Broken Link Hijacking — 404 Google Play Store— xxx$ Bounty

Proviesec
InfoSec Write-ups
Published in
3 min readNov 13, 2021

--

Hello Folks 👋 , this is my first write-up and I will tell you how I ended up getting an xxx$ bounty for a simple Broken Link Hijacking with Google Play Store.

What is Broken Link Hijacking?

Broken Link Hijacking (BLH) exists whenever a target links to an expired domain or page. Broken Link Hijacking comes in two forms, reflected and stored. This issue has been exploited in the wild numerous times, but surprisingly few researchers actively look for broken links in bug bounty programs.

--

--