REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'TTS Bug Bounty'
disclosed a bug submitted by
b'sp1d3rs'
b'[IDOR] The authenticated user can restart website build or view build logs on any another Federalist account'
05 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'sp1d3rs'
b'Race condition on the Federalist API endpoints can lead to the Denial of Service attack'
05 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'sp1d3rs'
b"The user, who was deleted from Github Organization, still can access all functions of federalist, in case he didn't do logout"
05 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'sp1d3rs'
b'The Federalsit session cookie (federalist.sid) is not properly invalidated - backdoor access to the account is possible'
05 Sep 2017
b'Uber'
disclosed a bug submitted by
b'mishre'
b'SAML Authentication Bypass on uchat.uberinternal.com'
05 Sep 2017
b'Coinbase'
disclosed a bug submitted by
b'tejpratap'
b'Captcha Bypass in Coinbase SignUp Form'
05 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'flashdisk'
b'first name and last name restrictions bypass'
05 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'localhost31337'
b'Password reset token issue'
05 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'superman85'
b'Bypass email verification when register new account'
04 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'nihadx95'
b'Password reset token issue '
04 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'nihadx95'
b'Error the message with already e-mail '
04 Sep 2017
b'Mail.Ru'
disclosed a bug submitted by
b'0xradi'
b'BruteForce Any [My.com] Account Credentials.'
04 Sep 2017
b'Boozt Fashion AB'
disclosed a bug submitted by
b'dilip_prakash'
b'Password reset token issue'
04 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'elliots'
b'No alert in verify email address with wrong input'
03 Sep 2017
b'HackerOne'
disclosed a bug submitted by
b'japzdivino'
b'IDOR on HackerOne Feedback Review'
02 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'pr4th4m'
b'Improper error message'
01 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'princesinha'
b'Profile fields validation bypass'
01 Sep 2017
b'Rockstar Games'
disclosed a bug submitted by
b'injexxsor'
b'Reflected XSS via Double Encoding'
01 Sep 2017
b'Zomato'
disclosed a bug submitted by
b'b1t'
b'Length extension attack leading to HTML injection'
01 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'amir0ezat'
b'clickjacking at http://mailboxes.legalrobot-uat.com/'
01 Sep 2017
1
...
530
531
532
533
534
...
753
BY DENIS WERNER - @NOBBD -
IMPRESSUM