VALHALLA SECURITY LABS

THE KILL LEDGER

>> ACTIVE MANHUNT // MULTI-PLATFORM SYNDICATE

HACKERONE_TARGETS

Grammarly CTF Challenge
$100,000

OBJ: SQLi // RCE // IDOR

Executing deep-stack exploitation to neutralize security guardrails. Targeting full database takeover and remote execution.

DoorDash BBP
$12,000

OBJ: SQLi // IDOR // BYPASS

Generating advanced payloads to bypass WAF and exploit logic flaws in delivery routing and payment processing endpoints.

SnapChat Inc.
$35,000

OBJ: SQLi // IDOR // DB_EXTRACT

Investigating API endpoints for object-level authorization failures. Mapping database schemas for user data exfiltration testing.

BUGCROWD_TARGETS

CashApp / Block
$18,000

OBJ: APK_RE // API_MANIPULATION

Decompiling Android binaries to extract hardcoded tokens. Testing fintech API endpoints for transaction logic manipulation.

Pinterest Operations
$25,000

OBJ: SQLi // IDOR // RCE

Heavily testing skill-sets against image-processing backends for remote code execution via metadata manipulation.

Entain Global
$5,000

OBJ: API_TOKEN_LEAK // WEB_MOBILE

Dual-platform reconnaissance (Web/Android). Scanning for leaked OAuth tokens and unsecured developer endpoints.