REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
55
b'ooooooo_q'
49
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Imgur'
disclosed a bug submitted by
b'aesteral'
b'SSRF / Local file enumeration / DoS due to improper handling of certain file formats by ffmpeg'
14 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'benmmurphy'
b'Data-Tags and the New HTML Sanitizer Subverts CSRF protection'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'garnu'
b'Potential XSS on sanitize/Rails::Html::WhiteListSanitizer'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'arthurnn'
b'[Rails42] We can inject HTML tags when server is using strip_tags method'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'tenderlove'
b'DoS Attack in Controller Lookup Code'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'd_w'
b'http_basic_authenticate_with is suseptible to timing attacks.'
13 Mar 2016
b'Shopify'
disclosed a bug submitted by
b'hussein98d'
b'Strored Cross Site Scripting'
13 Mar 2016
b'Zomato'
disclosed a bug submitted by
b'mugeesahmed'
b'Weak Password Policy'
13 Mar 2016
b'Imgur'
disclosed a bug submitted by
b'aesteral'
b'SSRF in https://imgur.com/vidgif/url'
12 Mar 2016
b'Shopify'
disclosed a bug submitted by
b'wakadotz'
b'Injection via CSV Export feature in Admin Orders'
12 Mar 2016
b'Badoo'
disclosed a bug submitted by
b'bugdisclose'
b'Account Takeover'
12 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'architaa'
b'owncloud.com: Account Compromise Through CSRF'
11 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'nait_lamine'
b'apps.owncloud.com: CSRF change privacy settings'
11 Mar 2016
b'Zomato'
disclosed a bug submitted by
b'pr0tagon1st'
b'XSS via modified Zomato widget (res_search_widget.php)'
11 Mar 2016
b'Mail.Ru'
disclosed a bug submitted by
b'architaa'
b'Cross Site Scripting'
10 Mar 2016
b'Mail.Ru'
disclosed a bug submitted by
b'lukazorge'
b'Time-Based Blind SQL Injection Attacks'
10 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'psych0tr1a'
b'apps.owncloud.com: Multiple reflected XSS by insecure URL generation (IE only)'
10 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'nait_lamine'
b'CSRF in apps.owncloud.com'
10 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'prayas'
b'Lack of HSTS on https://apps.owncloud.com'
10 Mar 2016
b'Zomato'
disclosed a bug submitted by
b'arbaz_hussain'
b'Subdomain Takeover '
09 Mar 2016
1
...
634
635
636
637
638
...
715
BY DENIS WERNER - @NOBBD -
IMPRESSUM