REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
55
b'ooooooo_q'
49
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'itBit Exchange'
disclosed a bug submitted by
b'behroz'
b'user-agent Content spoofing'
28 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'No rate limit which leads to "Users information Disclosure" including verfification documents etc.'
27 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'GA code not verified on the server side allows sending Verification Documents on behalf of another user'
27 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'IDOR on remoing Share'
27 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'The csrf token remains same after user logs in'
26 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'Server responds with the server error logs on account creation'
26 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'HTML injection in email sent by romit.io'
26 Nov 2015
b'Romit'
disclosed a bug submitted by
b'crab'
b'Potential for financial loss, negative Values for "Buy fee" and "Sell Fee"'
26 Nov 2015
b'InVision'
disclosed a bug submitted by
b'psychomantis'
b'Reflective XSS in projects.invisionapp.com'
23 Nov 2015
b'InVision'
disclosed a bug submitted by
b'anik'
b'X-Frame-Options Header Not Set'
23 Nov 2015
b'Twitter'
disclosed a bug submitted by
b'filedescriptor'
b'XSS on OAuth authorize/authenticate endpoint'
20 Nov 2015
b'Automattic'
disclosed a bug submitted by
b'strukt'
b'CSV Injection in polldaddy.com'
20 Nov 2015
b'Shopify'
disclosed a bug submitted by
b'brakhane'
b"An administrator without the 'Settings' permission is able to see payment gateways"
18 Nov 2015
b'Shopify'
disclosed a bug submitted by
b'rms'
b"Apps can access 'channels' beta api"
18 Nov 2015
b'Shopify'
disclosed a bug submitted by
b'zombiehelp54'
b'deleted staff member can add his amazon marketplace web services account to the store.'
18 Nov 2015
b'DigitalSellz'
disclosed a bug submitted by
b's_p_q_r'
b"Own downloading link isn't properly checked in the email template"
16 Nov 2015
b'Mail.Ru'
disclosed a bug submitted by
b'aesteral'
b'XSS: https://light.mail.ru/compose, https://m.mail.ru/compose/[id]/reply ??? ?????? ?? ??????????? ??????? ?????????????? ??????'
16 Nov 2015
b'Binary.com'
disclosed a bug submitted by
b'gjavado'
b'Http Response Splitting - Validate link'
15 Nov 2015
b'Twitter'
disclosed a bug submitted by
b'sandeep100928'
b'Problem with OAuth'
14 Nov 2015
b'HackerOne'
disclosed a bug submitted by
b'killr0x33d'
b'Send AJAX request to external domain'
14 Nov 2015
1
...
645
646
647
648
649
...
715
BY DENIS WERNER - @NOBBD -
IMPRESSUM