REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Greenhouse.io'
disclosed a bug submitted by
b'bobrov'
b'[greenhouse.io] CRLF Injection / Insecure nginx configuration'
02 Nov 2016
b'Mail.Ru'
disclosed a bug submitted by
b'murthysagi'
b'Mail.ru for Android Content Provider Vulnerability'
02 Nov 2016
b'Harvest'
disclosed a bug submitted by
b'vagg-a-bond'
b'Project Disclosure of all Harvest Instances'
01 Nov 2016
b'Slack'
disclosed a bug submitted by
b'procode701'
b'Email information leakage for certain addresses'
31 Oct 2016
b'Boozt Fashion AB'
disclosed a bug submitted by
b'inhibitor181'
b"Make victim buy in attacker's account without any idea - http://www.booztlet.com/"
31 Oct 2016
b'Paragon Initiative Enterprises'
disclosed a bug submitted by
b'hextitan'
b'[Airship CMS] Local File Inclusion - RST Parser'
31 Oct 2016
b'Nextcloud'
disclosed a bug submitted by
b'ahsantahir'
b'Content spoofing due to the improper behavior of the 403 page in Private Server'
31 Oct 2016
b'Harvest'
disclosed a bug submitted by
b'eboda'
b'Invoices can be added to any retainers - even closs-platform'
29 Oct 2016
b'Zaption'
disclosed a bug submitted by
b'bobrov'
b'[zaption.com] Open Redirect'
29 Oct 2016
b'C2FO'
disclosed a bug submitted by
b'bobrov'
b'[admin.c2fo.com] Open Redirect'
29 Oct 2016
b'Legal Robot'
disclosed a bug submitted by
b'japzdivino'
b'Bypass 8 chars password complexity with 6 chars only due to insecure password reset functionaliy'
29 Oct 2016
b'HackerOne'
disclosed a bug submitted by
b'staytuned'
b'Information disclosure via policy update notifications after removal from program'
29 Oct 2016
b'Whisper'
disclosed a bug submitted by
b'shhnjk'
b'Missing DMARC record'
28 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'cyber-guard'
b'Disclosure of private photos/albums - http://www.pornhub.com/album/show_image_box'
28 Oct 2016
b'GitLab'
disclosed a bug submitted by
b'yaworsk'
b'Insecure 2FA/authentication implementation creates a brute force vulnerability'
28 Oct 2016
b'Automattic'
disclosed a bug submitted by
b'bobrov'
b'Follow Button XSS'
28 Oct 2016
b'OLX'
disclosed a bug submitted by
b'hogarth45'
b'Reflective XSS at m.olx.ph'
28 Oct 2016
b'Yelp'
disclosed a bug submitted by
b'vinesh1989'
b'Requesting Show CheckIn Alert for Non Friend User'
27 Oct 2016
b'Yelp'
disclosed a bug submitted by
b'badagent'
b'Verification of E-Mail address possible on https://biz.yelp.com/login and https://biz.yelp.com/forgot'
27 Oct 2016
b'Open-Xchange'
disclosed a bug submitted by
b'dejavuln'
b'OX (Guard): Stored Cross-Site Scripting via Incoming Email'
27 Oct 2016
1
...
591
592
593
594
595
...
727
BY DENIS WERNER - @NOBBD -
IMPRESSUM