REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'jon_bottarini'
49
b'haxta4ok00'
48
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'buglloc'
b'XSS on https://o2.mail.ru/jsapi/button via PostMessage'
11 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'naaash'
b'Stored XSS on {https://calendar.mail.ru/}'
11 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'dzmitry'
b'[Mail.Ru for Android] Replacing "Add filter" screen by malicious screen'
11 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'maxarr'
b'todo.mail.ru open .git'
11 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'hulkvision_'
b'Theft of Arbitrary file '
11 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'kanytu'
b'Insecure storage of private files'
11 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'bagipro'
b'[myMail Android] Access to protected app components via RegistrationPhoneActivity'
11 Mar 2021
b'RBKmoney'
disclosed a bug submitted by
b'timyun'
b'Apple Pay cryptogram replay and amount tampering'
10 Mar 2021
b'Open-Xchange'
disclosed a bug submitted by
b'ihsinme'
b'reading the stack data of the imap process'
10 Mar 2021
b'Nextcloud'
disclosed a bug submitted by
b'tinkerermaruthu'
b'Clickjacking URLS'
10 Mar 2021
b'Bitso'
disclosed a bug submitted by
b'haxs101'
b'Injecting html codes'
09 Mar 2021
b'GitLab'
disclosed a bug submitted by
b'pandaonair'
b'[information disclosure] Validate existence of a private project.'
09 Mar 2021
b'Stripo Inc'
disclosed a bug submitted by
b'solov9ev'
b'Stored XSS in the banner block description'
09 Mar 2021
b'Showmax'
disclosed a bug submitted by
b'lordjerry0x01'
b'Parental Pin Bypass'
09 Mar 2021
b'Showmax'
disclosed a bug submitted by
b'kaushikkbadri'
b'xml-rpc file open for public in the domain:https://stories.showmax.com/xmlrpc.php'
09 Mar 2021
b'Xiaomi'
disclosed a bug submitted by
b'h4x0r_dz'
b'Insecure file upload in xiaoai.mi.com Lead to Stored XSS'
09 Mar 2021
b'Status.im'
disclosed a bug submitted by
b'jackb898'
b'HTTP Parameter Pollution with semicolons in iframe allows loading external Greenhouse forms'
08 Mar 2021
b'Kartpay'
disclosed a bug submitted by
b'bugera'
b'Disclosure of Merchant_id into the source code without entered OTP code leads to Victims MID takeover.'
08 Mar 2021
b'GitLab'
disclosed a bug submitted by
b'knack2hack'
b'GraphQL Query leads to sensitive information disclosure'
08 Mar 2021
b'curl'
disclosed a bug submitted by
b'fdolev'
b'Proxy-Authorization header carried to a new host on a redirect'
08 Mar 2021
1
...
195
196
197
198
199
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM