortOrder":1,"description":null,"rewardRange":null,"descriptionHtml":null,"rewardRangeData":{},"recentChangeFlags":null}],"resources":[],"engagement":{"id":"3d114a36-dcf7-40cb-b102-7b524a3740fc","code":"bitdefender","state":"in_progress","endsAt":null,"bountyId":"01dcafe8-4b1f-494d-a19d-f6a511f347a0","startsAt":"2017-09-06T13:00:00Z"},"vrtScopeRules":[],"engagementConfiguration":{"participation":"open","crowdSelectionStrategy":"none"}},"industryName":"Computer Software","methodologyName":null,"logoUrl":"https://logos.bugcrowdusercontent.com/logos/749c/face/61362a72/42c35f74a1b7ede92978e5caed56d3e7_Untitled.jpg","logoBackgroundColor":"#D80916","displayDisclosureTerms":true,"coordinatedDisclosure":false,"collaborationEnabled":true,"participation":"open","rewardAllocation":"pay_for_success","engagementTypeDetail":{"iconVariant":"bug-bounty","productLabel":"Bug Bounty","timeboxed":false},"pausedReason":null,"lastTransitionAt":"2017-09-06T13:00:00.000Z","cancellationReason":null,"statusLabel":"In progress","routesPaths":{"brief":"/engagements/bitdefender","changelogs":"/engagements/bitdefender/changelog","submissions":null,"announcements":"/engagements/bitdefender/announcements","hallOfFame":"/engagements/bitdefender/hall_of_fames","crowdstream":"/engagements/bitdefender/crowdstream"},"announcementsCount":18,"knownIssuesEnabled":false,"isDemo":false,"serviceLevel":"Platform","submitReportUrl":"/engagements/bitdefender/submissions/new","methodologyUrl":null,"progressPercentage":0,"badgeVariant":null,"userBannedFromEngagement":null,"isLoggedIn":false,"loginUrl":"/user/sign_in","scopedSubmissionsUrl":"/submissions?engagement%5B%5D=bitdefender\u0026sort%5B%5D=submitted-desc","isFollowing":null,"credentialsUrl":null,"toggleSubscriptionUrl":"/bitdefender/engagement_subscribers","engagementChangelogsUrl":"/engagements/bitdefender/changelog","publishedAt":"2026-08-12T11:42:12.162Z","engagementChangelogUrl":"/engagements/bitdefender/changelog/3a45252c-eccf-4d60-a163-77362fa66418","createUserFeedbacksUrl":"/engagements/bitdefender/feedbacks","engagementCrowdstreamUrl":"/engagements/bitdefender/crowdstream","acceptedSubmissionsEnabled":true,"disclosedReportsEnabled":false,"engagementsUrl":"/engagements","engagementPaymentDetailUrl":null,"shouldShowHideButton":false,"engagementHiddenData":{},"totalRewardPool":null,"vrtScopeRules":{"data":[]},"vrtVersion":"1.19.1","isSubmissionPublishThrottled":false,"showIdVerificationAlert":false,"identityVerificationSettingsUrl":"https://bugcrowd.com/h/settings/identity_verification","identityUrl":null}