In my spare time, I participate in some bug bounty hunting. This is were companies reward security researchers for responsibly disclosing security vulnerabilities found on their websites.

I take an hour or two out of the odd evening to poke at these web applications to see what I can find. I have been added to many "Wall of Fame" or "Responsible Disclosure Awards" sections for many ethical disclosures I have made. I'll keep adding to this list as I find more. The list is available over there =>

I also take part in crowdsourced application testing and penetration testing through sites like and . These sites run excellent responsible disclosure platforms for many sites. One of my greatest personal achievements is maintaining a top 100 spot on both bugcrowd.com, which has more than 16,000 security researchers and hackerone.com. Links to my profile on both sites are available below.




Evernote.com


Rackspace.com





Here are some other cve's and significant bugs...