Bug Bounty phish from Outlook

Return-path:

Envelope-to: dave@doctor.nl2k.ab.ca

Delivery-date: Sun, 03 Jul 2022 18:28:04 -0600

Received: from doctor by doctor.nl2k.ab.ca with local (Exim 4.95 (FreeBSD))

(envelope-from )

id 1o89wJ-0002xi-Ch

for dave@doctor.nl2k.ab.ca;

Sun, 03 Jul 2022 18:27:47 -0600

Resent-From: The Doctor

Resent-Date: Sun, 3 Jul 2022 18:27:47 -0600

Resent-Message-ID:

Resent-To: Dave Yadallee

Received: from mail-tyzapc01olkn2086.outbound.protection.outlook.com ([40.92.107.86]:41440 helo=APC01-TYZ-obe.outbound.protection.outlook.com)

by doctor.nl2k.ab.ca with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

(Exim 4.95 (FreeBSD))

(envelope-from )

id 1o89Ca-0000AG-89

for sales@nk.ca;

Sun, 03 Jul 2022 17:40:37 -0600

ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none;

b=FbJ0HT/oA3zC4w66mgfoTYHeSnuJDbAVDlUqxvFRxTS4yE+tTaSLGF3cmM+MtWkNEk0HkY3I53XBqVT0uGCp6dKtDSGloLGk+PqbbUz51JmucNDM/Mq+56QAp/zvJNXGZQB0OGvdaW5JLJ2NCE7++VadV95pgyjRJhVFP6StEDVaPdxOsEQ7evN594ibqiVtaZ2r33eWxTOszdyxbz0dIjlDcvJdl87rBHAQrR7C4dhjyWPLBxgWCYui3pXsFcL/9M8AVt6HMnwySvaCUOfUfpPN52GyWowxWcj6PhUCYsj3J1g0OrXqOnGmdQCBs7tnYWiN4FUae49vABrsvfld5w==

ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;

s=arcselector9901;

h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;

bh=NTwYmTnBtSBmkZqbWGqsjJK9oNSsLtaBy0YFwJWqehs=;

b=cjUNDO4M6pNgN+IVvXRM1DLGyK1p6vRpX06nxULbjNBHle6k0KSFHAxaSSmFcjY+zKenaZqdKiLmf0aJeJsDeubMX+AkC/qN/N7Mjxf6aiX2cWUbDTV3+LMt5RxOKBpzx87sAPEJNIThIL3I3f47FUbvVP43l/VdIM+GFUnFNzJlunph2OCmiecFcE9N9eUNlgft/wMgpbrQ+nZHLbOuH05W5xP7bsQZIy+H8nTtOoEET1CO20WFvJrG1nsW8lMSAzSeuUeU8k98VsfaVzkZvDLUdEZw5Y015xMLKjV1yn+SMYgUWNKq0WujMOdWoCWyjPVvIf1fU4EvzHdlbz9MnQ==

ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=none; dmarc=none;

dkim=none; arc=none

DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=outlook.com;

s=selector1;

h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;

bh=NTwYmTnBtSBmkZqbWGqsjJK9oNSsLtaBy0YFwJWqehs=;

b=Pu+huFV0H5/orjU0WuqE8UoSy8+FDZuVdQe+uihn+kBdz9AG1DIECBFxtU5s4EoR/2w/Q2sPcMjwMMapfTnAe95dDWgu22YtxpJoKeMmlAQgY3PI5LHRzYSQ0nwERpkhnactBF3OtQVyKU4ejJEjmGGO33u9dO3b25JBwsRYtmBCLmItBVNkHXvZYF9Xb9HG0D8LnTTWlujvHa1yoCzUY1suEue6FB0aJv25H58w9LD1wod1o1CaOTb7FWzBI5yyfo97F9jTu49UUK9GiQ4imX4KBxCDclWlA4ptbPMGsgPhJDcdPirm7lhD6tvLxbJ4uzw379fq0WrOxJ2UOQsB5w==

Received: from SI2PR02MB4745.apcprd02.prod.outlook.com (2603:1096:4:125::12)

by TY2PR02MB4494.apcprd02.prod.outlook.com (2603:1096:404:8010::15) with

Microsoft SMTP Server (version=TLS1_2,

cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5395.20; Sun, 3 Jul

2022 23:40:05 +0000

Received: from SI2PR02MB4745.apcprd02.prod.outlook.com

([fe80::a088:7224:fcf7:c831]) by SI2PR02MB4745.apcprd02.prod.outlook.com

([fe80::a088:7224:fcf7:c831%6]) with mapi id 15.20.5395.020; Sun, 3 Jul 2022

23:40:05 +0000

From: Muhammad Julfikar Hyder

To: "sales@nk.ca"

Subject: Bug Bounty

Thread-Topic: Bug Bounty

Thread-Index: AQHYjzYzBuRGF72Tg0O4XlsYMMSgCw==

Date: Sun, 3 Jul 2022 23:40:05 +0000

Message-ID:



Accept-Language: en-US

Content-Language: en-US

X-MS-Has-Attach:

X-MS-TNEF-Correlator:

x-tmn: [Ec7iJcrTaHajzOQpjX7yOMN7QU1/TIF4]

x-ms-publictraffictype: Email

x-ms-office365-filtering-correlation-id: 02b693ad-c31e-47d7-11ad-08da5d4d5b71

x-ms-traffictypediagnostic: TY2PR02MB4494:EE_

x-microsoft-antispam: BCL:0;

x-microsoft-antispam-message-info:

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

x-ms-exchange-antispam-messagedata-chunkcount: 1

x-ms-exchange-antispam-messagedata-0:

=?us-ascii?Q?9dlo6gF8/XX6bcDAj1iVnk7G6qJn4hslMxzbDOdoTn+PTsmBBDhFxG1yQY44?=

=?us-ascii?Q?IGDqWoIMLR+xDuiWrEviX45kp15+EguS40Xn5lPLTRGfv5Y/E7n/9U4vTk+n?=

=?us-ascii?Q?XOJk3ovkn+aZlXp9znH42a9rD3E5IkieH/ufC2Dh2r5VcQLzmo1uKVG7c0ln?=

=?us-ascii?Q?k43owlTvWj5yGyz3bZSY+t2pkRCEdT5yyUnfettFa/3e6h/KAlvxALfb0MFy?=

=?us-ascii?Q?njVyswZoXShVo56AhSO2+re2pFWqvSOUIspCZu7XVX9kMHjpkWwD6eUyNJZy?=

=?us-ascii?Q?TkNGk+FO8zz97I3Zs/nJNE1r8g7FOj0SYEBHhDt8v/zPqqDbpjlH9q30znDa?=

=?us-ascii?Q?9Cyfr8RqDF36fTeTIM9KQS1ziyDzZip9saibNGM+APaXwjTOmoGPfPAa5j17?=

=?us-ascii?Q?e6r8u6wirXO0R6h0wga/DgV5vIuCTdSqCa6Ug2LVYeDYVdYm4E6rdR56jgHA?=

=?us-ascii?Q?VRqgxouiy9zuEe8lBhrIBTGDadJyhRlUybByp5anDNhGj4Hi7nIvSbN8xbUY?=

=?us-ascii?Q?LmlxWDcIjry+hfpvNIt7BerE4kzjlGWZp30opDafOH4HjYePCx/6J9zduj3n?=

=?us-ascii?Q?IH8sv2bOYKhrziUJvrZPy5GjGZ6eB5NXAm0sseYy7VnJQ56m2uu7X9+G4kbF?=

=?us-ascii?Q?5L9h6KKxhsuyTMm9FjmpzJ3Yt06+vGBJ/eITBHSdUpzhvKHBAoMT+AE9Qj+z?=

=?us-ascii?Q?ZCER0xapfFW8L7ZLGYRG7BJdIWpV0V05FigplzcVK1stW+qlpKjHqmMScDwP?=

=?us-ascii?Q?4OsxD7gQKRNLjC2l/CeLaXZ0ll9vpEDJ7eRupMzXC1g5b6o3KVDUtwBJhPVQ?=

=?us-ascii?Q?vnUvw39z7tNk+zYBz13LnEGE6SQriSnSOod+NGzHbHi5Y70KDLXVl+iOn1R2?=

=?us-ascii?Q?sLZuJQLHNrGLLMvzDr2X94HPMLRwty/1advWfor1kJ3dho8kd3DEYUaWxVCo?=

=?us-ascii?Q?b2IAusFB9je9BgMyAxz397JthtiOrlNiZG/av308MRhZLz444q55196NwTBs?=

=?us-ascii?Q?/2UXbhmbKUmbgUsyp7JufxWE6IYazMdUAaIvqNxXBknluqaD/lYBgQM2SDMo?=

=?us-ascii?Q?p+O8bEI2y3R0URzL1MENdWNuizEnkgdou488y9TA44iFYkwSlMa8UKhs+Gpy?=

=?us-ascii?Q?TzstreUZuYqrTXrl4mj5IjOkziPlom6yK+WxGtphTiysMBCLnm7IFeAvWwC6?=

=?us-ascii?Q?Ou9cG6HclgioGgTxjPzHX8gOHC4ghK8RDQPZk1sj+Lnzky5ex83tC4RNE84s?=

=?us-ascii?Q?1mBIbigwHPpyc132qRI9Tsfg0B2AFOSponAd3vvmvSn6rnnyrM8H6BpDjiNd?=

=?us-ascii?Q?nhY=3D?=

Content-Type: multipart/alternative;

boundary="_000_SI2PR02MB4745E7B3B233F59B11A47288A1BF9SI2PR02MB4745apcp_"

MIME-Version: 1.0

X-OriginatorOrg: outlook.com

X-MS-Exchange-CrossTenant-AuthAs: Internal

X-MS-Exchange-CrossTenant-AuthSource: SI2PR02MB4745.apcprd02.prod.outlook.com

X-MS-Exchange-CrossTenant-RMS-PersistedConsumerOrg: 00000000-0000-0000-0000-000000000000

