REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[upload-X.my.mail.ru] /uploadphoto Insecure Direct Object References'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[my.mail.ru] HTML injection ? ??????? ?? myadmin@corp.mail.ru'
03 Oct 2016
b'Slack'
disclosed a bug submitted by
b'sudotop'
b'Open Redirect on slack.com'
02 Oct 2016
b'Algolia'
disclosed a bug submitted by
b'michiel'
b'RCE on facebooksearch.algolia.com'
01 Oct 2016
b'Twitter'
disclosed a bug submitted by
b'ru_raz0r'
b'reverb.twitter.com redirects to vulnerable reverb.guru'
01 Oct 2016
b'Skyliner'
disclosed a bug submitted by
b'fabiothebest89'
b'DNSSEC misconfiguration'
30 Sep 2016
b'WebSummit'
disclosed a bug submitted by
b'j0_1_0_1_0_0_0_0'
b'WebSummit - Open Redirect '
30 Sep 2016
b'Zomato'
disclosed a bug submitted by
b'hussain_0x3c'
b'Twitter Disconnect CSRF'
30 Sep 2016
b'Instacart'
disclosed a bug submitted by
b'hussain_0x3c'
b'Cross-Site Scripting Reflected On Main Domain'
30 Sep 2016
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Unauthorized read access to Invoices by PM (Access control Issues)'
29 Sep 2016
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'PM can delete payment of any invoice in company (Access control Issue)'
29 Sep 2016
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Unauthorized access to all the actions of invoices by PM (Access control Issues) '
29 Sep 2016
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'PM can delete the company logo image (Vertical Privilege Escalation )'
29 Sep 2016
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'PM with can Set up email for invoices and estimates (Access control Issue)'
29 Sep 2016
b'Harvest'
disclosed a bug submitted by
b'vijay_kumar1110'
b'Record payment for any invoice by PM (Access control Issue)'
29 Sep 2016
b'LocalTapiola'
disclosed a bug submitted by
b'derision'
b'CRLF injection in https://verkkopalvelu.lahitapiola.fi/'
29 Sep 2016
b'Uber'
disclosed a bug submitted by
b'geekboy'
b'Stealing users password (Limited Scenario)'
29 Sep 2016
b'Nextcloud'
disclosed a bug submitted by
b'saleh_s'
b'demo.nextcloud.com: Content spoofing due to default Apache Error Page'
29 Sep 2016
b'Skyliner'
disclosed a bug submitted by
b'bobrov'
b'[skyliner.io / qa.skyliner.io] Open Redirect'
29 Sep 2016
b'Mail.Ru'
disclosed a bug submitted by
b'c37hun'
b'Full Path Disclosure'
29 Sep 2016
1
...
597
598
599
600
601
...
726
BY DENIS WERNER - @NOBBD -
IMPRESSUM