REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'VK.com'
disclosed a bug submitted by
b'executor'
b' + .'
05 Nov 2021
b'VK.com'
disclosed a bug submitted by
b'executor'
b'Stored XSS al_video.php?act=a_choose_video_box'
05 Nov 2021
b'VK.com'
disclosed a bug submitted by
b'executor'
b'Stored XSS m.vk.com/video'
05 Nov 2021
b'Kubernetes'
disclosed a bug submitted by
b'seanland'
b'Tokenless GUI Authentication'
04 Nov 2021
b'Kubernetes'
disclosed a bug submitted by
b'champtar'
b'Man in the middle using LoadBalancer or ExternalIPs services'
04 Nov 2021
b'Internet Bug Bounty'
disclosed a bug submitted by
b'albinowax'
b'Request line injection via HTTP/2 in Apache mod_proxy'
04 Nov 2021
b'Logitech'
disclosed a bug submitted by
b'sudi'
b'Steal any users `access_token` via open redirect in https://streamlabs.com/global/identity?popup=1&r='
04 Nov 2021
b'MCUboot'
disclosed a bug submitted by
b'rofes'
b'private keys exposed on the GitHub repository'
04 Nov 2021
b'IBM'
disclosed a bug submitted by
b'haxor31337'
b'Remote Code Execution at https://169.38.86.185/ (edst.ibm.com)'
04 Nov 2021
b'8x8'
disclosed a bug submitted by
b'thecyberguy0'
b'Authentication Bypass & ApacheTomcat Misconfiguration in []'
04 Nov 2021
b'OneWeb'
disclosed a bug submitted by
b'melbadry9'
b'Subdomain Takeover - pmp.oneweb.net'
04 Nov 2021
b'Lark Technologies'
disclosed a bug submitted by
b'imran_nisar'
b'Attacker is able to join any tenant on larksuite and view personal files/chats.'
03 Nov 2021
b'Mail.ru'
disclosed a bug submitted by
b'andridev_'
b'[samokat.ru] PHP modules path disclosure due to lack of error handling'
03 Nov 2021
b'Node.js'
disclosed a bug submitted by
b'mkg'
b'HTTP Request Smuggling due to ignoring chunk extensions'
02 Nov 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'someonenobbd'
b'C# : Add query to detect Server Side Request Forgery'
02 Nov 2021
b'Flickr'
disclosed a bug submitted by
b'mr_robert'
b'critical server misconfiguration lead to access to any user sensitive data which include user email and password'
02 Nov 2021
b'Mail.ru'
disclosed a bug submitted by
b's_kustm'
b'[play.skillbox.ru] CRLF Injection'
30 Oct 2021
b'TikTok'
disclosed a bug submitted by
b'siratsami'
b'HTML Injection on tiktoktutorials via firstName parameter'
30 Oct 2021
b'Grammarly'
disclosed a bug submitted by
b'evilksandr'
b'Bypassing the Grammarly plagiarism checker by simply replacing characters in the source text'
28 Oct 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'al-madjus'
b'AWS subdomain takeover of www.'
28 Oct 2021
1
...
165
166
167
168
169
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM