This chapter discusses the finer points of writing a vulnerability report submission that we might have glossed over in our attack chapters, explaining the critical information that should be included in every report, optional information, the importance of including detailed steps to reproduce the bug, how to write a good attack scenario (with examples), where to find real-life production bug report submissions, and more. Building on the sample submission reports we've created throughout our vulnerability walkthrough chapters with more high-level discussion of what makes a report worth a reward, this chapter should give you everything you need moving forward to write quality reports that win you the maximum payout for the bugs you've discovered.
In the next chapter, we will cover tools and methodologies beyond those we used directly in our walkthroughs.
...