REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Shopify'
disclosed a bug submitted by
b'sergeym'
b'xss in the all widgets of shopifyapps.com'
16 Mar 2016
b'Gratipay'
disclosed a bug submitted by
b'shahzaib-shani'
b'SPF DNS Record '
15 Mar 2016
b'Mail.Ru'
disclosed a bug submitted by
b'konqi'
b'[orsotenslimselfie.lady.mail.ru] SQL Injection'
15 Mar 2016
b'Badoo'
disclosed a bug submitted by
b'darshitvarotaria'
b'Broken Authentication on Badoo'
15 Mar 2016
b'Shopify'
disclosed a bug submitted by
b'niyaax'
b'Stored XSS in https://checkout.shopify.com/'
15 Mar 2016
b'HackerOne'
disclosed a bug submitted by
b'rohk'
b'Edit Auto Response Messages'
15 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'gorang_joshi'
b'owncloud.com: Parameter pollution in social sharing buttons'
14 Mar 2016
b'Imgur'
disclosed a bug submitted by
b'aesteral'
b'SSRF / Local file enumeration / DoS due to improper handling of certain file formats by ffmpeg'
14 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'benmmurphy'
b'Data-Tags and the New HTML Sanitizer Subverts CSRF protection'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'garnu'
b'Potential XSS on sanitize/Rails::Html::WhiteListSanitizer'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'arthurnn'
b'[Rails42] We can inject HTML tags when server is using strip_tags method'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'tenderlove'
b'DoS Attack in Controller Lookup Code'
13 Mar 2016
b'Ruby on Rails'
disclosed a bug submitted by
b'd_w'
b'http_basic_authenticate_with is suseptible to timing attacks.'
13 Mar 2016
b'Shopify'
disclosed a bug submitted by
b'hussein98d'
b'Strored Cross Site Scripting'
13 Mar 2016
b'Zomato'
disclosed a bug submitted by
b'mugeesahmed'
b'Weak Password Policy'
13 Mar 2016
b'Imgur'
disclosed a bug submitted by
b'aesteral'
b'SSRF in https://imgur.com/vidgif/url'
12 Mar 2016
b'Shopify'
disclosed a bug submitted by
b'wakadotz'
b'Injection via CSV Export feature in Admin Orders'
12 Mar 2016
b'Badoo'
disclosed a bug submitted by
b'bugdisclose'
b'Account Takeover'
12 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'architaa'
b'owncloud.com: Account Compromise Through CSRF'
11 Mar 2016
b'ownCloud'
disclosed a bug submitted by
b'nait_lamine'
b'apps.owncloud.com: CSRF change privacy settings'
11 Mar 2016
1
...
671
672
673
674
675
...
752
BY DENIS WERNER - @NOBBD -
IMPRESSUM