REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
55
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Starbucks'
disclosed a bug submitted by
b'cj862530'
b'Starbucks.com is reachable via ip address thus possible to link any doamin to Starbucks.'
26 Jan 2017
b'Starbucks'
disclosed a bug submitted by
b'meals'
b'Parameter Manipulation allowed for editing the shipping address for other user\xe2\x80\x99s teavana.com subscriptions.'
26 Jan 2017
b'itBit Exchange'
disclosed a bug submitted by
b'4lemon'
b'Round error issue -> produce money for free'
26 Jan 2017
b'Nextcloud'
disclosed a bug submitted by
b'khalidamin'
b'Email Spoofing'
25 Jan 2017
b'Nextcloud'
disclosed a bug submitted by
b'pkkothawade'
b'Nextcloud.com is vulnerable to SWEET32 attack'
25 Jan 2017
b'LocalTapiola'
disclosed a bug submitted by
b's4y0b'
b'Reflected XSS on sankarikoulutus (viestinta.lahitapiola.fi)'
25 Jan 2017
b'LocalTapiola'
disclosed a bug submitted by
b's4y0b'
b'SQL Injection in lapsuudenturva (viestinta.lahitapiola.fi)'
25 Jan 2017
b'Twitter'
disclosed a bug submitted by
b'akhil-reni'
b'leaking Digits OAuth authorization to third party websites'
24 Jan 2017
b'Badoo'
disclosed a bug submitted by
b'abiral'
b'Email Spoofing'
24 Jan 2017
b'GitLab'
disclosed a bug submitted by
b'jobert'
b'Users can download old project exports due to unclaimed namespace'
23 Jan 2017
b'GitLab'
disclosed a bug submitted by
b'jobert'
b'Every user can delete public deploy keys'
23 Jan 2017
b'GitLab'
disclosed a bug submitted by
b'jobert'
b'User with guest access can access private merge requests'
23 Jan 2017
b'GitLab'
disclosed a bug submitted by
b'jobert'
b'Users with guest access can post notes to private merge requests, issues, and snippets'
23 Jan 2017
b'Informatica'
disclosed a bug submitted by
b'e3xpl0it'
b'[afocusp.informatica.com] Sql injection afocusp.informatica.com:37777'
21 Jan 2017
b'Informatica'
disclosed a bug submitted by
b'e3xpl0it'
b'[ipm.informatica.com] Sql injection Oracle '
21 Jan 2017
b'Slack'
disclosed a bug submitted by
b'yassineaboukir'
b'[Screenhero] Subdomain takeover'
21 Jan 2017
b'Maximum'
disclosed a bug submitted by
b'akhmm'
b'Facebook and twitter page claimed of maximum.com [important]'
21 Jan 2017
b'Legal Robot'
disclosed a bug submitted by
b'swapnil755'
b'Email spoofing possible via Legal Robot domain'
21 Jan 2017
b'Discourse'
disclosed a bug submitted by
b'skavans'
b'Stored XSS in topics because of whitelisted_generic engine vulnerability'
20 Jan 2017
b'Discourse'
disclosed a bug submitted by
b'skavans'
b'XSS in topics because of bandcamp preview engine vulnerability'
20 Jan 2017
1
...
562
563
564
565
566
...
715
BY DENIS WERNER - @NOBBD -
IMPRESSUM