REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Glassdoor'
disclosed a bug submitted by
b'bombon'
b'Web Cache Poisoning leads to Stored XSS '
07 Mar 2022
b'Mail.ru'
disclosed a bug submitted by
b'mainteemoforfun'
b'unclaimed subdomain special.rkeeper.ru to takeover from tilda.cc'
05 Mar 2022
b'Lark Technologies'
disclosed a bug submitted by
b'aishkendle'
b'Normal User is able to EXPORT Feature Usage Statistics'
04 Mar 2022
b'Omise'
disclosed a bug submitted by
b'sachinrajput'
b'Brute force attack of current password on login page by bypassing account limit using IP rotator(https://dashboard.omise.co/signin)'
04 Mar 2022
b'Uber'
disclosed a bug submitted by
b'johnzilla313'
b'Uber Test Report 20220301'
03 Mar 2022
b'Ruby on Rails'
disclosed a bug submitted by
b'nagli'
b'Subdomain Takeover at https://new.rubyonrails.org/'
03 Mar 2022
b'Mail.ru'
disclosed a bug submitted by
b'smallyu'
b'stand.pw.mail.ru xss'
03 Mar 2022
b'TikTok'
disclosed a bug submitted by
b'datph4m'
b'IDOR delete any Tickets on ads.tiktok.com'
02 Mar 2022
b'TikTok'
disclosed a bug submitted by
b'lu3ky-13'
b'Open Redirect TO Stealing aadvid'
02 Mar 2022
b'Pornhub'
disclosed a bug submitted by
b'wh0ru'
b'Reflected XSS on www.pornhub.com and www.pornhubpremium.com'
02 Mar 2022
b'Acronis'
disclosed a bug submitted by
b'hatnare'
b'Session Fixation on Acronis'
01 Mar 2022
b'Mattermost'
disclosed a bug submitted by
b'odx09'
b'Bypass Email Verification in Customer Portal'
26 Feb 2022
b'Lark Technologies'
disclosed a bug submitted by
b'prateek_thakare'
b'[AWC-Pune] - User can download files deleted by Admin using shortcuts'
25 Feb 2022
b'Slack'
disclosed a bug submitted by
b'danielllewellyn'
b'[Android] Directory traversal leading to disclosure of auth tokens'
25 Feb 2022
b'HackerOne'
disclosed a bug submitted by
b'iamr0000t'
b'Hackerone open redirect security alert bypass via view report as PDF '
25 Feb 2022
b'Mail.ru'
disclosed a bug submitted by
b'388'
b'Deliviry Club Courier app (v. 3.9.25.0); Disclosure phone number of client.'
23 Feb 2022
b'Zomato'
disclosed a bug submitted by
b'ashoka_rao'
b'Add upto 10K rupees to a wallet by paying an arbitrary amount'
23 Feb 2022
b'TikTok'
disclosed a bug submitted by
b'johnstone'
b'Incorrect authorization to the intelbot service leading to ticket information'
23 Feb 2022
b'GitLab'
disclosed a bug submitted by
b'joaxcar'
b'IDOR in "external status check" API leaks data about any status check on the instance'
22 Feb 2022
b'QIWI'
disclosed a bug submitted by
b'uddeshaya'
b'broken authentication (password reset link not expire after use in https://network.tochka.com/sign-up)'
22 Feb 2022
1
...
146
147
148
149
150
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM