Intigriti · Bug Bounty

Axel Springer National Media & Tech Bug Bounty Program

Complete guide to Axel Springer National Media & Tech's bug bounty program on Intigriti. View in-scope assets, reward amounts, response times, and tips for finding vulnerabilities.

Program Overview

Axel Springer National Media & Tech runs a bug bounty program on Intigriti with a maximum payout of $2,500. The program has 40 in-scope assets.

40
In-Scope Assets
$2,500
Max Payout

In-Scope Assets

AssetTypeMax SeverityEligible
politico.euURL
adtechnology.axelspringer.comURL
*.asadcdn.comWILDCARD
bild.deURL
welt.deURL
epaper.welt.deURL
cancellation.prod.ps.welt.deURL
digital.welt.deURL
signin.auth.welt.deURL
m.bild.deURL
*.hey.bild.deWILDCARD
go.welt.deURL
*.auth.bild.deWILDCARD
*.sportbild.deWILDCARD
meinkonto.bild.deURL
*.bild.tvWILDCARD
*.computerbild.deWILDCARD
18.184.198.198, 18.185.214.59, 18.194.109.179, 3.121.117.72, 3.121.138.10, 3.121.138.128, 3.121.138.134, 3.121.138.170, 3.121.138.33, 3.121.138.43, 3.124.248.208, 35.156.137.39IPRANGE
dealer.prod.ps.axelspringer.de/purchases/*WILDCARD
*.germany.politico.euWILDCARD
*.welt.deWILDCARD
*.bild.deWILDCARD
*.bild.designWILDCARD
*.autobild.deWILDCARD
*.bz-berlin.deWILDCARD
*.spring-media.deWILDCARD
*.springtools.deWILDCARD
editorial.oneURL
*.as-nmt.deWILDCARD
*.ein-herz-fuer-kinder.deWILDCARD
*.fitbook.deWILDCARD
*.myhomebook.deWILDCARD
*.petbook-magazine.com/WILDCARD
*.petbook.deWILDCARD
*.stylebook.deWILDCARD
*.techbook.deWILDCARD
*.travelbook.deWILDCARD
*.wissen-sie-mehr.deWILDCARD
technik.autobild.deURL
technik.beta.autobild.deURL

Out-of-Scope Assets

  • *.axelspringer.com

Tips for Hacking Axel Springer National Media & Tech

  1. Read the policy — Understand what's in scope, out of scope, and any specific testing restrictions before you start.
  2. Enumerate the attack surface — Use subdomain enumeration and directory bruteforcing to map all accessible endpoints.
  3. Focus on high-impact bugs — Look for SQL injection, SSRF, and IDOR vulnerabilities first.
  4. Test authentication flows — Check for OAuth misconfigurations and CSRF in login/signup flows.
  5. Write clear reports — Include steps to reproduce, impact assessment, and suggested remediation. Use Burp Suite to capture evidence.

Frequently Asked Questions

How do I start hacking Axel Springer National Media & Tech?

Sign up on Intigriti, read the program policy carefully, review the in-scope assets listed above, and start testing. Always stay within scope and follow responsible disclosure guidelines.

Does Axel Springer National Media & Tech pay bounties?

Yes, Axel Springer National Media & Tech offers monetary rewards for valid security vulnerabilities.

What types of vulnerabilities does Axel Springer National Media & Tech accept?

Axel Springer National Media & Tech accepts reports for vulnerabilities found in their 40 in-scope assets. Common accepted vulnerability types include XSS, SQL injection, SSRF, IDOR, authentication bypass, and RCE. Check the program policy for specific exclusions.