X-MS-Exchange-CrossTenant-Network-Message-Id: 02b693ad-c31e-47d7-11ad-08da5d4d5b71

X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Jul 2022 23:40:05.4036

(UTC)

X-MS-Exchange-CrossTenant-fromentityheader: Hosted

X-MS-Exchange-CrossTenant-id: 84df9e7f-e9f6-40af-b435-aaaaaaaaaaaa

X-MS-Exchange-CrossTenant-rms-persistedconsumerorg: 00000000-0000-0000-0000-000000000000

X-MS-Exchange-Transport-CrossTenantHeadersStamped: TY2PR02MB4494



--_000_SI2PR02MB4745E7B3B233F59B11A47288A1BF9SI2PR02MB4745apcp_

Content-Type: text/plain; charset="us-ascii"

Content-Transfer-Encoding: quoted-printable



Hello there, I just discovered a web security vulnerability at your web app=

lication. I would really appreciate if you please send me your bug bounty p=

olicy.





Thanks

Muhammad Julfikar Hyder





--_000_SI2PR02MB4745E7B3B233F59B11A47288A1BF9SI2PR02MB4745apcp_

Content-Type: text/html; charset="us-ascii"

Content-Transfer-Encoding: quoted-printable




hemas-microsoft-com:office:word" xmlns:m=3D"http://schemas.microsoft.com/of=

fice/2004/12/omml" xmlns=3D"http://www.w3.org/TR/REC-html40">




>











Hello there, I just discovered a web security vulner=

ability at your web application. I would really appreciate if you please se=

nd me your bug bounty policy.



 



 



Thanks



Muhammad Julfikar Hyder



 











--_000_SI2PR02MB4745E7B3B233F59B11A47288A1BF9SI2PR02MB4745apcp_--

Trackbacks

Trackback specific URI for this entry

This link is not meant to be clicked. It contains the trackback URI for this entry. You can use this URI to send ping- & trackbacks from your own blog to this entry. To copy the link, right click and select "Copy Shortcut" in Internet Explorer or "Copy Link Location" in Mozilla.

No Trackbacks

Comments

Display comments as Linear | Threaded

No comments

Add Comment

Enclosing asterisks marks text as bold (*word*), underscore are made via _word_.
Standard emoticons like :-) and ;-) are converted to images.

To prevent automated Bots from commentspamming, please enter the string you see in the image below in the appropriate input box. Your comment will only be submitted if the strings match. Please ensure that your browser supports and accepts cookies, or your comment cannot be verified correctly.
CAPTCHA

Enclosing asterisks marks text as bold (*word*), underscore are made via _word_.
Standard emoticons like :-) and ;-) are converted to images.

To prevent automated Bots from commentspamming, please enter the string you see in the image below in the appropriate input box. Your comment will only be submitted if the strings match. Please ensure that your browser supports and accepts cookies, or your comment cannot be verified correctly.
CAPTCHA