REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Nextcloud'
disclosed a bug submitted by
b'bastianwelfrid'
b'Arbitrary File Upload in Logo & Log in image Theming setting.'
05 Oct 2016
b'Trello'
disclosed a bug submitted by
b'theflofly'
b'File access using image tragick'
05 Oct 2016
b'WebSummit'
disclosed a bug submitted by
b'rubyroobs'
b'Reflected xss on websummit.net'
04 Oct 2016
b'ok.ru'
disclosed a bug submitted by
b'hamooda_anonphantom'
b'Xss in m.ok.ru'
04 Oct 2016
b'Harvest'
disclosed a bug submitted by
b'eboda'
b'Leak of all project names and all user names , even across applications'
04 Oct 2016
b'RubyGems'
disclosed a bug submitted by
b'c0rte'
b'Password Reset emails missing TLS leads account takeover'
04 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'5haked'
b'[RCE] Unserialize to XXE - file disclosure on ams.upload.pornhub.com'
03 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'clubjk'
b'XSS ReflectedGET /*embed_player*?'
03 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'clubjk'
b'XSS Reflected incategories*p'
03 Oct 2016
b'HackerOne'
disclosed a bug submitted by
b'rbcafe'
b'Obtain the username & the uid of the one doing the S3 sync on Hackerone'
03 Oct 2016
b'Pornhub'
disclosed a bug submitted by
b'jouko'
b'SSRF & XSS (W3 Total Cache)'
03 Oct 2016
b'Romit'
disclosed a bug submitted by
b'gone'
b'[CRITICAL]-Taking over entire subdomain of romit.io'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[rabota.mail.ru] Open Redirect'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[my.mail.ru] CRLF Injection'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[s.mail.ru] CRLF Injection'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[upload-X.my.mail.ru] /uploadphoto Insecure Direct Object References'
03 Oct 2016
b'Mail.Ru'
disclosed a bug submitted by
b'bobrov'
b'[my.mail.ru] HTML injection ? ??????? ?? myadmin@corp.mail.ru'
03 Oct 2016
b'Slack'
disclosed a bug submitted by
b'sudotop'
b'Open Redirect on slack.com'
02 Oct 2016
b'Algolia'
disclosed a bug submitted by
b'michiel'
b'RCE on facebooksearch.algolia.com'
01 Oct 2016
b'Twitter'
disclosed a bug submitted by
b'ru_raz0r'
b'reverb.twitter.com redirects to vulnerable reverb.guru'
01 Oct 2016
1
...
631
632
633
634
635
...
761
BY DENIS WERNER - @NOBBD -
IMPRESSUM