🚨New video is up!
I found a bug bounty where I uploaded a PDF file that ran JavaScript, triggered a fake username & password prompt, and stole the victim's credentials — and it got me a bounty 💰
In this video, I break down:
🔹 How I approached the target
🔹 How portswigger research helped me build the malicious PDF
🔹 How the JavaScript payload harvested credentials
🔹 The full report that landed the bounty
If you're into bug bounty or infosec, this one's for you.
👉 Watch, like, and subscribe: https://youtu.be/3pDexYiI9CA
