REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Uber'
disclosed a bug submitted by
b'0xprial'
b'IDOR leads to See analytics of Loyalty Program in any restaurant.'
28 May 2021
b'VK.com'
disclosed a bug submitted by
b'bagipro'
b'[VK Android] Access to app protected components leads to arbitrary code execution'
27 May 2021
b'Kubernetes'
disclosed a bug submitted by
b'javierprovecho'
b'Bypass apiserver proxy filter'
27 May 2021
b'Valve'
disclosed a bug submitted by
b'chaynik'
b'RCE on CS:GO client using unsanitized entity ID in EntityMsg message'
27 May 2021
b'Valve'
disclosed a bug submitted by
b'chaynik'
b'Signedness issue in ClassInfo message handler leads to RCE on CS:GO client'
27 May 2021
b'OpenMage'
disclosed a bug submitted by
b'xenx'
b'CSRF in changing password after using reset password link'
27 May 2021
b'MariaDB'
disclosed a bug submitted by
b'dtattoedhackers'
b'Git Config'
27 May 2021
b'PlayStation'
disclosed a bug submitted by
b'm00nbsd'
b'SMAP bypass'
27 May 2021
b'Twitter'
disclosed a bug submitted by
b'mirhat'
b"Ability to add arbitrary images/descriptions/titles to ohter people's issues via IDOR on getrevue.co"
26 May 2021
b'TikTok'
disclosed a bug submitted by
b'probatorem'
b'CSRF on TikTok Ads Portal'
26 May 2021
b'Helium'
disclosed a bug submitted by
b'th0roid'
b'SSRF By adding a custom integration on console.helium.com'
26 May 2021
b'Mail.ru'
disclosed a bug submitted by
b'tounsi_007'
b'Account takeover on [support2.ucs.ru]'
26 May 2021
b'Mail.ru'
disclosed a bug submitted by
b'aapo'
b' Disk-o Cloud application (Windows) does not validate server certificate on a TLS connection'
26 May 2021
b'Mail.ru'
disclosed a bug submitted by
b'bombon'
b'[https://geekbrains.ru/profile] - authenticity_token not tied to user session leads to CSRF attacks'
26 May 2021
b'Nextcloud'
disclosed a bug submitted by
b'rtod'
b'Talk discloses turn server to anybody'
26 May 2021
b'Nextcloud'
disclosed a bug submitted by
b'rtod'
b'Nextcloud deck sharee search leaks searches to lookupserver by default'
26 May 2021
b'Mail.ru'
disclosed a bug submitted by
b'igorpyan'
b'[com.icq.mobile.client] '
26 May 2021
b'curl'
disclosed a bug submitted by
b'nyymi'
b'CVE-2021-22901: TLS session caching disaster'
26 May 2021
b'curl'
disclosed a bug submitted by
b'nyymi'
b'CVE-2021-22898: TELNET stack contents disclosure'
26 May 2021
b'curl'
disclosed a bug submitted by
b'nyymi'
b'CVE-2021-22897: schannel cipher selection surprise'
26 May 2021
1
...
174
175
176
177
178
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM