REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'OpenSSL (IBB)'
disclosed a bug submitted by
b'guido'
b'Remote client memory corruption in ssl_add_clienthello_tlsext()'
30 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'akash_9021'
b'Username can be used to trick the victim on the name of www.gratipay.com'
30 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'akash_9021'
b'Username Restriction is not applied for reserved folders'
30 Dec 2016
b'Ian Dunn'
disclosed a bug submitted by
b'e3amn2l'
b'unchecked unserialize usages in audit-trail-extension/audit-trail-extension.php'
30 Dec 2016
b'Ian Dunn'
disclosed a bug submitted by
b'e3amn2l'
b'constant cache_page_secret in regolith'
30 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'aa23'
b'Session Fixation At Logout /Session Misconfiguration'
29 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'dr-cdqh'
b'Secure Pages Include Mixed Content'
29 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'dr-cdqh'
b'Certificate signed using SHA-1'
29 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'dr-cdqh'
b'Cookie HttpOnly Flag Not Set '
29 Dec 2016
b'Phabricator'
disclosed a bug submitted by
b'e3amn2l'
b'Fetching binaries (for software installation) over HTTP without verification (RCE as ROOT by MITM)'
29 Dec 2016
b'VK.com'
disclosed a bug submitted by
b'canamii'
b'vk.com/login.php '
29 Dec 2016
b'Ian Dunn'
disclosed a bug submitted by
b'e3amn2l'
b'unchecked unserialize usage in WordPress-Functionality-Plugin-Skeleton/functionality-plugin-skeleton.php'
29 Dec 2016
b'Trello'
disclosed a bug submitted by
b'thalaivarsubu'
b'The contact page is vulnerable to self-XSS via upload file name'
28 Dec 2016
b'Open-Xchange'
disclosed a bug submitted by
b'haquaman'
b'Tab nabbing via window.opener'
28 Dec 2016
b'Open-Xchange'
disclosed a bug submitted by
b'haquaman'
b'Selecting encryption for email with drive attachment overrides the drive email password'
28 Dec 2016
b'Open-Xchange'
disclosed a bug submitted by
b'haquaman'
b'Stored XSS in Template Documents'
28 Dec 2016
b'PortSwigger Web Security'
disclosed a bug submitted by
b'wra-ggs'
b'HTTP OPTION Method is Enabled on portswigger.net '
27 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'dr-cdqh'
b'Content type incorrectly stated'
27 Dec 2016
b'Gratipay'
disclosed a bug submitted by
b'aa23'
b'User Enumeration'
27 Dec 2016
b'Mail.Ru'
disclosed a bug submitted by
b'cyberpunkych'
b'Stored XSS ?? street-combats.mail.ru'
26 Dec 2016
1
...
590
591
592
593
594
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM