REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Vimeo'
disclosed a bug submitted by
b'adrianbelen'
b'abusing Thumbnails(https://vimeo.com/upload/select_thumb) to see a private video'
03 Apr 2015
b'Mobile Vikings'
disclosed a bug submitted by
b'4lemon'
b'CSRF token from another valid user session accepted'
03 Apr 2015
wont-fix
b'Mobile Vikings'
disclosed a bug submitted by
b'4lemon'
b'Enum phone numbers thru /en/sims/topup/add/'
03 Apr 2015
b'Slack'
disclosed a bug submitted by
b'satishb3'
b'Team admin can add billing contacts'
03 Apr 2015
b'Twitter'
disclosed a bug submitted by
b'seifelsallamy'
b'Open Redirect leak of authenticity_token lead to full account take over.'
03 Apr 2015
b'Twitter'
disclosed a bug submitted by
b'masatokinugawa'
b'XSS in twitter.com/safety/unsafe_link_warning'
03 Apr 2015
b'Vimeo'
disclosed a bug submitted by
b'jensk'
b'Can message users without the proper authorization'
01 Apr 2015
b'The Internet'
disclosed a bug submitted by
b'prosecco-inria'
b'FREAK: Factoring RSA_EXPORT Keys to Impersonate TLS Servers'
01 Apr 2015
b'Coinbase'
disclosed a bug submitted by
b'sasi2103'
b'Invoice Details activate JS that filled in '
30 Mar 2015
b'Sucuri'
disclosed a bug submitted by
b'jitendra'
b'Form contained inside page loaded over SSL submits its contents to another page over HTTP '
29 Mar 2015
wont-fix
b'Vimeo'
disclosed a bug submitted by
b'localpwn'
b'Bypassing Email verification '
29 Mar 2015
wont-fix
b'Square'
disclosed a bug submitted by
b'aaj'
b'Privilege Escalation'
28 Mar 2015
b'HackerOne'
disclosed a bug submitted by
b'mazengamal'
b'Team member invitations to sandboxed teams are not invalidated consistently'
28 Mar 2015
b'itBit Exchange'
disclosed a bug submitted by
b'shahmeer_amir'
b'Leakage of sensitive wallet tokens to third party sites'
28 Mar 2015
b'Mail.Ru'
disclosed a bug submitted by
b'zoczus'
b'Same Origin Policy bypass'
27 Mar 2015
b'Twitter'
disclosed a bug submitted by
b'xorb'
b'[Stored XSS] vine.co - profile page'
26 Mar 2015
b'Phabricator'
disclosed a bug submitted by
b'agarri_fr'
b'SSRF vulnerability (access to metadata server on EC2 and OpenStack)'
26 Mar 2015
b'Mavenlink'
disclosed a bug submitted by
b'shahmeer_amir'
b'DNS load balancing not enabled'
25 Mar 2015
wont-fix
b'Flash'
disclosed a bug submitted by
b'hhj4ck'
b'Adobe Flash Player Out-of-Bound Access Vulnerability'
25 Mar 2015
b'Flash'
disclosed a bug submitted by
b'biloulehibou'
b'Race condition in workers may cause an exploitable double free by abusing bytearray.compress() '
25 Mar 2015
1
...
697
698
699
700
701
...
741
BY DENIS WERNER - @NOBBD -
IMPRESSUM