REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
55
b'ooooooo_q'
49
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Harvest'
disclosed a bug submitted by
b'eboda'
b'Leak of all project names and all user names , even across applications'
04 Oct 2016
b'RubyGems'
disclosed a bug submitted by
b'c0rte'
b'Password Reset emails missing TLS leads account takeover'
04 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'5haked'
b'[RCE] Unserialize to XXE - file disclosure on ams.upload.pornhub.com'
03 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'clubjk'
b'XSS ReflectedGET /*embed_player*?'
03 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'clubjk'
b'XSS Reflected incategories*p'
03 Oct 2016
b'HackerOne'
disclosed a bug submitted by
b'rbcafe'
b'Obtain the username & the uid of the one doing the S3 sync on Hackerone'
03 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'jouko'
b'SSRF & XSS (W3 Total Cache)'
03 Oct 2016
b'Romit'
disclosed a bug submitted by
b'gone'
b'[CRITICAL]-Taking over entire subdomain of romit.io'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[rabota.mail.ru] Open Redirect'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[my.mail.ru] CRLF Injection'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[s.mail.ru] CRLF Injection'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[upload-X.my.mail.ru] /uploadphoto Insecure Direct Object References'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[my.mail.ru] HTML injection ? ??????? ?? myadmin@corp.mail.ru'
03 Oct 2016
b'Slack'
disclosed a bug submitted by
b'sudotop'
b'Open Redirect on slack.com'
02 Oct 2016
b'Algolia'
disclosed a bug submitted by
b'michiel'
b'RCE on facebooksearch.algolia.com'
01 Oct 2016
b'Twitter'
disclosed a bug submitted by
b'ru_raz0r'
b'reverb.twitter.com redirects to vulnerable reverb.guru'
01 Oct 2016
b'Skyliner'
disclosed a bug submitted by
b'fabiothebest89'
b'DNSSEC misconfiguration'
30 Sep 2016
b'WebSummit'
disclosed a bug submitted by
b'j0_1_0_1_0_0_0_0'
b'WebSummit - Open Redirect '
30 Sep 2016
b'Zomato'
disclosed a bug submitted by
b'hussain_0x3c'
b'Twitter Disconnect CSRF'
30 Sep 2016
b'Instacart'
disclosed a bug submitted by
b'hussain_0x3c'
b'Cross-Site Scripting Reflected On Main Domain'
30 Sep 2016
1
...
585
586
587
588
589
...
715
BY DENIS WERNER - @NOBBD -
IMPRESSUM