REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
63
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'respondly'
disclosed a bug submitted by
b'shahmeer_amir'
b'Allowed method disclosure'
21 Apr 2014
b'RelateIQ'
disclosed a bug submitted by
b'shahmeer_amir'
b'XSRF token problem'
20 Apr 2014
b'RelateIQ'
disclosed a bug submitted by
b'robin'
b'Captcha Bypass With Extension'
20 Apr 2014
b'HackerOne'
disclosed a bug submitted by
b'siddiki'
b'Securing sensitive pages from SearchBots'
20 Apr 2014
b'The Internet'
disclosed a bug submitted by
b'gianko'
b'Uncontrolled Resource Consumption with XMPP-Layer Compression'
20 Apr 2014
b'ReddAPI'
disclosed a bug submitted by
b'smilez_hapiez'
b'Session Fixation Found'
20 Apr 2014
b'Minr.es'
disclosed a bug submitted by
b'smilez_hapiez'
b'Clickjacking: X-Frame-Options header missing'
20 Apr 2014
b'Minr.es'
disclosed a bug submitted by
b'smilez_hapiez'
b'Session Cookie without Secure flag set'
20 Apr 2014
wont-fix
b'Localize'
disclosed a bug submitted by
b'daksh'
b'Stored XSS'
20 Apr 2014
b'Localize'
disclosed a bug submitted by
b'smilez_hapiez'
b'Login page password-guessing attack'
20 Apr 2014
b'Localize'
disclosed a bug submitted by
b'smilez_hapiez'
b'Possible sensitive files'
20 Apr 2014
b'Localize'
disclosed a bug submitted by
b'daksh'
b'Making groups in any project without permission '
20 Apr 2014
b'Localize'
disclosed a bug submitted by
b'daksh'
b'Deleting groups in any project without permission '
20 Apr 2014
b'HackerOne'
disclosed a bug submitted by
b'javidhussain21'
b'Session Management'
19 Apr 2014
b'HackerOne'
disclosed a bug submitted by
b'satishb3'
b'Session not expired on logout'
19 Apr 2014
b'HackerOne'
disclosed a bug submitted by
b'mortes'
b'Flawed account creation process allows registration of usernames corresponding to existing file names'
19 Apr 2014
b'HackerOne'
disclosed a bug submitted by
b'niks'
b'A password reset page does not properly validate the authenticity token at the server side.'
19 Apr 2014
b'HackerOne'
disclosed a bug submitted by
b'wcypierre'
b"Weird Bug - Ability to see partial of other user's notification"
19 Apr 2014
b'OkCupid'
disclosed a bug submitted by
b'rizimughal'
b'DOM based XSS in changing email address'
19 Apr 2014
b'Minr.es'
disclosed a bug submitted by
b'shahmeer_amir'
b'OPTIONS method enabled on webserver'
19 Apr 2014
1
...
730
731
732
733
734
...
740
BY DENIS WERNER - @NOBBD -
IMPRESSUM