bountyzcash.org

Hall of Fame

Researchers who found and responsibly disclosed vulnerabilities in Zcash privacy-critical infrastructure.

2 Researchers2 Vulns Disclosed201 ZEC Awarded72h Patch Window
View Researchers
#001
AS

Alex "Scalar" Sol

Discovered Mar 23 · Patched Mar 25 · Published Mar 31, 2026

CriticalAI-Assistedzcashd v3.1.0–v6.11.x
Total Reward
ZEC

Discovered a critical vulnerability in the Sprout value-commitment validation logic of zcashd. The flaw allowed an attacker to craft a malicious Sprout transaction that bypassed the balance check, potentially enabling unlimited counterfeiting of shielded ZEC. The researcher used AI-assisted static analysis to identify the unchecked fChecked flag in the consensus path and provided a working proof-of-concept along with a responsible disclosure timeline.

Mar 23Reported
Mar 24Triage
Mar 25Patched
Mar 31Published
Zcash Community ForumRead Full Disclosure →
#002
KB

Kenbak

Atmosphere Labs · Reported Apr 2026

LowAI-AssistedWeb Infrastructure
Total Reward
ZEC

Identified missing email authentication records (DMARC, SPF, MX) on bountyzcash.org. Without these records, an attacker could spoof emails from addresses such as triage@bountyzcash.org, particularly risky during the 90-day disclosure embargo when researchers hold undisclosed vulnerabilities. Also flagged parked nameservers (dns-parking.com) as a domain hijack vector. Remediated with v=spf1 -all and p=reject DMARC policy. Bounty paid directly by Michae2xl (site owner).

003

Next researcher

Submit a valid report to claim this spot

Submit Report →

Is your infrastructure in scope?

You

You define scope + budget

We

We handle everything else

Get in touch → contact@bountyzcash.org