Persistent XSS for Medium accounts (or Backdooring Domains)
Egor Homakov

Nice Write Up, Egor Homakov! Why don’t you give it a shot? and let them know that they are wrong about declining your report? Like what you’ve mentioned, the attacker only need to pay $75 and I know you’ve got plenty of bounties. :)

