Settings

Theme

Attempting to disclose a social engineering vulnerability to Instagram

3 points by omfg 9 years ago · 2 comments · 1 min read


I've been trying to disclose a vulnerability in Instagram's support process that is being widely abused (social engineering). Unfortunately I can't get their support or press team to respond. FB White Hat disclosure did respond but can't do anything unless it's a technical exploit. They have flaws in their account recovery mechanism.

It's a long shot and perhaps the wrong place to ask. But. Does anyone know someone at IG I can contact to disclose this issue responsibly?

Thank you.

a_lifters_life 9 years ago

Could you try to contact some people on linkedin?

  • omfgOP 9 years ago

    I did try reaching out to some employees on LinkedIn. While I saw some profile views none actually replied back. I'm sure there has to be a team at Instagram who handles this stuff but finding / contacting them has been incredibly difficult. Starting to run out of ideas and the exploit is still active.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection