Many of you already know what I do on the side. I spend a good amount of my free time doing security analysis and penetration testing on web applications here in our Hive ecosystem. I do this voluntarily, without contracts or a fixed payment, which can sometimes lead to misunderstandings. But that is just how it is.  This morning, while enjoying my first coffee and scrolling through the Snaps on PeakD, I saw something new. A fresh frontend for skaters on Hive had just been released. Of course, I could not resist and jumped right into checking it for possible security issues. Unfortunately, I did not have to search for long before I came across vulnerabilities. It is something I have seen far too often in Hive projects. I documented the details of what I found and sent everything directly to the Skatehive team. To their credit, they reacted quickly. They understood the situation immediately and began working on fixing the problems. After their first reply confirming the fix, I checked again and could not find any remaining issues. That is exactly how it should be. When there are security flaws in a public-facing frontend, sometimes every minute counts. A big thank you to the Skatehive team and especially to @xvlad for working so quickly and efficiently to close those issues. Sadly, it is not always like this. In the past, I have often run into frontend developers who had no idea what I had just found. Many were not even aware of the risks these vulnerabilities carried. What makes it even harder is that I am using my own time, knowledge, and years of experience to help – and yet sometimes I do not even get a thank you. In a few cases, I have even been threatened or completely dismissed. That is frustrating, but as someone wearing the white or grey hat, I have to accept it. It is a shame we do not have a bug bounty program on Hive. When you find security problems in a project that is doing very well financially, it feels strange not to have any formal recognition. I will not name the project yet, but I can say that there are still several very critical vulnerabilities in that frontend. At least one has a CVSS score of 8.1 (High) and could cause serious trouble if exploited. (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N) No matter how much some people might laugh at or dismiss my work as a security researcher, at the end of the day we are all using a platform that deals with real money. For some, it is not a small amount either. This is why I will not stop doing what I do. So that was my Sunday. Sitting at my PC with perfect sunshine outside, plenty of coffee, and now finally an evening beer. A day dedicated to keeping Hive a little safer. Thanks for reading and see you next time. This show's up, when you try to do bad stuff now ;) GG   #### Do you like what i do? Vote for my Witness and show your Support. --- <div class="pull-left"><div class="text-justify"> [](https://vote.hive.uno/@louis.witness) ##### Vote for my Hive Witness U can vote for my Witness using Hive Keychain here: https://vote.hive.uno/@louis.witness </div></div> <div class="pull-right"><div class="text-justify"> [](https://primersion.com/he-witnesses) ##### Vote for my Hive Engine Witness Vote for my Witness on Hive-Engine using Primersion Tool: https://primersion.com/he-witnesses <sup>Enter your Username and search for louis.witness</sup> </div></div>
author | louis88 |
---|---|
permlink | keeping-hive-and-its-projects-safe-my-sunday-dedicated-to-more-secure-frontends-on-hive |
category | hive-139531 |
json_metadata | {"app":"peakd/2025.8.2","format":"markdown","author":"louis88","tags":["development","security","hive","community","blog","frontend","vulnerabilities","dapps"],"users":["xvlad","louis.witness"],"image":["https://files.peakd.com/file/peakd-hive/louis88/23uQJrYteZRY8cAsYTdzbEyoticFgfHpgtqe4mVGWuiifhYCC2k12ytewGD6FzrKS3wk4.png","https://files.peakd.com/file/peakd-hive/louis88/23tRrRstzd4MWR7Gf4bnsZhAtJvRYd61EEEYr1PA2RjkPQpxd1qNhZzPcchZgJ3eX1EFq.png","https://media.tenor.com/nI0Co-Jgy7wAAAAC/jack-sparrow-hat-tip.gif","https://files.peakd.com/file/peakd-hive/louis88/23v4Zbq5TQyn3aFGQ7YcUyQJQCHhh556WQfTgmeR6EtVe1RWUURNc89oCX25ZFnUHAXww.png","https://files.peakd.com/file/peakd-hive/louis88/24241zs2F4mEKWwVa9y2CkqHjUcR7Rh2EyRQEXZA5vfHdjEMnq8Ej8R4cWxT1jgAtXQHP.png"]} |
created | 2025-08-10 15:59:27 |
last_update | 2025-08-10 15:59:27 |
depth | 0 |
children | 15 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 15:59:27 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 24.658 HBD |
promoted | 0.000 HBD |
body_length | 4,025 |
author_reputation | 1,199,199,256,814,378 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,860,796 |
net_rshares | 78,123,356,024,663 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
simba | 0 | 149,073,598,235 | 100% | ||
leprechaun | 0 | 1,778,780,043 | 16.25% | ||
roelandp | 0 | 5,505,359,666 | 0.37% | ||
jeffjagoe | 0 | 46,231,506,724 | 100% | ||
arcange | 0 | 648,371,495,283 | 5% | ||
logic | 0 | 25,406,978,956 | 80% | ||
germansailor | 0 | 535,248,880,544 | 100% | ||
sabine-reichert | 0 | 2,646,288,545 | 100% | ||
oflyhigh | 0 | 2,304,322,371,785 | 50% | ||
steevc | 0 | 2,986,477,048,107 | 80% | ||
netaterra | 0 | 5,811,481,866 | 15% | ||
mattclarke | 0 | 1,300,221,716,023 | 100% | ||
jlufer | 0 | 36,421,504,642 | 100% | ||
penguinpablo | 0 | 142,605,293,719 | 14% | ||
uwelang | 0 | 1,245,202,832,079 | 30% | ||
funnyman | 0 | 1,550,146,812 | 5.6% | ||
steemcleaners | 0 | 30,724,127,389 | 80% | ||
noborders | 0 | 449,007,391 | 10% | ||
freiheit50 | 0 | 683,416,665 | 100% | ||
discovereurovelo | 0 | 1,001,424,425 | 0.75% | ||
tangmo | 0 | 111,150,708,651 | 40% | ||
doodleman | 0 | 958,432,876 | 50% | ||
walterjay | 0 | 12,091,056,636 | 0.62% | ||
alexvan | 0 | 190,338,366,584 | 100% | ||
kobold-djawa | 0 | 101,588,650,468 | 100% | ||
ripperone | 0 | 4,686,597,371,112 | 50% | ||
steemitboard | 0 | 11,210,624,527 | 5% | ||
fronttowardenemy | 0 | 4,295,966,582 | 1.5% | ||
borislavzlatanov | 0 | 28,851,982,184 | 100% | ||
freebornsociety | 0 | 3,008,290,807 | 5.07% | ||
detlev | 0 | 2,639,212,507,991 | 100% | ||
lizanomadsoul | 0 | 3,203,364,042 | 1.5% | ||
dreamon | 0 | 496,762,315 | 11.1% | ||
reconnectnature | 0 | 172,649,469,201 | 88% | ||
kingkinslow | 0 | 771,121,711 | 100% | ||
morph | 0 | 6,513,947,963 | 50% | ||
roomservice | 0 | 1,876,930,933 | 75% | ||
cryptoriddler | 0 | 45,263,193,744 | 100% | ||
jeanpi1908 | 0 | 144,127,611,413 | 100% | ||
alphacore | 0 | 7,272,153,450 | 7.12% | ||
chinito | 0 | 1,924,916,555 | 18% | ||
joeyarnoldvn | 0 | 513,251,567 | 1.66% | ||
mynewlife | 0 | 1,759,172,002,630 | 100% | ||
livinguktaiwan | 0 | 4,481,277,174,938 | 100% | ||
godfish | 0 | 449,564,122,827 | 49% | ||
codingdefined | 0 | 710,635,401,441 | 100% | ||
shebe | 0 | 535,881,956 | 6% | ||
nikdo | 0 | 12,327,463,408 | 49% | ||
leaky20 | 0 | 328,181,180,418 | 39% | ||
vikisecrets | 0 | 882,668,320,447 | 33% | ||
martibis | 0 | 17,383,587,153 | 100% | ||
travelingmercies | 0 | 4,876,576,799 | 100% | ||
ctf | 0 | 2,994,012,459 | 100% | ||
etblink | 0 | 472,148,432,306 | 50% | ||
zirochka | 0 | 391,451,392,092 | 33% | ||
spaminator | 0 | 500,016,205,290 | 80% | ||
reinhard-schmid | 0 | 313,279,306,199 | 100% | ||
kimzwarch | 0 | 19,463,793,565 | 4% | ||
niallon11 | 0 | 1,343,450,906,599 | 100% | ||
sportschain | 0 | 951,995,990 | 50% | ||
jedigeiss | 0 | 2,915,551,574,797 | 100% | ||
rmp | 0 | 3,654,289,296 | 100% | ||
artlover | 0 | 1,718,019,038 | 100% | ||
sorin.cristescu | 0 | 63,485,915,247 | 10% | ||
therealwolf | 0 | 1,100,074,643,773 | 100% | ||
mballesteros | 0 | 83,483,646,856 | 50% | ||
fatman | 0 | 9,286,739,432 | 2% | ||
votehero | 0 | 21,505,927,860 | 4.3% | ||
espoem | 0 | 15,431,900,728 | 4.9% | ||
msp-makeaminnow | 0 | 21,511,740,802 | 22.9% | ||
calimeatwagon | 0 | 2,743,733,949 | 35% | ||
silasvogt | 0 | 896,464,349 | 50% | ||
zoidsoft | 0 | 90,004,675,533 | 100% | ||
tixinhacapitinha | 0 | 2,672,269,940 | 100% | ||
dejan.vuckovic | 0 | 15,923,705,801 | 15% | ||
sourovafrin | 0 | 5,160,653,846 | 60% | ||
sunsea | 0 | 316,540,472,345 | 100% | ||
steemflow | 0 | 490,051,711,876 | 100% | ||
smartsteem | 0 | 4,787,826,830,608 | 100% | ||
xsasj | 0 | 2,114,497,288 | 1.5% | ||
sniki003 | 0 | 523,604,583 | 2.5% | ||
mytechtrail | 0 | 19,840,640,248 | 15% | ||
itchyfeetdonica | 0 | 6,009,982,142 | 0.75% | ||
rcshad0w | 0 | 86,928,850,383 | 100% | ||
obvious | 0 | 168,323,827,579 | 100% | ||
sneakyninja | 0 | 3,185,337,315 | 4.61% | ||
nataliabuchynska | 0 | 12,624,948,651 | 100% | ||
cryptonized | 0 | 235,509,142 | 14% | ||
crookshanks | 0 | 1,206,891,102 | 100% | ||
kissi | 0 | 14,399,506,290 | 67.5% | ||
gabrielatravels | 0 | 1,225,260,333 | 0.52% | ||
nerdtopiade | 0 | 33,849,391,598 | 60% | ||
sinochip | 0 | 468,724,955 | 100% | ||
piotrgrafik | 0 | 899,916,762,458 | 80% | ||
manncpt | 0 | 2,782,576,238 | 1.5% | ||
jarvie | 0 | 3,990,255,108,120 | 100% | ||
jnmarteau | 0 | 555,933,518 | 1.5% | ||
udabeu | 0 | 38,567,368,119 | 33% | ||
bet1x2 | 0 | 839,000,825 | 50% | ||
beggars | 0 | 25,926,942,740 | 100% | ||
tomhall | 0 | 28,358,522,603 | 100% | ||
condeas | 0 | 2,286,191,537,133 | 100% | ||
asgarth | 0 | 931,459,304,646 | 50% | ||
bozz | 0 | 472,237,712,267 | 20% | ||
cst90 | 0 | 537,537,989,273 | 100% | ||
melvin7 | 0 | 73,178,336,630 | 20% | ||
jagoe | 0 | 479,534,423 | 100% | ||
letsplaywhatelse | 0 | 2,097,818,442 | 75% | ||
almi | 0 | 310,262,044,862 | 50% | ||
photobook | 0 | 15,939,260,867 | 100% | ||
properfraction | 0 | 68,812,423,803 | 100% | ||
satren | 0 | 58,258,406,739 | 30% | ||
lauchmelder | 0 | 2,574,675,702 | 50% | ||
vcclothing | 0 | 1,083,046,915 | 0.6% | ||
sonius94 | 0 | 622,943,078 | 50% | ||
rivalzzz | 0 | 213,773,703,221 | 100% | ||
makney | 0 | 4,358,368,018 | 100% | ||
juanmcar | 0 | 10,138,333,335 | 100% | ||
gadrian | 0 | 446,092,492,838 | 30% | ||
c0wtschpotato | 0 | 12,113,224,034 | 50% | ||
themightyvolcano | 0 | 7,626,519,494 | 100% | ||
masterswatch | 0 | 30,148,566,159 | 100% | ||
dreimaldad | 0 | 797,993,005 | 40% | ||
emitste | 0 | 1,513,753,584 | 100% | ||
achimmertens | 0 | 9,049,265,823 | 2.5% | ||
kgakakillerg | 0 | 22,376,253,177 | 10% | ||
flores39 | 0 | 792,760,322 | 100% | ||
we-are | 0 | 21,359,930,308 | 82.4% | ||
retard-gamer-de | 0 | 1,342,042,610 | 50% | ||
beco132 | 0 | 2,556,376,594 | 54% | ||
primersion | 0 | 2,676,725,398,260 | 100% | ||
fw206 | 0 | 2,559,643,472,478 | 28% | ||
slobberchops | 0 | 3,916,299,093,470 | 47% | ||
hatoto | 0 | 96,142,119,192 | 20% | ||
gmlgang | 0 | 477,424,695 | 88% | ||
iamtom | 0 | 620,696,756 | 75% | ||
thefoundation | 0 | 54,447,709,594 | 100% | ||
gerusan | 0 | 2,728,278,203 | 100% | ||
steempeak | 0 | 2,315,737,035,993 | 100% | ||
solarwarrior | 0 | 7,633,695,873 | 100% | ||
the.rocket.panda | 0 | 10,748,030,851 | 100% | ||
decepticons | 0 | 941,379,496 | 30% | ||
we-are-lucky | 0 | 21,330,649,367 | 46.5% | ||
k3ldo | 0 | 618,578,530 | 30% | ||
marjanko | 0 | 360,591,857,928 | 100% | ||
sbi6 | 0 | 372,718,717,099 | 68.87% | ||
abcor | 0 | 11,203,832,530 | 100% | ||
steemulant | 0 | 87,916,208 | 6.13% | ||
city-of-dresden | 0 | 3,357,343,301 | 100% | ||
keepinitsteem | 0 | 7,447,988,695 | 100% | ||
thedailysneak | 0 | 4,353,386,646 | 4.61% | ||
marivic10 | 0 | 515,046,493 | 2.5% | ||
ro-witness | 0 | 14,980,639,939 | 100% | ||
dalz | 0 | 1,270,776,321,156 | 100% | ||
gameexx | 0 | 6,846,350,942 | 70% | ||
voxmortis | 0 | 18,641,251,682 | 10% | ||
voter001 | 0 | 21,382,469,322 | 19.9% | ||
voter003 | 0 | 216,019,714,008 | 83.5% | ||
babysavage | 0 | 1,690,249,535 | 9.22% | ||
ravensavage | 0 | 865,660,577 | 9.22% | ||
muscara | 0 | 10,780,277,068 | 20% | ||
legendarydragons | 0 | 6,841,487,423 | 100% | ||
nujzzmc | 0 | 504,050,705 | 50% | ||
linuxbot | 0 | 32,881,362,593 | 100% | ||
starrouge | 0 | 485,708,308 | 25% | ||
wherein | 0 | 12,896,822,270 | 50% | ||
bluerobo | 0 | 573,275,973,935 | 100% | ||
j-p-bs | 0 | 2,198,525,012 | 100% | ||
jacuzzi | 0 | 715,770,658 | 1.4% | ||
riyuuhi | 0 | 1,099,059,255 | 100% | ||
kakakk | 0 | 18,726,204,493 | 100% | ||
victor-alexander | 0 | 18,044,932,737 | 100% | ||
monsterchiller | 0 | 610,396,864 | 18% | ||
cnstm | 0 | 57,437,716,899 | 50% | ||
northmen | 0 | 809,616,025 | 100% | ||
a1004 | 0 | 2,456,150,949 | 100% | ||
broxi | 0 | 26,067,340,141 | 100% | ||
synergized | 0 | 534,340,522 | 6.5% | ||
steemtelly | 0 | 2,206,861,111 | 6.13% | ||
photoparadise | 0 | 4,657,320,101 | 24.5% | ||
goodcontentbot | 0 | 808,317,907 | 15% | ||
driveforkids | 0 | 1,631,444,330 | 22% | ||
iamcyril | 0 | 8,826,216,396 | 50% | ||
hungrybear | 0 | 621,670,202 | 14% | ||
steemmonsterking | 0 | 3,955,380,137 | 100% | ||
hungryharish | 0 | 25,917,998,208 | 100% | ||
gertu | 0 | 45,172,307,166 | 30% | ||
hungryanu | 0 | 3,431,064,696 | 50% | ||
steemcartel | 0 | 4,684,346,242 | 100% | ||
szf | 0 | 747,319,117 | 100% | ||
blue.rabbit | 0 | 7,104,240,083 | 42% | ||
epicdice | 0 | 35,321,593,108 | 30% | ||
coolsurfer | 0 | 3,653,212,775 | 100% | ||
beerlover | 0 | 139,523,720,676 | 100% | ||
jacuswrobelek | 0 | 1,989,848,706 | 100% | ||
dachcolony | 0 | 3,294,638,357 | 90% | ||
tinyhousecryptos | 0 | 475,861,388 | 5% | ||
cryptomonica | 0 | 18,504,353,276 | 100% | ||
leighscotford | 0 | 6,649,722,158 | 12% | ||
lut-studio | 0 | 4,647,637,871 | 100% | ||
ph1102 | 0 | 431,127,219,870 | 13% | ||
steemindian | 0 | 4,297,106,510 | 100% | ||
davidtron | 0 | 3,331,937,693 | 50% | ||
imbartley | 0 | 459,812,315 | 15% | ||
lrekt01 | 0 | 6,675,510,684 | 80% | ||
scylla1 | 0 | 714,095,112 | 50% | ||
tokenindustry | 0 | 1,883,580,470 | 32.67% | ||
sbi-tokens | 0 | 7,512,413,921 | 9.22% | ||
urun | 0 | 7,065,254,786 | 100% | ||
maxuve | 0 | 0 | 100% | ||
therealyme | 0 | 38,435,056,295 | 15% | ||
unpopular | 0 | 270,358,247,876 | 25% | ||
dexy50 | 0 | 2,228,756,224 | 100% | ||
im-ridd | 0 | 9,820,997,513 | 60% | ||
bilpcoinbpc | 0 | 888,852,631 | 5% | ||
peakd | 0 | 4,273,810,368,234 | 100% | ||
hivebuzz | 0 | 9,161,114,559 | 3% | ||
pinmapple | 0 | 653,972,229 | 1.5% | ||
blue-witness | 0 | 1,494,843,605 | 100% | ||
laruche | 0 | 1,981,719,578 | 1.25% | ||
hiveonboard | 0 | 42,866,150,898 | 75% | ||
woelfchen | 0 | 110,302,390,383 | 28% | ||
miloshpro | 0 | 1,943,116,623 | 100% | ||
friendlymoose | 0 | 1,240,294,249,728 | 100% | ||
psyshock | 0 | 2,074,327,816 | 100% | ||
clifth | 0 | 929,265,404 | 60% | ||
zaddyboy | 0 | 2,290,034,802 | 40% | ||
netaterra.leo | 0 | 1,046,692,912 | 13.5% | ||
guitarmcy | 0 | 57,183,521,931 | 100% | ||
rezfit | 0 | 5,616,763,423 | 50% | ||
ausbit.dev | 0 | 27,999,415,742 | 100% | ||
vaipraonde | 0 | 73,297,647,130 | 100% | ||
mapetoke | 0 | 522,610,968 | 100% | ||
wend1go | 0 | 7,711,349,735 | 100% | ||
drricksanchez | 0 | 45,658,916,094 | 7.5% | ||
mrhoofman | 0 | 4,603,328,107 | 25% | ||
louis.pay | 0 | 962,394,279 | 100% | ||
egistar | 0 | 627,966,947 | 2.5% | ||
dividendencheck | 0 | 11,619,702,192 | 100% | ||
keithtaylor | 0 | 8,497,472,243 | 50% | ||
musicandreview | 0 | 452,330,500 | 0.75% | ||
t-nil | 0 | 1,876,974,745 | 30% | ||
trezzahn | 0 | 22,460,825,734 | 100% | ||
mozzie5 | 0 | 9,099,103,260 | 50% | ||
acantoni | 0 | 14,952,113,680 | 50% | ||
dml28 | 0 | 2,605,172,501 | 100% | ||
marsupia | 0 | 1,119,312,434 | 40% | ||
ingi1976 | 0 | 4,639,970,478 | 50% | ||
ivan-jz4 | 0 | 8,263,462,595 | 100% | ||
mengao | 0 | 769,695,420,966 | 100% | ||
gezellig | 0 | 1,789,968,587 | 50% | ||
bravetofu | 0 | 1,262,742,143,521 | 100% | ||
michaelreischer | 0 | 26,136,237,296 | 50% | ||
unitmaster | 0 | 58,707,592,051 | 100% | ||
memess | 0 | 16,645,900,547 | 100% | ||
heteroclite | 0 | 19,507,950,800 | 25% | ||
zihadlo | 0 | 860,346,980 | 49% | ||
mypathtofire | 0 | 3,596,423,238 | 100% | ||
alonicus | 0 | 149,343,732,323 | 50% | ||
us3incanada | 0 | 1,544,992,018 | 100% | ||
mondroid | 0 | 6,779,485,644 | 50% | ||
flummi97 | 0 | 7,279,409,647 | 69% | ||
pero82 | 0 | 28,179,259,186 | 100% | ||
visionarystudios | 0 | 10,431,222,455 | 100% | ||
odessamama | 0 | 1,578,672,599 | 33% | ||
incublus | 0 | 122,087,600,874 | 50% | ||
ezgicop | 0 | 453,374,358 | 50% | ||
peak.open | 0 | 37,673,208,989 | 100% | ||
sc000 | 0 | 59,900,543,238 | 100% | ||
blackmedschn | 0 | 9,281,979,272 | 28.74% | ||
minas-glory | 0 | 14,022,957,431 | 100% | ||
cards4rent | 0 | 7,277,067,515 | 50% | ||
naters | 0 | 508,284,371 | 100% | ||
preciouz-01 | 0 | 2,797,080,034 | 50% | ||
samueluche07 | 0 | 744,993,985 | 50% | ||
dandegrischdine | 0 | 7,980,730,363 | 50% | ||
thehivekeepers | 0 | 2,899,251,578 | 100% | ||
foodiefrens | 0 | 539,590,410 | 100% | ||
riseofthepixels | 0 | 12,883,086,651 | 100% | ||
cur8 | 0 | 1,403,947,787,706 | 33% | ||
kathrynkw | 0 | 52,899,737,259 | 100% | ||
monzo | 0 | 1,476,483,278 | 40% | ||
tebesc | 0 | 22,254,528,865 | 25% | ||
pixels.vault | 0 | 583,660,035,551 | 100% | ||
actifit-godfish | 0 | 8,596,917,152 | 100% | ||
bellscoin | 0 | 3,103,974,084 | 100% | ||
lolz.byte | 0 | 0 | 100% | ||
pixbee | 0 | 3,838,146,959 | 100% | ||
calebmarvel24 | 0 | 2,598,810,818 | 10% | ||
lordmonkey | 0 | 2,669,270,360 | 100% | ||
menny.trx | 0 | 913,760,377 | 16.5% | ||
ryanaa | 0 | 34,763,789,653 | 100% | ||
kachy2022 | 0 | 4,060,062,296 | 100% | ||
michael561 | 0 | 456,960,013 | 1.84% | ||
letusbuyhive | 0 | 1,263,047,728,879 | 25% | ||
berlinrebels | 0 | 4,452,361,441 | 100% | ||
magic.byte | 0 | 0 | 100% | ||
sambapools | 0 | 68,619,972,416 | 100% | ||
lovelymusictube1 | 0 | 861,260,921 | 50% | ||
jenniebaby | 0 | 3,618,951,296 | 40% |
Thank you for what you do ! I like the idea of a bug bounty system, but at the same time I've seen bug bounties massively abused. The biggest issue is people with no expertise using widely available automated tools to find supposed vulnerabilities. They then email micro-businesses like my own exaggerating the risks and ignoring the fact that other mitigations might be in place (e.g. manual checks), demanding large payouts and saying they'll publicise what they found if the payout isn't received within 24/48/72 hours. So for Hive, I think we need a bug bounty system designed to reward genuine bug hunters like yourself without opening it up to outsiders who just want to may a quick buck. That rules out HBD rewards paid from the DHF, and even HP rewards could be put into the power down process as soon as received. So perhaps some kind of delegation pools could be set up; that way, it's the use of the delegation in curation over a period of time which generates the rewards. I know that's not a perfect solution, but it's the only one I can think of so far that keeps capital in the system while rewarding internal bug hunters !
author | alonicus |
---|---|
permlink | re-louis88-t0sgsx |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 17:34:09 |
last_update | 2025-08-10 17:34:09 |
depth | 1 |
children | 1 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 17:34:09 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.816 HBD |
promoted | 0.000 HBD |
body_length | 1,142 |
author_reputation | 156,077,115,036,780 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,863,912 |
net_rshares | 2,616,244,421,715 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
roadstories | 0 | 9,057,060,530 | 50% | ||
louis88 | 0 | 943,667,415,616 | 30% | ||
tibfox | 0 | 113,406,093,740 | 100% | ||
stevenwood | 0 | 32,235,537,742 | 20% | ||
justclickindiva | 0 | 461,559,144,007 | 75% | ||
commentrewarder | 0 | 346,834,737,464 | 100% | ||
topcomment | 0 | 709,484,432,616 | 100% |
<center> **Your reply is upvoted by [@topcomment](/@topcomment); a manual curation service that rewards meaningful and engaging comments.** <center> **[More Info](/@topcomment/topcomment-curation-service-info) - [Support us!](/hive/@topcomment/support-topcomment-a-delegation-and-earn-80percent-curation-rewards) - [Reports](/created/topcommentreport) - [Discord Channel](https://discord.gg/u7ebA2QKCd)** </center> [](https://peakd.com/@topcomment)<hr><center><b>Curated by <a href="/@friendlymoose">friendlymoose</a></b></center>
author | topcomment |
---|---|
permlink | re-alonicus-1754854969 |
category | hive-139531 |
json_metadata | "{"tags": ["hive-139531"], "app": "HiveDiscoMod"}" |
created | 2025-08-10 19:42:48 |
last_update | 2025-08-10 19:42:48 |
depth | 2 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 19:42:48 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 666 |
author_reputation | 8,498,317,260,750 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,866,203 |
net_rshares | 0 |
<div class='pull-right'>https://files.peakd.com/file/peakd-hive/beerlover/yiuU6bdf-beerlover20gives20BEER.gif<p><sup><a href='https://hive-engine.com/?p=market&t=BEER'>View or trade </a> <code>BEER</code>.</sup></p></div><center><br> <p>Hey @louis88, here is a little bit of <code>BEER</code> from @steevc for you. Enjoy it!</p> <p>We love your support by voting @detlev.witness on <a href='https://vote.hive.uno/@detlev.witness'>HIVE</a> </a>.</p> </center><div></div>
author | beerlover |
---|---|
permlink | re-louis88-keeping-hive-and-its-projects-safe-my-sunday-dedicated-to-more-secure-frontends-on-hive-20250810t164904614z |
category | hive-139531 |
json_metadata | {"app":"beerlover/3.0","language":"rust","developer":"wehmoen"} |
created | 2025-08-10 16:49:03 |
last_update | 2025-08-10 16:49:03 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 16:49:03 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 470 |
author_reputation | 25,840,105,692,251 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,862,486 |
net_rshares | 0 |
<div class='pull-right'>https://files.peakd.com/file/peakd-hive/beerlover/yiuU6bdf-beerlover20gives20BEER.gif<p><sup><a href='https://hive-engine.com/?p=market&t=BEER'>View or trade </a> <code>BEER</code>.</sup></p></div><center><br> <p>Hey @louis88, here is a little bit of <code>BEER</code> from @steevc for you. Enjoy it!</p> <p>Did you know that <a href='https://dcity.io/city</b>you can use <b>BEER</b> at dCity game</a> to buy cards to rule the world.</p> </center><div></div>
author | beerlover |
---|---|
permlink | re-louis88-keeping-hive-and-its-projects-safe-my-sunday-dedicated-to-more-secure-frontends-on-hive-20250810t164910836z |
category | hive-139531 |
json_metadata | {"app":"beerlover/3.0","language":"rust","developer":"wehmoen"} |
created | 2025-08-10 16:49:09 |
last_update | 2025-08-10 16:49:09 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 16:49:09 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 483 |
author_reputation | 25,840,105,692,251 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,862,490 |
net_rshares | 0 |
I appreciate what you do trying to make HIVE a safer place for everyone. I don't understand it all either, but if someone brought it up to me I would work to get it fixed or find someone who could.
author | bozz |
---|---|
permlink | re-louis88-t0sgjc |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 17:28:24 |
last_update | 2025-08-10 17:28:24 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 17:28:24 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.036 HBD |
promoted | 0.000 HBD |
body_length | 198 |
author_reputation | 2,312,526,916,246,487 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,863,720 |
net_rshares | 117,526,016,118 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
thepatriotblog | 0 | 49,876,961,534 | 15% | ||
vaipraonde | 0 | 67,649,054,584 | 100% |
As with many things on Hive; people really appreciate what you do, but most of the people don't want (or cannot) reward you for it. It is with posts like this that you can create awareness and rewards for the things you have done.
author | friendlymoose |
---|---|
permlink | re-louis88-t0smug |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 19:44:42 |
last_update | 2025-08-10 19:44:42 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 19:44:42 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 232 |
author_reputation | 426,245,736,870,460 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,866,237 |
net_rshares | 0 |
Hey, what do you test / look for ? There is a new hive front end being made (hivesnaps app) and i was wondering if it was safe but sadly i dont have the required skills to test it
author | memess |
---|---|
permlink | re-louis88-2025810t185456337z |
category | hive-139531 |
json_metadata | {"links":[],"type":"comment","tags":["hive-139531","development","security","hive","community","blog","frontend","vulnerabilities","dapps"],"app":"ecency/3.3.3-mobile","format":"markdown+html"} |
created | 2025-08-10 16:54:57 |
last_update | 2025-08-10 16:54:57 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 16:54:57 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 180 |
author_reputation | 25,016,735,258,963 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,862,666 |
net_rshares | 0 |
Thank you for your help!!
author | mengao |
---|---|
permlink | re-louis88-t0scrl |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 16:06:57 |
last_update | 2025-08-10 16:06:57 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 16:06:57 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.161 HBD |
promoted | 0.000 HBD |
body_length | 25 |
author_reputation | 115,908,412,987,509 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,861,111 |
net_rshares | 520,769,667,938 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
web-gnar | 0 | 170,123,594,247 | 32% | ||
louis88 | 0 | 281,621,804,195 | 9% | ||
vaipraonde | 0 | 69,024,269,496 | 100% |
Any public facing service is vulnerable and likely to be attacked these days. Thanks for caring. The Skatehive project looks really cool. Are checks done generally on what goes into Hive posts? I assume it's possible to include malicious links, but would those get filtered out somewhere or do the front ends need to block specific posts or accounts? !BEER
author | steevc |
---|---|
permlink | re-louis88-t0sep8 |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 16:48:45 |
last_update | 2025-08-10 16:48:45 |
depth | 1 |
children | 1 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 16:48:45 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.300 HBD |
promoted | 0.000 HBD |
body_length | 360 |
author_reputation | 1,399,169,854,518,450 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,862,480 |
net_rshares | 967,123,326,784 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
web-gnar | 0 | 269,430,659,075 | 51% | ||
louis88 | 0 | 625,827,485,891 | 20% | ||
vaipraonde | 0 | 71,865,181,818 | 100% |
Yea, it's not easier in Vibe-Coding-Times and new Services popping up daily. Ur welcome sir. Skatehive looks dope, yea. Most-Likely Content in Posts are my first focus, cause it's the most obvious one. We have also a Service running on a Discord Server that checks every single Post/Comment on HIVE for Links etc. and notifies us/ the Moderators/Admins to see whats going on and be alerted very early. It's then up to the Frontends hide/mute etc. stuff but mostly not done on new services ^.^.
author | louis88 |
---|---|
permlink | re-steevc-t0sfsm |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2"} |
created | 2025-08-10 17:12:24 |
last_update | 2025-08-10 17:12:24 |
depth | 2 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 17:12:24 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.611 HBD |
promoted | 0.000 HBD |
body_length | 493 |
author_reputation | 1,199,199,256,814,378 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,863,209 |
net_rshares | 1,958,428,562,805 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
steevc | 0 | 571,229,433,985 | 17% | ||
niallon11 | 0 | 1,316,765,980,161 | 100% | ||
vaipraonde | 0 | 70,433,148,659 | 100% |
Thanks for your help. Great job!
author | vaipraonde |
---|---|
permlink | re-louis88-t0sgnt |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 17:31:06 |
last_update | 2025-08-10 17:31:06 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 17:31:06 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 33 |
author_reputation | 82,396,244,761,399 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,863,805 |
net_rshares | 0 |
Want another mission?! 🤔
author | vaipraonde |
---|---|
permlink | re-louis88-t0sl3w |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 19:07:09 |
last_update | 2025-08-10 19:07:09 |
depth | 1 |
children | 2 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 19:07:09 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 24 |
author_reputation | 82,396,244,761,399 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,865,668 |
net_rshares | 0 |
Sure, why not - if it fits my skillZ
author | louis88 |
---|---|
permlink | re-vaipraonde-t0sl5k |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2"} |
created | 2025-08-10 19:08:09 |
last_update | 2025-08-10 19:08:09 |
depth | 2 |
children | 1 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 19:08:09 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.420 HBD |
promoted | 0.000 HBD |
body_length | 36 |
author_reputation | 1,199,199,256,814,378 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,865,689 |
net_rshares | 1,347,278,541,559 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
niallon11 | 0 | 1,290,475,933,481 | 100% | ||
vaipraonde | 0 | 56,802,608,078 | 100% |
How can I find you on discord?!
author | vaipraonde |
---|---|
permlink | re-louis88-t0smdy |
category | hive-139531 |
json_metadata | {"tags":["hive-139531"],"app":"peakd/2025.8.2","image":[],"users":[]} |
created | 2025-08-10 19:34:48 |
last_update | 2025-08-10 19:34:48 |
depth | 3 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 19:34:48 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 31 |
author_reputation | 82,396,244,761,399 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,866,076 |
net_rshares | 0 |
awesome dude thank you for donating your time to help the skatehive strengthen its infrastructure! we owe ya one!
author | web-gnar |
---|---|
permlink | 20250810t174314692z |
category | hive-139531 |
json_metadata | "{"app":"Skatehive App 3.0","tags":[],"images":[]}" |
created | 2025-08-10 17:43:15 |
last_update | 2025-08-10 17:43:15 |
depth | 1 |
children | 0 |
last_payout | 1969-12-31 23:59:59 |
cashout_time | 2025-08-17 17:43:15 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 113 |
author_reputation | 169,484,749,686,910 |
root_title | "Keeping HIVE and it's Projects safe - My Sunday dedicated to more secure Frontends on HIVE." |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 144,864,074 |
net_rshares | 0 |