REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'QIWI'
disclosed a bug submitted by
b'anonymouus'
b'account takeover through password reset in url https://reklama.tochka.com/'
02 Dec 2021
b'Basecamp'
disclosed a bug submitted by
b'fuzzsqlb0f'
b'Privilege Escalation leads to trash other users comment without having admin rights.'
01 Dec 2021
b'Mail.ru'
disclosed a bug submitted by
b'c1kada'
b'Stored XSS on https://community.my.games/ (Add Post)'
01 Dec 2021
b'Azbuka Vkusa'
disclosed a bug submitted by
b'haxta4ok00'
b'Reflected XSS in photogallery component on [https://market.av.ru]'
01 Dec 2021
b'VK.com'
disclosed a bug submitted by
b'executor'
b' .....'
01 Dec 2021
b'VK.com'
disclosed a bug submitted by
b'executor'
b' .'
01 Dec 2021
b'VK.com'
disclosed a bug submitted by
b'azimoff'
b' / .'
01 Dec 2021
b'VK.com'
disclosed a bug submitted by
b'azimoff'
b'XSS .'
01 Dec 2021
b'VK.com'
disclosed a bug submitted by
b'azimoff'
b' (50x50) .'
01 Dec 2021
b'VK.com'
disclosed a bug submitted by
b'azimoff'
b'XSS .'
01 Dec 2021
b'Glassdoor'
disclosed a bug submitted by
b'bombon'
b'[https://www.glassdoor.com] - Web Cache Deception Leads to gdtoken Disclosure '
30 Nov 2021
b'Acronis'
disclosed a bug submitted by
b'spookhorror'
b'IDOR vulnerability (Price manipulation)'
30 Nov 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'palaziv'
b'Unauthenticated Access to Admin Panel Functions at https:///'
29 Nov 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'palaziv'
b'Unauthenticated Access to Admin Panel Functions at https:///'
29 Nov 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'dmonsterrr'
b'Expired SSL Certificate allows credentials steal'
29 Nov 2021
b'MCUboot'
disclosed a bug submitted by
b'r0m50'
b'private keys exposed on the GitHub repository'
27 Nov 2021
b'XVIDEOS'
disclosed a bug submitted by
b'sbakhour'
b'CSRF on delete friend requests - Not protected with CSRF Token'
26 Nov 2021
b'Shopify'
disclosed a bug submitted by
b'fr4via'
b'Insufficient session expiration in the **com.shopify.ping** android app'
26 Nov 2021
b'Shopify'
disclosed a bug submitted by
b'stapia'
b'A non-privileged user may create an admin account in Stocky'
25 Nov 2021
b'Shopify'
disclosed a bug submitted by
b'youstin'
b'Sidekiq dashboard exposed at notary.shopifycloud.com'
25 Nov 2021
1
...
157
158
159
160
161
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM