Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • PM Modi in Manipur
  • Charlie Kirk killer
  • Sushila Karki
  • IND vs PAK
  • India-US ties
  • New human organ
  • Downton Abbey: The Grand Finale Movie Review
fp-logo
Indian engineer receives $12,500 in bounty for exposing image-deleting Facebook bug
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
  • Home
  • Tech
  • News & Analysis
  • Indian engineer receives $12,500 in bounty for exposing image-deleting Facebook bug

Indian engineer receives $12,500 in bounty for exposing image-deleting Facebook bug

Nishtha Kanal • September 3, 2013, 09:02:55 IST
Whatsapp Facebook Twitter

A 21-year old Indian Electronics and Communications Engineer has become the recipient of a $12,500 bounty…

Advertisement
Subscribe Join Us
Add as a preferred source on Google
Prefer
Firstpost
On
Google
Indian engineer receives $12,500 in bounty for exposing image-deleting Facebook bug

A 21-year old Indian Electronics and Communications Engineer has become the recipient of a $12,500 bounty after reporting a Facebook bug that allowed one to delete an image on a page without any interaction from the user.

Researcher Arul Kumar posted a blog about how easy it was to exploit the Facebook Support Dashboard and delete any image from any page, including verified ones. Kumar detailed the bug, deemed critical, and even sent across a video to Facebook’s security team.

STORY CONTINUES BELOW THIS AD

How the bug worked

How the bug worked

The bug worked with any browser at all and was exploited best through mobile devices. Essentially, two profiles were required to make this bug work, with one profile acting as the receiver and the other as a sender. Photo_id and Owner Profile_id were parameters necessary as well. If one wanted an image deleted, he would need both these parameters. Once tampered with, these would ensure that photos could be removed without the owner even knowing about it.

More from News & Analysis
What is the US HIRE Bill and why is India’s $250-billion IT sector worried? What is the US HIRE Bill and why is India’s $250-billion IT sector worried? Is the internet dead? What's this theory that OpenAI's Sam Altman says might be true? Is the internet dead? What's this theory that OpenAI's Sam Altman says might be true?

The unfolding of events, as posted by Kumar, becomes eerily similar to that of Khalil, the Security Expert who broke into Mark Zuckerberg’s profile. Khalil had tried to report a vulnerability to the Facebook Security team but for multiple reasons, the team either dismissed his claim or did not take it seriously. Desperate, Khalil broke into Mark Zuckerberg’s wall to display the bug that allowed anyone to post on any Facebook user’s wall. He wrote a lengthy post about how he was not taken seriously.

Soon, his profile was suspended, the bug fixed, but Khalil did not win any bounties from Facebook since he broke an important rule of never to meddle with a real user’s profile while displaying a bug.

Kumar also faced an initial rejection from the team. He took a cue from recent events and sent in a video detailing this bug further. Interestingly, he even exploited Zuckerberg’s photo but did not delete it. Facebook recognised the bug and decided to award Kumar $12,500. The social network had also approved 3 Open Redirectors by Kumar, making him eligible to a bounty of $1,500 more.

STORY CONTINUES BELOW THIS AD
Tags
facebook Mark Zuckerberg Facebook Photos Khalil white hat Facebook bug bounty
End of Article
Written by Nishtha Kanal
Email

Intrigued by all things social, Nishtha will invariably tweet about you. When not tweeting or writing about the next viral video, you will hear her proclaiming her love to Metallica, James Hetfield, Opeth, Akerfeldt and all bands that go 'growl'. She also obsesses about ACP Pradyuman and South Park and you will always find her moving around with a book. Her focus is on all the happening stuff in the tech domain, and she won't hesitate to take a shot at some of the oddball devices that make their way to our labs. see more

Latest News
Find us on YouTube
Subscribe
End of Article

Top Stories

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV