June 28, 2022, 1:03 p.m. | Bug Bounty Reports Explained

Bug Bounty Reports Explained www.youtube.com

✉️ Sign up for the mailing list: https://bbre.dev/nl
📧 Subscribe to BBRE Premium: https://bbre.dev/premium
📣 Follow me on twitter: https://bbre.dev/tw

This video an explanation of a clickjacking bug in MetaMask that allowed the attacker to steal victim's Ethereum with a few clicks. Metamask paid $120,000 bug bounty for it to United Global Whitehat Security Team (UGWST), including René Kroka and José Almeida.

PoC code: https://bbre.dev/mm-poc
🖥 Get $100 in credits for Digital Ocean: https://bbre.dev/do


Timestamps:
00:00 Intro
00:47 What is …

bounty bug bug bounty clickjacking eth exploiting metamask stealing

Cyber Security Engineer

@ ASSYSTEM | Bridgwater, United Kingdom

Security Analyst

@ Northwestern Memorial Healthcare | Chicago, IL, United States

GRC Analyst

@ Richemont | Shelton, CT, US

Security Specialist

@ Peraton | Government Site, MD, United States

Information Assurance Security Specialist (IASS)

@ OBXtek Inc. | United States

Cyber Security Technology Analyst

@ Airbus | Bengaluru (Airbus)