REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Zomato'
disclosed a bug submitted by
b'gerben_javado'
b'[?????????] Hardcoded credentials in Android App'
19 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'brdoors4'
b'Non-functional 2FA recovery codes'
19 Jul 2017
b'Mixmax'
disclosed a bug submitted by
b'encrypt'
b'Blind SSRF due to img tag injection in career form'
19 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'zk34911'
b'Users with 2FA can have multiple sessions'
19 Jul 2017
b'ThisData'
disclosed a bug submitted by
b'pabster'
b'Insecure Cache-Control Leading to API key Retrieval'
18 Jul 2017
b'Mixmax'
disclosed a bug submitted by
b'cablej'
b'SSRF via webhook'
18 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'babayaga_'
b'Intercom chat session information persists after logout'
18 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'3thic4l'
b'No rate limit on creating private leaderboards.'
18 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'fletcherr'
b'User enumeration'
18 Jul 2017
b'WordPress'
disclosed a bug submitted by
b'skansing'
b'Wordpress 4.7.2 - Two XSS in Media Upload when file too large.'
17 Jul 2017
b'WordPress'
disclosed a bug submitted by
b'skansing'
b'Infrastructure - Photon - SSRF'
17 Jul 2017
b'Slack'
disclosed a bug submitted by
b'bagipro'
b'Access of Android protected components via embedded intent'
17 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'todayisnew'
b'Domain takeover (legalrobot.co.za)'
17 Jul 2017
b'Rockstar Games'
disclosed a bug submitted by
b'netfuzzer'
b'XSS in http://www.rockstargames.com/theballadofgaytony/js/jquery.base.js'
17 Jul 2017
b'Mail.Ru'
disclosed a bug submitted by
b'haxta4ok00'
b'????? basic ??????????? [qpt.mail.ru]'
17 Jul 2017
b'ICQ'
disclosed a bug submitted by
b'linkks'
b'Apache Server-Status Detected'
17 Jul 2017
b'Mixmax'
disclosed a bug submitted by
b'konkakarthik'
b'mailbomb through invite feature on chrome addon'
16 Jul 2017
b'HackerOne'
disclosed a bug submitted by
b'h33t'
b'Invitation tokens leak to Google Analytics'
16 Jul 2017
b'Mixmax'
disclosed a bug submitted by
b'michan001'
b'no string size restriction on team name'
16 Jul 2017
b'Legal Robot'
disclosed a bug submitted by
b'goodhackonly'
b'Missing link to 2FA recovery code'
15 Jul 2017
1
...
533
534
535
536
537
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM