Agent-X – your personal assistant for multi-account management. The safest Antidetect Browser Agent-X is a modern next-generation antidetect browser designed with a focus on maximum security, anonymity and digital footprint control.
Thanks to complete profile isolation, a well-thought-out data storage system and the use of advanced encryption methods, the browser guarantees reliable protection even in difficult conditions.
| Target | Type | Severity |
|---|---|---|
https://agentx-antidetect.com/en/download Copy | Other | Critical |
A Critical vulnerability must meet ALL of the following:
Remote Code Execution (RCE) – Zero Interaction
Unauthorized Private Key Extraction
Transaction Tampering / Silent Modification
Authentication Bypass (Leading to Fund Access)
Remote Arbitrary File Write (Leading to Fund Theft)
Demonstrable and reproducible exploitation.
Direct, immediate, and unauthorized transfer of real user funds OR
Extraction of private cryptographic keys allowing irreversible asset theft.
No reliance on social engineering, user misconfiguration, or unrealistic attack conditions.
Practical exploitability under default production settings.
Clear wording:
Allocated bounty reward will be split between all researchers who submitted the same issue (where uniq issues receive 1/3 of the pool and researchers will get 1/9 each of the initial reward pool).
Full Reward: If a critical vulnerability is found by only one participant, that reporter receives 100% of the bounty pool.
If multiple participants find the same vulnerability, the allocated bounty for that issue (bounty pool always equally split among all unique issues reported) is divided equally among all reporters. Example: If two researchers report the same vulnerability, each receives 50% of the allocated bounty. It can be 50% of the bounty pool if only one eligible issue was reported.
Split Based on Uniqueness of issues reported:
Each will receive 50% of the bounty pool.
HackenProof is entitled to 10% of rewards as the fee for the triage and other services‼️
Do not discuss this program or any vulnerabilities (even resolved ones) outside of the program without express consent from the organization
We are happy to thank everyone who submits valid reports which help us improve our security. However, only those that meet the following eligibility requirements may receive a monetary reward:
Hacken - March 2026