Baibhav Anand
May 17 · 2 min read

Bypassing Instagram’s stories restriction

Hello readers, Today I will be telling you how I managed to bypass Instagram’s story restriction and got $500 awarded by Facebook.

One fine day while I was watching some Instagram stories of the people I follow and while watching the story of Unbox Therapy I realized that he had disabled story replies and I couldn’t find the reply option and suddenly one of my friend messaged me on WhatsApp and a pop up of that message came on top of the Instagram story and upon clicking on the reply button of that pop up message that I received on WhatsApp suddenly reply option also showed in Instagram that was when I realized that popping up keyboard while viewing a story with replies disabled can bring back the reply option in the story.

I then created a video report on February 3rd stating this issue and also I attached a video POC with it, here is what I sent them : https://drive.google.com/file/d/17WZvdGKvzeBz5OPq4PlEUPXF35XaziHv/view?fbclid=IwAR2EEdEPCmR75-Mvcgam10KFvxQBCGeKI7ZpkfpzrhLPzjdryxyw8Mt2Edg

Facebook then replied that they have sent it to the product team for further investigation meaning that it was then triaged and it almost took around 2.5 months for them to fix it and then they sent me a fixed message where they stated that the bug has been fixed and after around a week I got a message that I have been awarded $500 for finding an issue where a user could reply to stories when the reply was disabled and then after around 3 days they had put me in the Facebook’s Hall of Fame 2019.

Thank you for reading. Follow me for more such stories as I progress with my journey as a security researcher.

InfoSec Write-ups

A collection of write-ups from the best hackers in the world on topics ranging from bug bounties and CTFs to vulnhub machines, hardware challenges and real life encounters. In a nutshell, we are the largest InfoSec publication on Medium. #sharingiscaring

Baibhav Anand

Written by

I am a security researcher from Nepal and also the Founder and CEO of BaiTux ( A cyber security based educational start up)

InfoSec Write-ups

A collection of write-ups from the best hackers in the world on topics ranging from bug bounties and CTFs to vulnhub machines, hardware challenges and real life encounters. In a nutshell, we are the largest InfoSec publication on Medium. #sharingiscaring