I love seeing posts like this that go into the blackhat but executed properly sort of things. The fact you exposed it, went through the bounty program, and shared the knowledge is great. It just continues to give insight into other firms as to how they can prevent such burning issues. Great post, thanks :)