REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Teradici'
disclosed a bug submitted by
b'imxx'
b'Weak Password Policy on techsupport.teradici.com'
29 May 2017
b'Teradici'
disclosed a bug submitted by
b'inlovewithaghost'
b'Weak password requirement on techsupport.teradici.com '
29 May 2017
b'Shopify'
disclosed a bug submitted by
b'zombiehelp54'
b'Reflected XSS in <any>.myshopify.com through theme preview'
29 May 2017
b'Perl (IBB)'
disclosed a bug submitted by
b'geeknik'
b'read outside of buffer (heap buffer overflow) in S_regmatch - regexec.c:6057'
28 May 2017
b'Perl (IBB)'
disclosed a bug submitted by
b'geeknik'
b'heap-buffer-overflow (READ of size 11) in Perl 5.25.x'
28 May 2017
b'PHP (IBB)'
disclosed a bug submitted by
b'hanno'
b'Out of bounds memory read in unserialize()'
28 May 2017
b'Cuvva'
disclosed a bug submitted by
b'leet-boy'
b'Missing rate limit on https://underwriter.partner.cuvva.com/login/verify'
27 May 2017
b'Cuvva'
disclosed a bug submitted by
b'streaak'
b'Missing Rate limiting on https://underwriter.partner.cuvva.com/login'
27 May 2017
b'Cuvva'
disclosed a bug submitted by
b'bhumish'
b'Verification code for Underwriter dashboard can be brute-forced'
27 May 2017
b'BrickFTP'
disclosed a bug submitted by
b'xanderi'
b'CSRF @ configuration '
27 May 2017
b'Maximum'
disclosed a bug submitted by
b'jorik'
b"Possible to view and takeover other user's education and courses @ mijn.werkenbijdefensie.nl"
27 May 2017
b'Maximum'
disclosed a bug submitted by
b'jorik'
b'Possible to unsubscribe from activities using CSRF @ mijn.werkenbijdefensie.nl'
27 May 2017
b'Ubiquiti Networks'
disclosed a bug submitted by
b'a0xnirudh'
b'Reflected File Download in community.ubnt.com/restapi/'
27 May 2017
b'Twitter'
disclosed a bug submitted by
b'rbcafe'
b'[??????????.gnip.com] .htpasswd disclosure'
26 May 2017
b'Uber'
disclosed a bug submitted by
b'hurthearts'
b'Session not expired When logout [partners.uber.com]'
26 May 2017
b'Instacart'
disclosed a bug submitted by
b'clizsec'
b'WordPress Authentication Denial of Service'
26 May 2017
b'WordPress'
disclosed a bug submitted by
b'codertom'
b'Stored but [SELF] XSS in mercantile.wordpress.org'
26 May 2017
b'Cuvva'
disclosed a bug submitted by
b'cyriac'
b'CRLF Injection [vpn.corp.cuvva.com]'
26 May 2017
b'Coinbase'
disclosed a bug submitted by
b'phspade'
b'[buy.coinbase.com]Content Injection'
25 May 2017
b'Gratipay'
disclosed a bug submitted by
b'smziaurrashid'
b'Gratipay Website CSP "script-scr" includes "unsafe-inline"'
25 May 2017
1
...
550
551
552
553
554
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM