We are busy working on a brand new website and platform. All of the content on this website is considered out-dated, however challenges and our members section are working as before. Stay tuned for updates!
th33phoenix has reached Level 4 with 75+ unique vulnerabilities discovered and they have proven to us that they understand web application vulnerabilities and how to discover them. If you run a bug bounty/vulnerability disclosure program and you are looking for an active, professional researcher, we recommend considering this user
| Report Title | Event ID | Severity | Vulnerability Type |
|---|---|---|---|
| Reflected XSS on /register.php using ref parameter | FirstBlood v2 | Medium | Reflective XSS |
| Application Logic flaw leads to anyone registering a doctor account without invite code | FirstBlood v2 | Medium | Auth issues |