REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'cdl'
b'[hta3] Remote Code Execution on https:// via improper access control to SCORM Zip upload/import'
15 Sep 2022
b'Linktree'
disclosed a bug submitted by
b'bug_vs_me'
b'No validation to Image upload user can upload ( php APK zip files and can be used as storage purpose)'
15 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'shreky'
b'STORED XSS in /nlc/login.aspx via "edit" GET parameter through markdown editor [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'malcolmx'
b'time based SQL injection at [https://] [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'malcolmx'
b'SQL injection at [] [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'malcolmx'
b'SQL injection at [https://] [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'codeprivate'
b'SSRF in Functional Administrative Support Tool pdf generator () [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'ahmed0x0mahmoud'
b'an internel important paths disclosure [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sudi'
b'Full read SSRF at [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'byteone'
b'Unprotected and Test site API Exposes Documents, Credentials, and Emails in Proposal System'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'0xr3dhunt'
b'SSRF ACCESS AWS METADATA - '
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'bate5a'
b'IDOR Lead To VIEW & DELETE & Create api_key [HtUS]'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'shuvam321'
b'XSS DUE TO CVE-2022-38463 in https://'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'thpless'
b'springboot actuator is leaking internals at '
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'0x45'
b'Directory Traversal at '
14 Sep 2022
b'Meredith'
disclosed a bug submitted by
b'error201'
b"Shop - Reflected XSS With Clickjacking Leads to Steal User's Cookie In Two Domain"
14 Sep 2022
b'Dropbox'
disclosed a bug submitted by
b'fransrosen'
b'Abuse cookie-modification, toast HTML and expired domain in CSP-form-action replacing login-page at www.dropbox.com/login to submit creds externally'
14 Sep 2022
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fdeleite'
b'Reflected XSS []'
14 Sep 2022
b'TikTok'
disclosed a bug submitted by
b'f_m'
b'CSRF in Changing User Verification Email'
13 Sep 2022
b'Glassdoor'
disclosed a bug submitted by
b'nokline'
b'Web Cache Poisoning leads to XSS and DoS'
13 Sep 2022
1
...
116
117
118
119
120
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM