REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'smallyu'
b'stand.pw.mail.ru xss'
03 Mar 2022
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'IDOR delete any Tickets on ads.tiktok.com'
02 Mar 2022
b'TikTok'
disclosed a bug submitted by
b'lu3ky-13'
b'Open Redirect TO Stealing aadvid'
02 Mar 2022
b'Pornhub'
disclosed a bug submitted by
b'wh0ru'
b'Reflected XSS on www.pornhub.com and www.pornhubpremium.com'
02 Mar 2022
b'Acronis'
disclosed a bug submitted by
b'hatnare'
b'Session Fixation on Acronis'
01 Mar 2022
b'Mattermost'
disclosed a bug submitted by
b'odx09'
b'Bypass Email Verification in Customer Portal'
26 Feb 2022
b'Lark Technologies'
disclosed a bug submitted by
b'prateek_thakare'
b'[AWC-Pune] - User can download files deleted by Admin using shortcuts'
25 Feb 2022
b'Slack'
disclosed a bug submitted by
b'danielllewellyn'
b'[Android] Directory traversal leading to disclosure of auth tokens'
25 Feb 2022
b'HackerOne'
disclosed a bug submitted by
b'iamr0000t'
b'Hackerone open redirect security alert bypass via view report as PDF '
25 Feb 2022
b'Mail.ru'
disclosed a bug submitted by
b'388'
b'Deliviry Club Courier app (v. 3.9.25.0); Disclosure phone number of client.'
23 Feb 2022
b'Zomato'
disclosed a bug submitted by
b'ashoka_rao'
b'Add upto 10K rupees to a wallet by paying an arbitrary amount'
23 Feb 2022
b'TikTok'
disclosed a bug submitted by
b'johnstone'
b'Incorrect authorization to the intelbot service leading to ticket information'
23 Feb 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'IDOR in "external status check" API leaks data about any status check on the instance'
22 Feb 2022
b'QIWI'
disclosed a bug submitted by
b'uddeshaya'
b'broken authentication (password reset link not expire after use in https://network.tochka.com/sign-up)'
22 Feb 2022
b'Acronis'
disclosed a bug submitted by
b'lu3ky-13'
b'FULL SSRF '
22 Feb 2022
b'Zomato'
disclosed a bug submitted by
b'ashoka_rao'
b'Claiming the listing of a non-delivery restaurant through OTP manipulation'
22 Feb 2022
b'8x8'
disclosed a bug submitted by
b'adnanmalikinfo'
b' api key exposed in github.com//'
22 Feb 2022
b'Automattic'
disclosed a bug submitted by
b'ajoekerr'
b'De-anonymize anonymous tips through the Tumblr blog network'
21 Feb 2022
b'curl'
disclosed a bug submitted by
b'nsq11'
b' Remote memory disclosure vulnerability in libcurl on 64 Bit Windows'
21 Feb 2022
b'Zomato'
disclosed a bug submitted by
b'codersanjay'
b'Page has a link to google drive which has logos and a few customer phone recordings'
21 Feb 2022
1
...
143
144
145
146
147
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM