REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
55
b'ooooooo_q'
49
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'HackerOne'
disclosed a bug submitted by
b'pranav_hivarekar'
b'Privileged information of a private/sandboxed program is leaked in json response to an unauthorized user'
21 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'pouya'
b'Unauthorized access to all collections, products, pages from other stores'
20 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'brakhane'
b'Arbitrary read on s3://shopify-delivery-app-storage/files'
20 Oct 2015
b'Zopim'
disclosed a bug submitted by
b'mdv'
b'Cross-site Scripting in all Zopim'
20 Oct 2015
b'Automattic'
disclosed a bug submitted by
b'blinkms'
b'XSS in WordPress '
16 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'pulkit_pandey'
b'amazon aws s3 bucket content is public :- http://shopify.com.s3.amazonaws.com/'
15 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'brakhane'
b'Arbitrary write on s3://shopify-delivery-app-storage/files'
15 Oct 2015
b'PHP'
disclosed a bug submitted by
b'sparaschoudis'
b'AddressSanitizer reports a global buffer overflow in mkgmtime() function'
15 Oct 2015
b'PHP'
disclosed a bug submitted by
b'sparaschoudis'
b'Integer overflow in unserialize() (32-bits only)'
15 Oct 2015
b'Vimeo'
disclosed a bug submitted by
b'satishb3'
b'A user can enhance their videos with paid tracks without buying the track'
14 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'marhvhelous'
b'Privilege escalation vulnerability'
14 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'pouya'
b'change Login Services settings without owner access'
14 Oct 2015
b'Trello'
disclosed a bug submitted by
b'sarwarjahan'
b'Normal User can add new users to group'
14 Oct 2015
b'Coinbase'
disclosed a bug submitted by
b'fgplayit2'
b'SPF records not found'
14 Oct 2015
b'Shopify'
disclosed a bug submitted by
b'pouya'
b'unauthorized access to all collections name'
14 Oct 2015
b'Trello'
disclosed a bug submitted by
b'strukt'
b'CSV Injection'
13 Oct 2015
b'Twitter'
disclosed a bug submitted by
b'wesecureapp'
b"Insecure direct object reference - have access to deleted DM's"
12 Oct 2015
b'IRCCloud'
disclosed a bug submitted by
b'mantis'
b'Inadequate input validation on API endpoint leading to self denial of service and increased system load.'
12 Oct 2015
b'itBit Exchange'
disclosed a bug submitted by
b'simon90'
b'Email Length Verification'
11 Oct 2015
b'ownCloud'
disclosed a bug submitted by
b'hammadshamsi'
b'owncloud.com: DOM Based XSS'
11 Oct 2015
1
...
649
650
651
652
653
...
715
BY DENIS WERNER - @NOBBD -
IMPRESSUM