# Web Security (Bug Bounty) Contact Request - Talaria Security Labs

**URL:** <https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018>\
**Category:** Uncategorized\
**Created:** [January 30, 2026, 5:43am UTC](https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018 "2026-01-30T05:43:38Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![UGWST](https://sea2.discourse-cdn.com/flex020/user_avatar/gov.gmx.io/ugwst/32/1900_2.png) [@UGWST](https://gov.gmx.io/u/UGWST)\
**Post date:** [January 30, 2026, 5:43am UTC](https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018/1 "2026-01-30T05:43:38Z")

</div>

Hello GMX Team,

I am writing on behalf of **Talaria Security Labs / UGWST** , a web security audit firm.

We are attempting to share a responsible disclosure report regarding the platform. We have sent emails to the publicly available email addresses, but have not yet received a confirmation of receipt.

Could we get a confirmation that the security report was received and reproduced?

Thank you,  
René Kroka @ Talaria Security Labs / UGWST

###

---

<div class="post-metadata">

**Author:** ![0xjunwei](https://avatars.discourse-cdn.com/v4/letter/0/e95f7d/32.png) [@0xjunwei](https://gov.gmx.io/u/0xjunwei)\
**Post date:** [January 30, 2026, 7:04am UTC](https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018/2 "2026-01-30T07:04:01Z")

</div>

Try immunefi ? Maybe it be better there

---

<div class="post-metadata">

**Author:** ![Tano](https://sea2.discourse-cdn.com/flex020/user_avatar/gov.gmx.io/tano/32/66_2.png) [@Tano](https://gov.gmx.io/u/Tano)\
**Post date:** [January 30, 2026, 7:11am UTC](https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018/4 "2026-01-30T07:11:19Z")

</div>

You will need to handle it via the official way to receive any form of bounties, and post the disclosures reports on Immunify, here you can find a link: [GMX Bug Bounties | Immunefi](https://immunefi.com/bug-bounty/gmx/information/)

Thank you!

---

<div class="post-metadata">

**Author:** ![Tano](https://sea2.discourse-cdn.com/flex020/user_avatar/gov.gmx.io/tano/32/66_2.png) [@Tano](https://gov.gmx.io/u/Tano)\
**Post date:** [January 30, 2026, 7:15am UTC](https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018/5 "2026-01-30T07:15:49Z")

</div>

Seems it got validated by GMX and Immunify and it was rejected, so thank you for providing the necessary evidence.

---

<div class="post-metadata">

**Author:** ![Tano](https://sea2.discourse-cdn.com/flex020/user_avatar/gov.gmx.io/tano/32/66_2.png) [@Tano](https://gov.gmx.io/u/Tano)\
**Post date:** [January 30, 2026, 7:46am UTC](https://gov.gmx.io/t/web-security-bug-bounty-contact-request-talaria-security-labs/5018/7 "2026-01-30T07:46:16Z")

</div>

Updated, we’re doing communication now via Immunify, and please don’t open multiple discord tickets and governance posts at the same time, thank you
