Under Armour AppSec

  • $125 – $2,500 per vulnerability
  • Partial safe harbor

UNDER ARMOUR - Scope Updates!

Big News! Under Armour is ramping up their cybersecurity and embracing hacker innovation by enhancing their current bug bounty program. Brace for bigger scope and exciting action!

We highly recommend you take a look at this additional attack surface. Here's what’s new:

Target URL Change
underamour.com https://www.underarmour.com Added to Paid Targets
underarmour.co.uk https://www.underarmour.co.uk Added to Paid Targets
UA Shop iOS https://apps.apple.com/us/app/under-armour/id1092704571 Added to Paid Targets
UA Shop Android https://play.google.com/store/apps/details?id=com.ua.shop&hl=en Added to Paid Targets
api.shop.ua.com/graphql https://api.shop.ua.com/graphql Added to Targets
underarmournext.co.uk https://www.underarmournext.co.uk/ Added to Targets
underarmournext.com https://underarmournext.com/ Added to Targets
MapMyFitness iOS https://apps.apple.com/us/app/map-my-fitness-gps-workout/id298903147 Moved from Paid Targets to Targets
MapMyFitness Android https://play.google.com/store/apps/details?id=com.mapmyfitness.android2&hl=en Moved from Paid Targets to Targets

As always, please see the program brief for the full details around testing. If you have any questions, please reach out to support@bugcrowd.com.

Get out there and lay claim to those bugs!