Bug Bounty Programs

  • Points – $100,001 per vulnerability
  • Safe harbor

New Target added - Cellular Network Auth Bypass via Web/Mobile App

Hello Security Researchers!

There have been some recent changes/updates to our "Special Targets" on the T-Mobile program. Here is what’s new:

  • Your authenticated device on T-Mobile's network now serves as a MFA device while logging into your T-Mobile account via Mobile Web/Mobile App while on the cellular network.
  • Targeting the following MSISDN 404-200-7239 we look forward to your expertise in discovering potential bypasses in this new implemented security feature.

As always, please see the program brief for the full details around testing. If you have any questions, please visit Bugcrowd Support and create a support ticket.

Get out there and lay claim to those bugs!

-#E20074