REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Uber'
disclosed a bug submitted by
b'samux'
b'Reflected XSS on https://www.uber.com '
15 Mar 2021
b'Uber'
disclosed a bug submitted by
b'healdb'
b'Lack of CSRF protection on uberps.com makes every form vulnerable to CSRF'
15 Mar 2021
b'Uber'
disclosed a bug submitted by
b'healdb'
b'Access to SQL server of ubergreen.pt through password disclosure from different domain on same IP'
15 Mar 2021
b'Uber'
disclosed a bug submitted by
b'healdb'
b'Unsecured Dropwizard Admin Panel on display.uber-adsystem.com exposes sensitive server information'
15 Mar 2021
b'Twitter'
disclosed a bug submitted by
b'm7mdharoun'
b'2 Subdomains Takeover at readfu.com'
15 Mar 2021
b'Node.js'
disclosed a bug submitted by
b'omicronenergy'
b"HTTP2 'unknownProtocol' cause Denial of Service by resource exhaustion"
15 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'derision'
b'SQL Injection at https://lite.r-keeper.ru/site_api/localize/translate/rklscommon/ru'
14 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'moshakes'
b'Exposed Git Repo at https://mini-app.delivery-club.ru'
14 Mar 2021
b'Kartpay'
disclosed a bug submitted by
b'bugera'
b'Duplicate Entry of email leads to 500 Server Error which disclosing the SQL Database table information'
14 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'cutoffurmind'
b'MCS Graphite SSRF: internal network access'
13 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'darknight776'
b'Subdomain takeover http://promo.instamart.ru/'
13 Mar 2021
b'Node.js third-party modules'
disclosed a bug submitted by
b'd3lla'
b'[plain-object-merge] Prototype pollution'
13 Mar 2021
b'Dropbox'
disclosed a bug submitted by
b'prateek_0490'
b'Leaking API_KEY of testrail of HelloSign gives read/write access'
13 Mar 2021
b'Bumble'
disclosed a bug submitted by
b'ndrong'
b'Bumble API exposes read status of chat messages'
13 Mar 2021
b'Shopify'
disclosed a bug submitted by
b'francisbeaudoin'
b'Informations disclosure - Access to some checkout informations'
13 Mar 2021
b'Trint Ltd'
disclosed a bug submitted by
b'prophet'
b'Leak of Internal IP addresses'
12 Mar 2021
b'Liberapay'
disclosed a bug submitted by
b'sudipraj'
b'Failure to Invalid Session after Password Change'
12 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'secator'
b'[xss] content-type '
12 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'4lemon'
b'Customer domain information disclosure at https://biz.mail.ru/api/domains/*'
12 Mar 2021
b'Uber'
disclosed a bug submitted by
b'healdb'
b'Open AWS S3 bucket at ubergreece.s3.amazonaws.com exposes confidential internal documents and files'
12 Mar 2021
1
...
193
194
195
196
197
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM