
DRIVE.NET, Inc.
External Program
Submit bugs directly to this organization


External Program
Submit bugs directly to this organization
For now, only the DRIVE2 web application (www.drive2.ru) is in scope. The valid attack surface is anything on that domain and any subdomains except ones explicitly mentioned in the "Scopes" section below. However, if you find any vulnerabilities in our other products, you're welcome to report them as well.
We are most interested in the following vulnerabilities:
Please do not report:
Both search functions are provided by a 3rd party https://www.drive2.ru/market/ https://www.drive2.ru/search/
When submitting the report, make sure to include:
We will abide by HackerOne's disclosure guidelines.. Disclosure is possible only after the issue you reported is fixed and confirmed to be safe to disclose by our developers.
While researching, we'd like to ask you to refrain from:
Thank you for helping keep DRIVE.NET, Inc. and our users safe!
Естественно, мы также принимаем отчеты на русском языке. Спасибо, что помогаете нам стать безопаснее.