REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Brave Software'
disclosed a bug submitted by
b'j3rry-1729'
b'S3 Bucket Takeover "brave-browser-rpm-staging-release-test"'
26 Apr 2023
b'Brave Software'
disclosed a bug submitted by
b'j3rry-1729'
b'S3 Bucket Takeover : brave-apt'
26 Apr 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'dee-see'
b'CVE-2023-28755: ReDoS vulnerability in URI'
26 Apr 2023
b'Reddit'
disclosed a bug submitted by
b'revolte'
b'Blind SSRF with Escalation possibilities in matrix preview_link API'
26 Apr 2023
b'Omise'
disclosed a bug submitted by
b'muhammadilyas'
b"The endpoint '/test/webhooks' is vulnerable to DNS Rebinding"
26 Apr 2023
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ooooooo_q'
b'ReDoS( Ruby, Time)'
26 Apr 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Retrospective change of message timestamp and order'
25 Apr 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'gronke'
b'Messages can be hidden regardless of server configuration'
25 Apr 2023
b'Rocket.Chat'
disclosed a bug submitted by
b'priyank_parmar'
b'Improper Access Control - Generic'
25 Apr 2023
b'Kubernetes'
disclosed a bug submitted by
b'jlleitschuh'
b'The `io.kubernetes.client.util.generic.dynamic.Dynamics` contains a code execution vulnerability due to SnakeYAML'
25 Apr 2023
b'Kubernetes'
disclosed a bug submitted by
b'stealthy'
b'File Read Vulnerability allows Attackers to Compromise S3 buckets using Prow'
25 Apr 2023
b'Nextcloud'
disclosed a bug submitted by
b'hackit_bharat'
b'Missing brute force protection for passwords of password protected share links'
25 Apr 2023
b'Acronis'
disclosed a bug submitted by
b'imranhudaa'
b"Delete any user's added Email,Telephone,Fax,Address,Skype via csrf in (https://academy.acronis.com/)"
25 Apr 2023
b'Sony'
disclosed a bug submitted by
b'kauenavarro'
b'SQL Injection at https:// via parameter'
24 Apr 2023
b'Equifax-vdp'
disclosed a bug submitted by
b'abdoj'
b'reflected XSS in [www.equifax.com]'
23 Apr 2023
b'Equifax-vdp'
disclosed a bug submitted by
b'abdoj'
b'reflected XSS in [www.equifax.com]'
23 Apr 2023
b'GitHub'
disclosed a bug submitted by
b'ammar2'
b'Authentication bypass on gist.github.com through SSH Certificates'
20 Apr 2023
b'Reddit'
disclosed a bug submitted by
b'revolte'
b'RichText parser vulnerability in scheduled posts allows XSS'
20 Apr 2023
b'U.S. Department of State'
disclosed a bug submitted by
b'shadow1krd'
b'Time Based SQL Injection'
20 Apr 2023
b'Fastly VDP'
disclosed a bug submitted by
b'salokin'
b'CVE-2018-6389 exploitation - using scripts loader'
20 Apr 2023
1
...
87
88
89
90
91
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM