REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'DC Compendium'
disclosed a bug submitted by
b'smiegles'
b'Error page Cross-site scripting'
30 Jul 2014
b'jsDelivr'
disclosed a bug submitted by
b'shubham'
b'XSS'
29 Jul 2014
b'jsDelivr'
disclosed a bug submitted by
b'shahmeer_amir'
b'HSTS Policy not enabled on cdn.jsdelivr.net'
29 Jul 2014
wont-fix
b'4chan'
disclosed a bug submitted by
b'reactors08'
b'XSS in settings'
28 Jul 2014
b'Slack'
disclosed a bug submitted by
b'sehacure'
b'CSRF vulnerability on https://sehacure.slack.com/account/settings'
26 Jul 2014
b'Coinbase'
disclosed a bug submitted by
b'anshuman_bh'
b'CSRF on "Set as primary" option on the accounts page'
26 Jul 2014
b'RelateIQ'
disclosed a bug submitted by
b'pum'
b'SSRF (Portscan) via Register Function (Custom Server)'
26 Jul 2014
b'HackerOne'
disclosed a bug submitted by
b'sehacure'
b'Category- Broken Authentication and Session Management (leads to account compromise if some conditions are met)'
26 Jul 2014
b'RelateIQ'
disclosed a bug submitted by
b'cliffordtrigo'
b'TRACE disclosure attack may be possible'
25 Jul 2014
b'WePay'
disclosed a bug submitted by
b'cliffordtrigo'
b'CSRF & Nonce Token Weak Implementation'
25 Jul 2014
b'The Internet'
disclosed a bug submitted by
b'donb'
b'LZ4 Core'
25 Jul 2014
b'Mavenlink'
disclosed a bug submitted by
b'panchocosil'
b'Flash XSS on swfupload.swf showing at app.mavenlink.com'
24 Jul 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'karthic'
b'Language version disclosure in response header '
23 Jul 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'anonymous_india'
b'Breach Attack Vulnerability'
23 Jul 2014
wont-fix
b'Uzbey LLC'
disclosed a bug submitted by
b'anonymous_india'
b'HTML Form Without CSRF Protection Vulnerability'
23 Jul 2014
wont-fix
b'Uzbey LLC'
disclosed a bug submitted by
b'prakharprasad'
b'Flash Content-Type Sniffing Vulnerability '
23 Jul 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'jimeno'
b'IFXSS (image filename XSS) by creating a new Photo Gallery'
23 Jul 2014
b'Phabricator'
disclosed a bug submitted by
b'xtross'
b'Back - Refresh - Attack To Obtain User Credentials'
23 Jul 2014
wont-fix
b'Mavenlink'
disclosed a bug submitted by
b'shahmeer_amir'
b'Login password guessing attack'
22 Jul 2014
b'Mavenlink'
disclosed a bug submitted by
b'shahmeer_amir'
b'Non Validation of session after password reset'
22 Jul 2014
1
...
703
704
705
706
707
...
726
BY DENIS WERNER - @NOBBD -
IMPRESSUM