06/05/2026
🚨 Security Achievement by a KCSC Member! 🔐
We are proud to share a cybersecurity achievement from Rühàñ Àhsāñ Sarnav , a member of KCSC
Ruhan successfully discovered and responsibly reported a Private Profile Information Disclosure vulnerability due to Improper Access Control through a bug bounty platform (Intigriti).
📊 Severity: Medium (CVSS 6.9)
🛡️ Type: Improper Access Control
✅ Status: Archived / Resolved by the organization
This vulnerability highlighted how improper authorization checks can expose sensitive user profile information. Thanks to responsible disclosure, the organization has fixed the issue, improving the platform’s security and protecting user data.
At KCSC, we encourage our members to actively engage in Bug Bounty, vulnerability research, and responsible disclosure to help build a safer digital world.
👏 Congratulations to Rühàñ Àhsāñ Sarnav for this great contribution to the cybersecurity community!