
PureVPN
External Program
Submit bugs directly to this organization
Since 2007, PureVPN has grown into one of the biggest players of the VPN industry. With continuously expanding server base, server locations, compatible software, data encryption tools, authentication protocols, customer support options and payment methods, PureVPN has been relentlessly working towards delivering the best value to its customers.
PureVPN's infrastructure is spread across more than 45 countries with hundreds of thousands of users from over 120 countries. The service has many use cases starting with travelers or teleworkers looking to encrypt their Internet activity on a hotel/airport or other insecure public Wiif, expats or travelers who seek to stream online content from the country of their origin or marketing pros who analyze the web from different online country personas. Then there are hobbyists and technologists who continue to explore innumerable innovative use cases for the service.
Our focus is on the following:
Sensitive areas to focus are our 3rd party CRM namely WHMcs at billing.purevpn.com, our partner API at reseller.purevpn.com/partner/api.php and our 3rd party Affiliate Management panel "PostAffiliatePro" at billing.purevpn.com/affiliates.
Then there are custom clients (software) for Windows, MAC, iOS and Android links can be found in the Target area.
Lastly there is the core service and production network that compromises of several hundreds of Windows based VPN servers hosted across more than 45 countries. Servers are connected to from within those software however for those who wish to access the network without the software can use the following host addresses
http://billing.purevpn.com/pptp_l2tp_hostname_list.php
On the server end we have RRAS window service and OpenVPN installed running on ports UDP 53 and TCP 80.
The following is considered out of the scope:
Happy bounty hunting people!
This bounty follows Bugcrowd’s standard disclosure terms.
Policy source: https://bugcrowd.com/purevpn