REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
56
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Phabricator'
disclosed a bug submitted by
b'dyls'
b'Slowvote and Countdown can cause Denial of Service due to recursive inclusion'
09 May 2022
b'Reddit'
disclosed a bug submitted by
b'abhiramsita'
b'Reflected xss in https://sh.reddit.com'
08 May 2022
b'TikTok'
disclosed a bug submitted by
b's3c'
b'Multiple IDORs in family pairing api'
06 May 2022
b'IBM'
disclosed a bug submitted by
b'asterite'
b'SQL injection in URL path processing on www.ibm.com'
06 May 2022
b'Reddit'
disclosed a bug submitted by
b'bisesh'
b'Able to bypass email verification and change email to any other user email '
06 May 2022
b'Palantir Public'
disclosed a bug submitted by
b'codermak'
b'Github Account Takeover which is used as gradle vcs in "github.com/palantir/gradle-launch-config-plugin"'
05 May 2022
b'TikTok'
disclosed a bug submitted by
b'rioncool22'
b'Clickjacking Vulnerability Can Leads To Delete Developer APP'
04 May 2022
b'TikTok'
disclosed a bug submitted by
b'fr4via'
b'One Click Account Hijacking via Unvalidated Deeplink'
04 May 2022
b'TikTok'
disclosed a bug submitted by
b'glassplant'
b'URL Scheme misconfiguration on TikTok for IOS'
04 May 2022
b'Judge.me '
disclosed a bug submitted by
b'b3hlull'
b'Blind XSS via Feedback form.'
03 May 2022
b'Acronis'
disclosed a bug submitted by
b'sudo_bash'
b'Self-DoS due to template injection via email field in password reset form on access.acronis.com'
03 May 2022
b'MTN Group'
disclosed a bug submitted by
b'homosec'
b'XSS at http://nextapps.mtnonline.com/search/suggest/q/{xss payload}'
01 May 2022
b'MTN Group'
disclosed a bug submitted by
b'homosec'
b'XSS at videostore.mtnonline.com/GL/*.aspx via all parameters'
01 May 2022
b'Khan Academy'
disclosed a bug submitted by
b'bughunterpol'
b'Enumerate class codes via yahoo dork - Can access any course under teacher - Sensitive information leaked'
01 May 2022
b'Nextcloud'
disclosed a bug submitted by
b'dashingjaved'
b'com.nextcloud.client bypass the protection lock in andoid app v 3.18.1 latest version.'
30 Apr 2022
b'Automattic'
disclosed a bug submitted by
b'chip_sec'
b'Reflected XSS due to vulnerable version of sockjs'
29 Apr 2022
b'8x8'
disclosed a bug submitted by
b'chip_sec'
b'Hardcoded AWS credentials in .msi'
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fdeleite'
b'Reflected XSS []'
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fdeleite'
b'Reflected XSS []'
29 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'exploitmsf'
b'lfi in filePathDownload parameter via '
29 Apr 2022
1
...
111
112
113
114
115
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM