Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data

https://www.securityweek.com/wp-content/uploads/2023/03/Meta-Facebook-e1739539212391.jpg

A security researcher says he has received a significant bug bounty from Meta after discovering a critical vulnerability that exposed customer support data.

The vulnerability was discovered and reported to Meta in January 2026 by independent researcher Rony K Roy. The initial report to the social media giant described a security hole of limited severity, but further analysis revealed that the flaw’s impact was much higher than initially believed.

According to Roy, Meta rolled out patches in April and had not found any evidence of malicious exploitation.

The researcher disclosed his findings last week and told SecurityWeek that he received a $78,000 bug bounty from Meta.

Meta has not responded to SecurityWeek’s request to confirm Roy’s claims, but he is indeed listed as one of the top researchers on the company’s bug bounty leaderboard for 2026.

Roy initially believed he had identified an authorization issue in Meta Horizon Managed Solutions,...

Copyright of this story solely belongs to securityweek.com. To see the full text click HERE

Read more

https://images.ft.com/v3/image/raw/https%3A%2F%2Fcms-image-bucket-productionv3-ap-northeast-1-a7d2.s3.ap-northeast-1.amazonaws.com%2Fimages%2F9%2F8%2F8%2F2%2F12952889-2-eng-GB%2F8046dc0b0b...

Analysis: South Korea and Taiwan each surpassed Japan in total exports for the first time in H1 2026, as AI demand drove explosive growth in chip exports

More: The Guardian, Associated Press, BBC, Wall Street Journal, Washington Post, First Judicial District Court of New Mexico, TechCrunch, The Information, The Verge, Courthouse News Service, nmdoj.gov, New York Times, Raw Story, Reclaim The Net, Deseret News, Overturned, Pixel Envy, Mashable, Fox News, Bloomberg Government, Tech Policy Press, KYMA-TV,