Reporting "security breach" on website is ilegal?

Status
Not open for further replies.

NoYckl

Junior Member
Joined
Feb 1, 2010
Messages
106
Reaction score
26
Hello everyone.
I don't know if this is the right place to post this, but here i go. (Please move the thread if needed).

So i recently signed up to this website that sells music sheets.
They have a 30-day free trial that allows to see all the material in the browser.. the sheets show as a "rendered pdf", cannot be printed or saved.

It's possible to take screenshots and save.. but... using the Developer tools from Chrome, i was able to find a way to get the direct link of the pdf file.. it works with every music sheet. So i am able to save every file.

My questions are:
1. Will the website maintainers discovery that that files are saved from direct link? Can i get in trouble if i do it? (I know it's ilegal, of course)
2. Can i report this to them and possible get some reward ? I'm not talking about black mailing them, i never will do it. That goes against my principles. But i'm afraid doing that i can get in troubles too...



Thank you.
 
There's always risk doing anything like that, But most of the time your either going to get ignored or a simple "ok thanks". At least for sites that don't have official bug bounty policies in place. It's always worth a shot regardless.
 
I decided not to do it due the risks.
Can an admin please remove this thread? Can't find a way to do it.

Thank you!
 
Status
Not open for further replies.
Back
Top