/engagements/xfinity-home

BugcrowdView on Bugcrowd
RawAI Enhanced
26
In Scope
31
Out of Scope

In-Scope Assets (26)

AssetCategoryBountyQuick Links
*-cvr-aws-*.sys.comcast.netURLYes
*.dh-commerce.com URLYes
*.ssr.ccp.xcal.tv URLYes
*.xfinityhome.comURLYes
*.xfiplatform.comURLYes
*signalservice.comcast.netURLYes
Internet.xfinity.comURLYes
Xfinity Android mobile appANDROIDYes-
Xfinity Home Hardware (items listed below in brief)HARDWAREYes-
Xfinity Home camerasHARDWAREYes-
Xfinity iOS mobile appIOSYes-
aiq-prod.codebig2.netURLYes
csp-pci.prod.codebig2.netURLYes
gw.api.dh.comcast.comURLYes
https://apps.apple.com/us/app/xfinity/id1178765645IOSYes-
https://csp-prod.codebig2.netURLYes
https://home.xfinity.comURLYes
https://play.google.com/store/apps/details?id=com.xfinity.digitalhome&hl=en_US&gl=USANDROIDYes
orc-xfi.comURLYes
siorc.xfinity.comURLYes
smartinet.xfinity.comURLYes
speedtest.xfinity.comURLYes
xFi Gateways (e.g., XB3, XB6, XB7)HARDWAREYes-
xFi PodsHARDWAREYes-
xhomeapi-*.cloud.comcast.netURLYes
xhomeapi-*.codebig2.netURLYes
Out-of-Scope Assets (31)
AssetCategoryBounty
*.adnxs.comURLYes
*.adobedtm.comURLYes
*.amazon-adsystem.comURLYes
*.appcenter.msURLYes
*.cimcontent.netURLYes
*.criteo.netURLYes
*.demdex.netURLYes
*.fwmrm.netURLYes
*.hfc.comcastbusiness.netURLYes
*.hsd1.*.comcast.netURLYes
*.identity.xfinity.comURLYes
*.kampyle.comURLYes
*.openx.netURLYes
*.pulseinsights.comURLYes
*.webcontentassessor.comURLYes
*.wurfulcloud.comURLYes
*.xerxessecure.comURLYes
10.0.0.0/8OTHERYes
172.26.128.0/18OTHERYes
184.112.0.0/13OTHERYes
184.122.0.0/15OTHERYes
3rd Party Devices (known as Works with Xfinity)HARDWAREYes
50.128.0.0/12OTHERYes
50.152.0.0/13OTHERYes
96.201.0.0/16OTHERYes
96.202.128.0/17OTHERYes
96.203.0.0/16OTHERYes
\*\business.comcast.comURLYes
admin.selectwifi.xfinity.comURLYes
https://login.xfinity.comURLYes
oauth.xfinity.comURLYes