Wiselending

Hubble Protocol: Program Info

hubbleprotocol.io

Private Bounty

Submit Reports

SCOPE

$500,000

Max Payout

Max Resolution Time

30 Business Days

17th December 2023

Start Date

Documentation

Last Updated docs.hubbleprotocol.io/

RULES

Focus Area

In Scope

  • Stealing or loss of funds
  • Unauthorized transaction
  • Transaction manipulation
  • Attacks on logic (behavior of the code is different from the business description)
  • Remote code execution
  • Bugs that can facilitate attacks
  • Exposure of infrastructure private keys and/ or PII
  • Determinism bugs that could lead to inconsistent states
  • Out of Scope

  • Theoretical vulnerabilities without any proof or demonstration
  • Redundant code
  • Any encrypted credentials, auth tokens, etc. checked into the repo
  • Bugs in dependencies
  • Attacks that require social engineering
  • Unique T&Cs

  • All submissions must include a POC, showing all impacts of the vulnerability
  • Duplicate submissions don't get rewarded. First submission of each bug wins