REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Shopify'
disclosed a bug submitted by
b'zombiehelp54'
b'Unauthenticated Stored XSS on <any>.myshopify.com via checkout page'
16 Dec 2016
b'shopify-scripts'
disclosed a bug submitted by
b'isra17'
b'Memory disclosure in mruby String#lines method'
16 Dec 2016
b'shopify-scripts'
disclosed a bug submitted by
b'raydot'
b'Type confusion in mrb_exc_set leading to memory corruption'
16 Dec 2016
b'shopify-scripts'
disclosed a bug submitted by
b'brakhane'
b'Crash: Initialize Decimal with itself triggers an assertion'
16 Dec 2016
b'shopify-scripts'
disclosed a bug submitted by
b'isra17'
b'Exception cause SIGABRT'
16 Dec 2016
b'shopify-scripts'
disclosed a bug submitted by
b'isra17'
b'Use after free vulnerability in mruby Array#to_h causing DOS possible RCE'
16 Dec 2016
b'LocalTapiola'
disclosed a bug submitted by
b'teemuk'
b'Oracle Webcenter Sites administrative and hi-privilege access available directly from the internet (/cs/Satellite)'
15 Dec 2016
b'Harvest'
disclosed a bug submitted by
b'bugs3ra'
b'Stored XSS in Restoring Archived Tasks'
15 Dec 2016
b'LocalTapiola'
disclosed a bug submitted by
b'monish'
b'Poodle attack SSLv3 Support (viestinta.lahitapiola.fi)'
15 Dec 2016
b'Blockchain'
disclosed a bug submitted by
b'goodman97'
b'server version dislosure'
15 Dec 2016
b'Zendesk'
disclosed a bug submitted by
b'virtualhunter'
b'XSS in zendesk.com/product/'
15 Dec 2016
b'Pushwoosh'
disclosed a bug submitted by
b'd1pakda5'
b'Reflected Xss on '
14 Dec 2016
b'Nextcloud'
disclosed a bug submitted by
b'pranav_hivarekar'
b'Stored XSS on new Calling plugin (spreed)'
13 Dec 2016
b'Nextcloud'
disclosed a bug submitted by
b'detroitsmash'
b'Share owner has no possibility to list all existing derived shares'
13 Dec 2016
b'Nextcloud'
disclosed a bug submitted by
b'rootxflood'
b'Password reset link remains valid after email change'
13 Dec 2016
b'Uber'
disclosed a bug submitted by
b'fransrosen'
b'Subdomain takeover on rider.uber.com due to non-existent distribution on Cloudfront'
12 Dec 2016
b'Twitter'
disclosed a bug submitted by
b'ullger'
b'Circumventing the Twitter account lockout process [ACCOUNT TAKEOVER]'
12 Dec 2016
b'Ubiquiti Networks'
disclosed a bug submitted by
b'shubham'
b'Reflected Xss in AirMax [Nanostation Loco M2]'
12 Dec 2016
b'Twitter'
disclosed a bug submitted by
b'lewerkun'
b'Information Disclosure through .DS_Store in ??????????'
12 Dec 2016
b'CERT/CC'
disclosed a bug submitted by
b'ahmed_anwer_mohamed'
b'manipulate the Practical HTTP Host header '
12 Dec 2016
1
...
597
598
599
600
601
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM