SecPrep logoSecPrep

Walk me through a vulnerability you found end-to-end.

Strong answers follow a clear arc: context (what system, why you were looking), discovery (how you found it — tool, hypothesis, recon), the flaw (root cause, not just the symptom), impact (what an attacker could actually do, demonstrated safely), disclosure & fix (who you told, how you proposed remediation, how you verified it), and the lesson (what systemic change prevents recurrence). Quantify impact and show collaboration, not just cleverness.

Practice this in the app →