REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Maximum'
disclosed a bug submitted by
b'kuton'
b'Open redirect on https://werkenbijdefensie.nl/'
27 Jul 2017
b'Twitter'
disclosed a bug submitted by
b'joshbrodienz'
b'XXE on sms-be-vip.twitter.com in SXMP Processor'
26 Jul 2017
b'Twitter'
disclosed a bug submitted by
b'filedescriptor'
b'CSRF on Periscope Web OAuth authorization endpoint '
26 Jul 2017
b'WordPress'
disclosed a bug submitted by
b'jon_bottarini'
b'Reflected XSS at https://da.wordpress.org/themes/?s= via "s=" parameter '
26 Jul 2017
b'Keybase'
disclosed a bug submitted by
b'jupenur'
b'Universal Cross-Site Scripting in Keybase Chrome extension'
26 Jul 2017
b'Starbucks'
disclosed a bug submitted by
b'an0n-j'
b'Reflected XSS in openapi.starbucks.com /searchasyoutype/v1/search?x-api-key='
25 Jul 2017
b'VK.com'
disclosed a bug submitted by
b'lincoln9932'
b'?????? ???????? ??????? ?????? ? ?? ???????? ?? ???????????.'
25 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'mrreboot'
b'Unsafe Inline and Eval CSP Usage'
24 Jul 2017
b'Boozt Fashion AB'
disclosed a bug submitted by
b'lalka'
b'PHP info page disclosure on http://www.day.dk/'
24 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'silv3rpoision'
b'https://wakatime.com/ website CSP "script-src" includes "unsafe-inline"'
24 Jul 2017
b'Imgur'
disclosed a bug submitted by
b'vinothkumar'
b'Login to any user account using other facebook app access token '
24 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'silv3rpoision'
b'Password token validation in https://wakatime.com/'
24 Jul 2017
b'Phabricator'
disclosed a bug submitted by
b'aliashber'
b'Hyper Link Injection In email and Space Characters Allowed at Password Field.'
23 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'silv3rpoision'
b'Password reset links should expire after being used, instead of at specific time'
23 Jul 2017
b'VK.com'
disclosed a bug submitted by
b'povargek'
b'????? 2FA Bypass'
23 Jul 2017
b'VK.com'
disclosed a bug submitted by
b'pisarenko'
b'??? ??????? ?? ?????????? ????? ? ???????? ????????????'
23 Jul 2017
b'Automattic'
disclosed a bug submitted by
b'csanuragjain'
b'CPU utilization 99% on visiting wordpress site url & open redirect found'
23 Jul 2017
b'concrete5'
disclosed a bug submitted by
b'csanuragjain'
b'Content Spoofing possible in concrete5.org'
23 Jul 2017
b'Dashlane'
disclosed a bug submitted by
b'csanuragjain'
b'Extract Billing admin email address using random team id'
23 Jul 2017
b'Udemy'
disclosed a bug submitted by
b'csanuragjain'
b'Content Spoofing in udemy'
23 Jul 2017
1
...
517
518
519
520
521
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM