Jonas L Profile picture
@the_secret_club

Jul 14, 2020, 8 tweets

As Microsoft have no intensions of ever paying me for all my submitted vulnerabilities I am forced to do this.
Countdown starts today- then I will post them all public.
Ms is just trying to get time to patch them then never pay me.
I have for over 100.000$ in submissions.

14

I have not had a bounty paid for over 7 months I am in debt, my life is ruined- because I trusted that money was on the way.
I am getting sick by stress, but they just ignore me.

I have submitted hyper-v virtual file system escape.
bitlocker full hd encryption bypass

lock screen / login bypass
Total ntfs access control and file lock bypass for read from lowbox token sandbox
Uefi partition writeable from low box token sandbox
So many Escalation of privelegies I cannot keep track

Hyper-v file cache poisoning
Hyper-v host mem corruption

I have nothing left to loose, my adventure as trying to live from bug bounties have broken me.

I had the skill, but i placed the trust the wrong place.

Group policy service - Escalation of privelegie
Shell Create Object Task Server- Privilege escalation
DmEnrollment Service - Escalation of Privilege
XXXXXXXXXX - NTFS symlink mitigation bypass
Teredo driver - Escalation of Privelegie

Projected file system - Escalation of privelegie
Diagnostic tracking service - Escalation of privilege
Storage service - Escalation of privelegie

MSI Installer service - Escalation of privelegie
.net core - Escalation of privelegie

And all have been delivered with working proofs of concepts.

Share this Scrolly Tale with your friends.

A Scrolly Tale is a new way to read Twitter threads with a more visually immersive experience.
Discover more beautiful Scrolly Tales like this.

Keep scrolling