
ReddAPI
External Program
Submit bugs directly to this organization
REDDAPI IS SHUT DOWN AS OF FEB 19th 2015-------------------This was a fun project, but I'm on to bigger and better things. Thank you everyone for your help. I hope to work with you again very soon!!
I built ReddAPI using pure .NET technology, hosted using Windows Azure. This system is 100% custom, from the ground up. I am not using any third party libraries. ReddAPI offers a REST and SOAP web service as well.
Right now I am looking for help to try and break the system; this includes the website for data leaks, error messages that reveal data, web service bugs or holes that cause data leak or a possible security exploit that could be taken advantage of. Really anything you find I would be interested in hearing about. I am the only person working on this project, it's something I'm doing in my spare time. The website and API is responsible for moving CryptoCoins around.
As a geek interested in security, I have developed much of the site with security in mind. I don't have a bounty amount setup, so only Hall of Fame right now. If some really cool show stopper if found, maybe we can work something out.
This is my first public project and I am really looking for as much feedback as I can get, on all subjects. Thanks for your help.
Note
I've added throttling for brute force prevention. I can and will add captcha in future releases, but for now, this will serve nicely.
I'm hosted on Azure - I can't fix the ARRFinity Cookie - It's the load balance cookie they use.
I am removing WordPress from Azure and moving to Linux for that - blog.reddapi.com is out of scope.