🎯 WEEKLY BRIEF

I have provided you with four new programs to hack this week! Each one has a fresh update or a massive bounty that makes it a great target for your skills!

This week was all about stealth, Hackers are using a new tool called PeckBirdy to hide inside regular computer tasks, making them invisible to most antivirus software. They are using false Chrome updates to break into government sites, and leave behind permanent backdoors.

The AI gold rush is real. Bugs are up to 540% because everyone is rushing to use AI without securing it first. HackerOne’s 1.5x bonus and Playtika’s 2x multipliers are ending soon, so spend this weekend to chain your bugs together and get big payouts!

🚀 TOP PROGRAMS TO HACK THIS WEEK

Here is YOUR list of 4 fresh opportunities to get started on!

Program

Platform

Asset Type

Max Bounty

Why it’s 🔥

Web/Exchange

$1,000,000 ‼️

Rewards critical web/app bugs up to $30k.

Web3 / Blockchain

$50,000+

Public program with a fresh, wide scope.

Mobile (iOS/Android)

$10,000

Current limited-time campaign offering 2x payout multipliers.

Smart Contracts

$100,000

V2 program just updated on Jan 27 with fresh code to audit.

💡TIPS FOR THE WEEK

Get That Money

  • The month is almost over, take advantage of the January bonus for medium or higher bugs on HackerOne.

  • Playtika will provide you with 2x payouts on critical server vulnerabilities.

Smart Hunting

  • AI bug prompt injection flaw reports are up to 540% higher right now, hop on this train.

  • Connect small mistakes together to create one big critical report.

Best Targets

  • Target Zest Protocol, new code usually has the most bugs.

  • OKG (OKX) is offering the highest payouts in the industry right now, with extreme bugs reaching up to $1,000,000

Don’t Get Banned…

  • No slop, don’t send low quality or AI generated junk.

  • Be clear, make sure your proof of concept actually works before you send something in

📅 Upcoming Events & CTFs

⚠️ Cyber News

  • China linked hackers are using a flexible tool called PeckBirdy to trick users into downloading fake chrome updates and stealing credentials from government sites.

  • The PeckBirdy tool is very evasive! Its gonna try and run away (basically) and hide inside normal computer processes to dodge software.

  • Attackers are deploying two brand new backdoors, MKDoor and HoloDonut (sounds delicious!), to maintain permanent access to infected systems.

Subscribe to hear more! Stay curious, and keep breaking things (safely!), see you in the next one. :)

Keep Reading