REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.Ru'
disclosed a bug submitted by
b'lincoln9932'
b'XSS ? ?????????? ?????????'
11 Jul 2017
b'Mail.Ru'
disclosed a bug submitted by
b'haxta4ok00'
b'By pass admin panel [conference.mail.ru]'
11 Jul 2017
b'Mail.Ru'
disclosed a bug submitted by
b'haxta4ok00'
b'By pass admin panel [seminars.mail.ru]'
11 Jul 2017
b'Mail.Ru'
disclosed a bug submitted by
b'haxta4ok00'
b'Admin panel access restrictions bypass [poll.mail.ru/admin/]'
11 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'khanshaheb'
b'SQL TEST'
11 Jul 2017
b'Twitter'
disclosed a bug submitted by
b'r3ligious-hunt3r'
b'Vine all registered user Private/sensitive information disclosure .[ Ip address/phone no/email and many other informations ]'
11 Jul 2017
b'Trello'
disclosed a bug submitted by
b'csanuragjain'
b'Malicious file can be hidden as Card Attachment or Card Cover image'
10 Jul 2017
b'Pornhub'
disclosed a bug submitted by
b'ilsani'
b'Reflected XSS on ht.pornhub.com - /export/GetPreview'
10 Jul 2017
b'Pornhub'
disclosed a bug submitted by
b'ramsexy'
b'http://ht.pornhub.com/ stored XSS in widget stylesheet'
10 Jul 2017
b'Yelp'
disclosed a bug submitted by
b'edio'
b"Firefly's verify_access_token() function does a byte-by-byte comparison of HMAC values."
10 Jul 2017
b'Pornhub'
disclosed a bug submitted by
b'kenziy'
b'pornhub.com/user/welcome/basicinfo nickname field is vulnerable on xss'
10 Jul 2017
b'WakaTime'
disclosed a bug submitted by
b'abhiram'
b'by pass rate limit exceed '
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'karthic'
b'Usernames ending in .json are not restricted'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'karthic'
b'x-xss protection header is not set in response header'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'yodha'
b'Lack of CSRF token validation at server side'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'd4rk_g1rl'
b'CSP "script-src" includes "unsafe-inline" in https://gratipay.com'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'a5tronaut'
b'prevent content spoofing on /~username/emails/verify.html'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'mkd1r'
b'SSl Weak Ciphers'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'yodha'
b'Insecure Transportation Security Protocol Supported (TLS 1.0)'
10 Jul 2017
b'Gratipay'
disclosed a bug submitted by
b'tanvi07'
b'self cross site scripting'
10 Jul 2017
1
...
534
535
536
537
538
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM