REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
64
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Bitso'
disclosed a bug submitted by
b'mohit0786'
b'Broken link hijack'
20 Mar 2021
b'TikTok'
disclosed a bug submitted by
b'nagli'
b'HTML Injection through Account Name field on TikTok ads portal being rendered on emails'
19 Mar 2021
b'Lark Technologies'
disclosed a bug submitted by
b'jin0ne'
b'Reflected XSS on Lark Suite'
19 Mar 2021
b'Zivver'
disclosed a bug submitted by
b'stiltz'
b'Bypass MFA requirement to send messages'
19 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'neex'
b'file read on MCS servers via supplying a QCOW2 image with external backing file'
19 Mar 2021
b'Mattermost'
disclosed a bug submitted by
b'stregh'
b'[mattermost.com] CORS Misconfiguration leakage of admin users'
19 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'act1on3'
b'[city-mobil.ru/taxiserv/] SQLi at /taxiserv/requests path at driver_company param'
19 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'act1on3'
b'[city-mobil.ru/taxiserv/] SQLi at /taxiserv/tariffs/dictionary at filter{"id_locality"} param'
19 Mar 2021
b'Dropbox'
disclosed a bug submitted by
b'wesamahmed_2'
b'[www.dropboxforum.com] - reflected XSS in search'
19 Mar 2021
b'Lark Technologies'
disclosed a bug submitted by
b'jin0ne'
b'Server Side Request Forgery'
18 Mar 2021
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b'Stored Cross-Site Scripting vulnerability in example Custom Digital Agreement'
18 Mar 2021
b'HackerOne'
disclosed a bug submitted by
b'sodium_'
b'"Bounty splitting enabled" can discloses if public VDPs are running private VRP'
18 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'sniper302'
b'Full Account Takeover Student Account In https://uchi.ru/signin/main/student/email'
18 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'zerody'
b'Eval-based XSS in Game JS API (mailru.core.js) via cross-origin postMessage()'
18 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'k3ypt0'
b'SQL injection delivery-club.ru (ClickHouse)'
18 Mar 2021
b'Mail.ru'
disclosed a bug submitted by
b'sniper302'
b'Full Account Takeover In uchi.ru'
18 Mar 2021
b'Rocket.Chat'
disclosed a bug submitted by
b'legalizenepal'
b'Android App Crashes while sending message to users/ on channel '
18 Mar 2021
b'Bumble'
disclosed a bug submitted by
b'dhakal_bibek'
b'Misconfigured oauth leads to Pre account takeover '
18 Mar 2021
b'GitLab'
disclosed a bug submitted by
b'hx01'
b'Ability To Delete User(s) Account Without User Interaction'
17 Mar 2021
b'Lark Technologies'
disclosed a bug submitted by
b'base_64'
b'Messages disclosure via search feature of other users group(Cross-Tenant).'
17 Mar 2021
1
...
215
216
217
218
219
...
742
BY DENIS WERNER - @NOBBD -
IMPRESSUM