Capcut Bug Bounty Page
With millions of creators storing drafts & data on ByteDance servers, the attack surface is MASSIVE.
As CapCut's user base explodes (surpassing Premiere Rush in mobile downloads), its security posture remains a black box to the research community. capcut bug bounty
#Cybersecurity #BugBounty #CapCut #ResponsibleDisclosure #AppSec With millions of creators storing drafts & data
I've found: 🔹 Auth bypass in the web editor 🔹 Insecure direct object references (IDOR) in project files 🔹 Rate-limiting gaps on the mobile API capcut bug bounty
🚨 🚨