$3000 Bug Bounty Award from Mozilla for a successful targeted Credential Hunt
infonews
security
Source: Embrace The RedMay 13, 2020
Summary
A security researcher discovered a vulnerability in Mozilla's infrastructure by researching Firefox's remote debugging features and found that Mozilla uses Phabricator (a web-based platform for code reviews, bug tracking, and storing credentials). The researcher was awarded a $3000 bug bounty for successfully locating exposed credentials through this system.
Classification
Attack SophisticationModerate
Original source: https://embracethered.com/blog/posts/2020/mozilla-bug-bounty-credential-hunt-phabricator-token/
First tracked: February 12, 2026 at 02:20 PM
Classified by LLM (prompt v3) · confidence: 95%