REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'ok.ru'
disclosed a bug submitted by
b'dipak_das'
b'Cross site scripting On api Calculator API requests'
17 Feb 2016
b'Shopify'
disclosed a bug submitted by
b'zombiehelp54'
b'Stored XSS in /admin/orders '
17 Feb 2016
b'Mail.Ru'
disclosed a bug submitted by
b'isenturk'
b'reflected in xss'
17 Feb 2016
b'Gratipay'
disclosed a bug submitted by
b'a0xnirudh'
b'HTTP trace method is enabled'
17 Feb 2016
b'Shopify'
disclosed a bug submitted by
b'mdv'
b'CSRF on https://shopify.com/plus'
17 Feb 2016
b'Twitter'
disclosed a bug submitted by
b'maxy'
b'Can see private tweets via keyword searches on tweetdeck'
16 Feb 2016
b'HackerOne'
disclosed a bug submitted by
b'zombiehelp54'
b'CSV Injection via the CSV export feature'
16 Feb 2016
b'HackerOne'
disclosed a bug submitted by
b'pisarenko'
b'attack in not an authorized user'
16 Feb 2016
b'Snapchat'
disclosed a bug submitted by
b'harry_mg'
b'Subdomain takeover in http://support.scan.me pointing to Zendesk (a Snapchat acquisition)'
16 Feb 2016
b'HackerOne'
disclosed a bug submitted by
b'charfe'
b'Private Program Disclosure in /:handle/reports/draft.json endpoint'
16 Feb 2016
b'Gratipay'
disclosed a bug submitted by
b'ankushmohanty'
b'UDP port 5060 (SIP) Open'
16 Feb 2016
b'ownCloud'
disclosed a bug submitted by
b'securitary'
b'owncloud.com: Persistent XSS In Account Profile'
15 Feb 2016
b'Gratipay'
disclosed a bug submitted by
b'rajatsharma'
b'nginx SPDY heap buffer overflow for https://grtp.co/'
15 Feb 2016
b'Ubiquiti Networks'
disclosed a bug submitted by
b'aparecekarl'
b'Subdomain Takeover in http://assets.goubiquiti.com/'
14 Feb 2016
b'Ubiquiti Networks'
disclosed a bug submitted by
b'93c08539'
b'Arbritrary file Upload on AirMax'
13 Feb 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'forced-request'
b'Explicit, dynamic render path: Dir. Trav + RCE'
12 Feb 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'zachaysan'
b'Changeable model ids on vanilla update can lead to severely bad side-effects'
12 Feb 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'jcoyne'
b'Nested attributes reject_if proc can be circumvented by providing "_destroy" parameter'
12 Feb 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'backus'
b'Validation bypass for Active Record and Active Model'
12 Feb 2016
b'Khan Academy'
disclosed a bug submitted by
b'benmassaoud'
b'XSS vulnerability in "/coach/roster/" ( create your first class) '
12 Feb 2016
1
...
649
650
651
652
653
...
726
BY DENIS WERNER - @NOBBD -
IMPRESSUM