gopro2

BugcrowdView on Bugcrowd
RawAI Enhanced
39
In Scope
55
Out of Scope
In-Scope Assets (39)
AssetCategoryBountyQuick Links
*.GOPRO-DSE.COMURLYes
*.GOPRO.COMURLYes
*.STAGING.GOPRO.COMURLYes
*.api.gopro.com/*URLYes
34.208.13.46OTHERYes-
35.161.194.184OTHERYes-
35.167.141.144OTHERYes-
35.80.158.67OTHERYes-
35.80.187.63OTHERYes-
35.81.73.81OTHERYes-
44.241.223.85OTHERYes-
52.27.170.89OTHERYes-
52.33.5.37OTHERYes-
52.40.195.251OTHERYes-
52.40.73.42OTHERYes-
52.43.38.13URLYes
54.213.3.209OTHERYes-
54.245.23.74OTHERYes-
54.245.49.62OTHERYes-
B2BRETURNS.GOPRO.COMURLYes
CRYPT.CORP.GOPRO.COMURLYes
HERONET.GOPRO.COMURLYes
MUNKI-ORIGIN-01P.CORP.GOPRO.COMURLYes
SIP.GOPRO.COMURLYes
WHEXCEPTIONS.GOPRO.COMURLYes
WWW.CINEFORM.COMURLYes
atom-aws01.corp.gopro.comURLYes
atom-aws01.gopro.comURLYes
atom-aws01d.gopro.comURLYes
atom-aws03.corp.gopro.comURLYes
atom-aws04.corp.gopro.comURLYes
community.gopro.comURLYes
gopro.com/*URLYes
https://apps.apple.com/us/app/quik-video-editor/id561350520IOSYes-
https://community.gopro.com/t5/en/GoPro-MAX-Exporter/ta-p/413311OTHERYes-
https://community.gopro.com/t5/en/GoPro-Player/ta-p/413305OTHERYes-
https://heronet.gopro.comURLYes
https://play.google.com/store/apps/details?id=com.gopro.smarty&hl=en_US&gl=USANDROIDYes
https://plus.gopro.com/media-libraryURLYes
Out-of-Scope Assets (55)
AssetCategoryBounty
*.quik.gopro.comURLYes
*.service-now.comURLYes
*.servicenow.comURLYes
3rd Party Product Review WidgetURLYes
All Cache PoisoningURLYes
Attacks Requiring Rooted/Jailbroken DeviceOTHERYes
Attacks Requiring Sideloading/Cracked Operating SystemOTHERYes
BUCVPN.CORP.GOPRO.COMURLYes
CALENDAR.GOPRO.COMURLYes
Camera Account Credential DumpsOTHERYes
ClickjackingURLYes
Denial of Service AttacksURLYes
EXIF Data SubmissionsOTHERYes
Email Spoofing/DMARC/SPFOTHERYes
GROUPS.GOPRO.COMURLYes
GUEST.GOPRO.COMURLYes
GoPro-related Open Source Github (ie ForgeJS)OTHERYes
Google Map API TokenURLYes
MANVPN.CORP.GOPRO.COMURLYes
MANVPN2.CORP.GOPRO.COMURLYes
MANVPNP.CORP.GOPRO.COMOTHERYes
Non-GoPro websitesURLYes
Open Redirects Without Chained AttackOTHERYes
PARVPN.CORP.GOPRO.COMURLYes
Paid API Key AbuseOTHERYes
Pre-account TakeoverOTHERYes
Quik Desktop Application - Windows & MacOTHERYes
Resource Exhaustion AttacksURLYes
SAMVPN.CORP.GOPRO.COMURLYes
SANVPN.CORP.GOPRO.COMURLYes
SHZVPN.CORP.GOPRO.COMURLYes
SJCVPN.CORP.GOPRO.COMURLYes
SJCVPN2.CORP.GOPRO.COMURLYes
SJCVPNP.CORP.GOPRO.COMURLYes
Session InvalidationOTHERYes
Social EngineeringOTHERYes
Static/Resource S3 Bucket ReadingOTHERYes
Submissions on old versions of softwareOTHERYes
Vulnerabilities Resulting in Denial of ServiceURLYes
Wayback MachineOTHERYes
atlassian.gopro.comOTHERYes
feedback.gopro.comURLYes
filetransfer.gopro.comURLYes
ftp2.gopro.comOTHERYes
helpdesk.gopro.comURLYes
https://brand.gopro.comURLYes
https://community.gopro.com/s/contactus?URLYes
https://drupal.gopro.comOTHERYes
investor.gopro.comOTHERYes
jobs.gopro.comURLYes
mail1.gopro.comOTHERYes
sharepoint.gopro.comOTHERYes
uat.gopro.comOTHERYes
vip.corp.gopro.comOTHERYes
vpn2.gopro.comOTHERYes