REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Legal Robot'
disclosed a bug submitted by
b'goodhackonly'
b'2FA manual entry uses wrong encoding'
14 Sep 2017
b'Zomato'
disclosed a bug submitted by
b'0xamir'
b'CSRF in the "Add restaurant picture" function'
14 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'lov3_you'
b'observer.com URL should HTTPS'
14 Sep 2017
b'TTS Bug Bounty'
disclosed a bug submitted by
b'swag01'
b'Server Side Misconfiguration (EMAIL SPOOFING) '
14 Sep 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'bobrov'
b'[dev-nightly.ubnt.com] Local File Reading'
14 Sep 2017
b'VK.com'
disclosed a bug submitted by
b'lincoln9932'
b'CSRF ????????? ???????? ?? ???????????? ??????? ??????.'
14 Sep 2017
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'paresh_parmar'
b'Blind stored xss [parcel.grab.com] > name parameter '
14 Sep 2017
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'sp1d3rs'
b'Private Grab Messages on Android App can be accessed and cached by Search Engines'
14 Sep 2017
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'sp1d3rs'
b'Authorization bypass using login by phone option+horizontal escalation possible on Grab Android App'
14 Sep 2017
b'Cuvva'
disclosed a bug submitted by
b'leet-boy'
b'No Notification Sent When Email Is Changed.'
13 Sep 2017
b'Grabtaxi Holdings Pte Ltd'
disclosed a bug submitted by
b'sp1d3rs'
b'Two-factor authentication bypass on Grab Android App'
12 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'gujjuboy10x00'
b'Autocomplete feature '
12 Sep 2017
b'Legal Robot'
disclosed a bug submitted by
b'attacker911'
b'Missing access control at password change'
11 Sep 2017
b'Rockstar Games'
disclosed a bug submitted by
b'ramsexy'
b'Comments Denial of Service in socialclub.rockstargames.com'
11 Sep 2017
b'Automattic'
disclosed a bug submitted by
b'slavco'
b'Object Injection in Woocommerce / Handle PDT Responses from PayPal'
11 Sep 2017
b'Automattic'
disclosed a bug submitted by
b'slavco'
b'Timing attack woocommerce, simplify commerce gateway'
11 Sep 2017
b'Mail.Ru'
disclosed a bug submitted by
b'neex'
b'uninitilized server memory disclosure via ImageMagick in my.mail.ru and cloud.mail.ru'
11 Sep 2017
b'Informatica'
disclosed a bug submitted by
b'ninjakatz__'
b'Store XSS on Informatica University via transcript (informatica.csod.com)'
09 Sep 2017
b'Gratipay'
disclosed a bug submitted by
b'hassanjawaid'
b'set Pragma header'
09 Sep 2017
b'Gratipay'
disclosed a bug submitted by
b'gujjuboy10x00'
b'Missing Certificate Authority Authorization rule'
09 Sep 2017
1
...
540
541
542
543
544
...
765
BY DENIS WERNER - @NOBBD -
IMPRESSUM