REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'VK.com'
disclosed a bug submitted by
b'lincoln9932'
b'?????? ???????? ??????? ?????? ? ?? ???????? ?? ???????????.'
25 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'mrreboot'
b'Unsafe Inline and Eval CSP Usage'
24 Jul 2017
b'Boozt Fashion AB'
disclosed a bug submitted by
b'lalka'
b'PHP info page disclosure on http://www.day.dk/'
24 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'silv3rpoision'
b'https://wakatime.com/ website CSP "script-src" includes "unsafe-inline"'
24 Jul 2017
b'Imgur'
disclosed a bug submitted by
b'vinothkumar'
b'Login to any user account using other facebook app access token '
24 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'silv3rpoision'
b'Password token validation in https://wakatime.com/'
24 Jul 2017
b'Phabricator'
disclosed a bug submitted by
b'aliashber'
b'Hyper Link Injection In email and Space Characters Allowed at Password Field.'
23 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'silv3rpoision'
b'Password reset links should expire after being used, instead of at specific time'
23 Jul 2017
b'VK.com'
disclosed a bug submitted by
b'povargek'
b'????? 2FA Bypass'
23 Jul 2017
b'VK.com'
disclosed a bug submitted by
b'pisarenko'
b'??? ??????? ?? ?????????? ????? ? ???????? ????????????'
23 Jul 2017
b'Automattic'
disclosed a bug submitted by
b'csanuragjain'
b'CPU utilization 99% on visiting wordpress site url & open redirect found'
23 Jul 2017
b'concrete5'
disclosed a bug submitted by
b'csanuragjain'
b'Content Spoofing possible in concrete5.org'
23 Jul 2017
b'Dashlane'
disclosed a bug submitted by
b'csanuragjain'
b'Extract Billing admin email address using random team id'
23 Jul 2017
b'Udemy'
disclosed a bug submitted by
b'csanuragjain'
b'Content Spoofing in udemy'
23 Jul 2017
b'Cuvva'
disclosed a bug submitted by
b'aliv3'
b'CSRF on cuvva.insure allows to attacker to send multiple SMS to download the app without visiting the cuvva'
23 Jul 2017
b'Dashlane'
disclosed a bug submitted by
b'rbcafe'
b'[https://www.dashlane.com] Test Panel Disclosure'
21 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'sunil_yedla'
b'Account profile shows encryption recovery box for all users'
21 Jul 2017
b'Coinbase'
disclosed a bug submitted by
b'mahakaal'
b'Information disclosure same issue #176002'
21 Jul 2017
b'Shopify'
disclosed a bug submitted by
b'xssa'
b'XSS in my.shopify.com in widget'
21 Jul 2017
b'Shopify'
disclosed a bug submitted by
b'pappan'
b'Open Redirect in shopify app URL'
21 Jul 2017
1
...
528
529
530
531
532
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM