REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'splint3rsec'
b'[CVE-2020-3452] on '
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'ibrahimatix_'
b'username and password leaked via pptx for website'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'lubak'
b'Broken access control, can lead to legitimate user data loss'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'lubak'
b'Authorization bypass -> IDOR -> PII Leakage'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'mamunwhh'
b'Cross-site Scripting (XSS) - Reflected at https:///'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'lubak'
b'SQL Injection in '
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'homosec'
b"XSS on https:///' parameter"
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'homosec'
b'XSS on https:/// parameter'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'homosec'
b'XSS on https:/// via parameter'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'homosec'
b'XSS on https:/// via parameter'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'whoisbinit'
b'Open Akamai ARL XSS at '
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'whoisbinit'
b'Bypassing CORS Misconfiguration Leads to Sensitive Exposure at https:///'
07 Apr 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'drauschkolb'
b'XSS Reflected - '
07 Apr 2022
b'Rockstar Games'
disclosed a bug submitted by
b'toxiqcitee'
b'Uninstalling Rockstar Games Launcher for Windows (64-bit), then reinstalling keeps you logged in without authentication'
07 Apr 2022
b'Zomato'
disclosed a bug submitted by
b'schutzx0r'
b'Attacker shall recieve order updates on whatsapp for users who have activated whatsapp notification'
06 Apr 2022
b'Palantir Public'
disclosed a bug submitted by
b'haxor31337'
b'SQL Injection at https://files.palantir.com/ due to CVE-2021-38159'
05 Apr 2022
b'HackerOne'
disclosed a bug submitted by
b'bigbug'
b'Private invitation links/tokens leak to third-party analytics site'
05 Apr 2022
b'Krisp'
disclosed a bug submitted by
b'alp'
b'[api.krisp.ai] Race condition on /v2/seats endpoint allows bypassing the original seat limit'
04 Apr 2022
b'Kubernetes'
disclosed a bug submitted by
b'0xlegendkiller'
b'Broken Domain Link Takeover from kubernetes.io docs'
03 Apr 2022
b'Stripe'
disclosed a bug submitted by
b'd_sharad'
b'CSRF token validation system is disabled on Stripe Dashboard'
02 Apr 2022
1
...
116
117
118
119
120
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM