• EldenLord@lemmy.world
    link
    fedilink
    arrow-up
    3
    ·
    edit-2
    25 days ago

    I know a guy who did exactly that and got sued. The security failure he reported even was a Straftatbestand committed by the company and so he won the process. German companies really love shooting themselves in the foot.

    • bless@lemmy.ml
      link
      fedilink
      arrow-up
      2
      ·
      edit-2
      24 days ago

      Over here, not just sued, but sued for extortion because they had the audacity to ask for bug bounty. Ok then, if I ever find a security hole that exposes sensitive data, filing a gdpr report it is

      • CompassRed@discuss.tchncs.de
        link
        fedilink
        arrow-up
        2
        ·
        7 days ago

        For the record, I didn’t bring up a bounty, but I still received payment. It helps that it is a small company, and that the CEO is also a developer. They were so grateful for the discovery that the bounty was freely offered without me asking.

        • bless@lemmy.ml
          link
          fedilink
          arrow-up
          2
          ·
          7 days ago

          I’m glad that it worked out for you. May you always encounter levelheaded proper in life