Instagram has rewarded Indian developer Mayur Fartade $30,000 for discovering a security flaw in its app.
The developer came across a bug that would allow hackers to view a story or post of any user, even those with a private account. He discovered a method to generate a content delivery network URL that could render any protected image or video publicly viewable.
Fartade disclosed the bug to Instagram on April 16, and the company patched the vulnerability by June 15, along with awarding him the prize money from Facebook’s bug bounty program.