REPORTS
PROGRAMS
PUBLISHERS
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'HackerOne'
disclosed a bug submitted by
b'mrrm'
b'homograph attack. IDNs displyed in unicode in bug reports and on external link warning page.'
09 Oct 2014
b'IRCCloud'
disclosed a bug submitted by
b'mohdhaji87'
b'Bruteforce protection not enabled on the login page https://www.irccloud.com/'
08 Oct 2014
wont-fix
b'Flash'
disclosed a bug submitted by
b'hhj4ck'
b'Adobe Flash Player FileReference Use-after-Free Vulnerability'
07 Oct 2014
b'Flash'
disclosed a bug submitted by
b'kinine'
b'Flash Local Sandbox Bypass'
07 Oct 2014
b'Twitter'
disclosed a bug submitted by
b'simon90'
b'Twitter Flight SSL 2.0 deprecated protocol vulnerability.'
07 Oct 2014
b'Square'
disclosed a bug submitted by
b'cliffordtrigo'
b'Open Redirect [FreshBook]'
04 Oct 2014
b'Python'
disclosed a bug submitted by
b'pakt'
b'Misc Python bugs (Memory Corruption & Use After Free)'
04 Oct 2014
b'HackerOne'
disclosed a bug submitted by
b'dawidczagan'
b'Enumeration of users'
03 Oct 2014
wont-fix
b'Slack'
disclosed a bug submitted by
b'shahmeer_amir'
b'HTTP Strict Transport Policy not enabled on newly made accounts'
03 Oct 2014
b'Mail.Ru'
disclosed a bug submitted by
b'quistertow'
b'Flash XSS in http://lingvo.mail.ru'
02 Oct 2014
b'Square'
disclosed a bug submitted by
b'avlidienbrunn'
b'Blind SQL injection in www.bookfresh.com'
02 Oct 2014
b'Twitter'
disclosed a bug submitted by
b'karthik29'
b'HTML form without CSRF protection at http://try.crashlytics.com/enterprise/'
02 Oct 2014
b'Phabricator'
disclosed a bug submitted by
b'shahmeer_amir'
b'Password Policy issue'
02 Oct 2014
wont-fix
b'IRCCloud'
disclosed a bug submitted by
b'mantis'
b'Persistent Cross Site Scripting within the IRCCloud Pastebin '
01 Oct 2014
b'IRCCloud'
disclosed a bug submitted by
b'mantis'
b'Unvalidated Channel names causes IRC Command Injection'
01 Oct 2014
b'The Internet'
disclosed a bug submitted by
b'someonenobbd'
b"GNU Bourne-Again Shell (Bash) 'Shellshock' Vulnerability"
01 Oct 2014
b'ExpressionEngine'
disclosed a bug submitted by
b'charan'
b'Cross Site Scripting (Stored) '
30 Sep 2014
b'Twitter'
disclosed a bug submitted by
b'secgeek'
b'Delete Credit Cards from any Twitter Account in ads.twitter.com [New Vulnerability]'
30 Sep 2014
b'Uzbey LLC'
disclosed a bug submitted by
b'shahriyar'
b'Mass invitation send'
29 Sep 2014
wont-fix
b'CloudFlare'
disclosed a bug submitted by
b'sergeybelove'
b"User's data leak"
28 Sep 2014
1
...
733
734
735
736
737
...
765
BY DENIS WERNER - @NOBBD -
IMPRESSUM