REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'The Internet'
disclosed a bug submitted by
b'adl'
b'TLS Virtual Host Confusion'
10 Nov 2014
b'Twitter'
disclosed a bug submitted by
b'surgent10cross'
b'Missing Rate Limiting on https://twitter.com/account/complete'
10 Nov 2014
b'Twitter'
disclosed a bug submitted by
b'fransrosen'
b'URGENT - Subdomain Takeover on media.vine.co due to unclaimed domain pointing to AWS'
03 Nov 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'yappare'
b"XSS in 3rd party plugin (not affecting Uzbey's users)"
02 Nov 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'yappare'
b'SQL Injection'
02 Nov 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'mdlitch1973'
b'a'
31 Oct 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'mdlitch1973'
b'aaa'
31 Oct 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'mdlitch1973'
b'test'
31 Oct 2014
b'WP API'
disclosed a bug submitted by
b'voodookobra'
b'Cryptographic Side Channel in OAuth Library'
29 Oct 2014
b'WP API'
disclosed a bug submitted by
b'voodookobra'
b'MD5 used for Key-Auth signatures'
29 Oct 2014
wont-fix
b'ReddAPI'
disclosed a bug submitted by
b'chmosama'
b'Strict Transport Security Misconfiguration'
28 Oct 2014
b'ReddAPI'
disclosed a bug submitted by
b'chmosama'
b'Browser cross-site scripting filter misconfiguration'
28 Oct 2014
b'ReddAPI'
disclosed a bug submitted by
b'chmosama'
b' Content Sniffing not disabled'
28 Oct 2014
b'HackerOne'
disclosed a bug submitted by
b'prakharprasad'
b'Window Opener Property Bug'
28 Oct 2014
b'concrete5'
disclosed a bug submitted by
b'voodookobra'
b'Weak random number generator used in concrete/authentication/concrete/controller.php'
26 Oct 2014
b'joola.io'
disclosed a bug submitted by
b'voodookobra'
b'Weak Random Number Generator for Auth Tokens'
25 Oct 2014
b'joola.io'
disclosed a bug submitted by
b'voodookobra'
b'Timing Attack Side-Channel on API Token Verification'
25 Oct 2014
b'WePay'
disclosed a bug submitted by
b'anshuman_bh'
b'Session Fixation'
23 Oct 2014
b'HackerOne'
disclosed a bug submitted by
b'pranav_hivarekar'
b'Redirect FILTER bypass in report/comment'
19 Oct 2014
b'Coinbase'
disclosed a bug submitted by
b'anshuman_bh'
b'Leaking CSRF token over HTTP resulting in CSRF protection bypass'
16 Oct 2014
1
...
693
694
695
696
697
...
726
BY DENIS WERNER - @NOBBD -
IMPRESSUM