REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Rocket.Chat'
disclosed a bug submitted by
b'sonarsource'
b'Post-Auth Blind NoSQL Injection in the users.list API leads to Remote Code Execution'
31 Jul 2021
b'Snapchat'
disclosed a bug submitted by
b'rms'
b'Bitmoji source code is accessible'
31 Jul 2021
b'UPchieve'
disclosed a bug submitted by
b'ben_lay'
b'url redirection'
30 Jul 2021
b'8x8'
disclosed a bug submitted by
b'melbadry9'
b'DNS Misconfiguration (Subdomain Takeover) - .8x8.com'
30 Jul 2021
b'Stripo Inc'
disclosed a bug submitted by
b'jmrcsnchz'
b'Bypassing Content-Security-Policy leads to open-redirect and iframe xss'
30 Jul 2021
b'Snapchat'
disclosed a bug submitted by
b'txt3rob'
b'Exposed Kubernetes API - RCE/Exposed Creds'
29 Jul 2021
b'Snapchat'
disclosed a bug submitted by
b'coolboss'
b'Stealing SSO Login Tokens (snappublisher.snapchat.com)'
29 Jul 2021
b'Snapchat'
disclosed a bug submitted by
b'apfeifer27'
b'Publicly accessible Continuous Integration Tool'
29 Jul 2021
b'Snapchat'
disclosed a bug submitted by
b'sdushantha'
b'CSRF when unlocking lenses leads to lenses being forcefully installed without user interaction'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'All private support requests to are being disclosed at https://'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'lu3ky-13'
b'SQL injection my method -1 OR 3*2*1=6 AND 000159=000159'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fdeleite'
b' Pre-auth RCE in ForgeRock OpenAM (CVE-2021-35464)'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sp1d3rs'
b'Arbitrary File Reading leads to RCE in the Pulse Secure SSL VPN on the https://'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'veshrajghimire'
b'XSS DUE TO CVE-2020-3580'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'vess_razz'
b'XSS DUE TO CVE-2020-3580'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fdeleite'
b'Pre-auth RCE in ForgeRock OpenAM (CVE-2021-35464)'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fiveguyslover'
b'Reflected XSS - https://'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'sp1d3rs'
b'[HTAF4-213] [Pre-submission] CVE-2018-2879 (padding oracle attack in the Oracle Access Manager) at https://'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fiveguyslover'
b'XSS Reflected on https:// ( parameter)'
29 Jul 2021
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'fiveguyslover'
b'xss on https://( parameter)'
29 Jul 2021
1
...
183
184
185
186
187
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM