Hacker News new | ask | show | jobs
by mrRandomGuy 1790 days ago
With rewards this low it's no surprise that people sell bugs and exploits to often shady third party entities.
2 comments

"How I Found a Vulnerability to Hack iCloud Accounts and How Apple Reacted to It"

https://news.ycombinator.com/item?id=27564236

Spoiler: Apple didn't paid him (even they tried to fool him a second time). By reading HN its not the first time it happens..

Nobody is selling XSS bugs to NSO.
with the huge uptake in Electron apps you can probably sell an XSS if you can turn it into a RCE.