upvote
it isn't simple request flooding, it is application level resource exhaustion
reply
Yeah, I figured that's what you meant, and most bounty programs won't pay out for stuff like that. Every application has those bugs; on a software pentest, we'd sev:lo them.
reply