In this blog, I am talking about how to email filter bypass. Once I have participated in the bug bounty program, I registered in Web Application using “odd” email ID. After that, I have seen there is no email validation and confirmation to verify email id.
I have tried the list of email IDs
email@example.com === valid this is the general method of email validation.
Psycho55 @email.com ==== Not Valid Here, space is not valid character in email.
Last I have tried, “1-‘or’ 1`=’1″@gmail.com registration success.
“BUG IS OUT OF SCOPE”
Proof of concept