REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
57
b'ooooooo_q'
50
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Basecamp'
disclosed a bug submitted by
b'gammarex'
b'Remote code execution on Basecamp.com'
26 Nov 2020
b'Basecamp'
disclosed a bug submitted by
b'hudmi'
b'Attachments may be hijacked via AppCache+CookieBombing trick (bc3_production_blobs bucket)'
26 Nov 2020
b'Logitech'
disclosed a bug submitted by
b'bugra'
b'IDOR when creating App on [platform.streamlabs.com/api/v1/store/whitelist] with user_id field'
26 Nov 2020
b'Palo Alto Software'
disclosed a bug submitted by
b'ph-hitachi'
b'IDOR on notes to HTML injection'
26 Nov 2020
b'Bumble'
disclosed a bug submitted by
b'godzkid'
b'On Singing up with a Phone number , The 4 digit OTP does not expires for a long time leading to an easy attack and make a verified account easilty'
25 Nov 2020
b'Zendesk'
disclosed a bug submitted by
b'imran_nazir'
b' CSRF on developer.zendesk.com via Cache Deception'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'naategh'
b'lenta_proxy information disclosure'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'paul_axe'
b'Source code and internal credentials disclosure'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'elmahdi'
b'Blind SSRF on http://info.ucs.ru/settings/check/'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'elmahdi'
b'Redmin API Key Exposed In GIthub '
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'sicksec'
b'Access User Tickets via IDOR in [widget.support.my.games]'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'sodium_'
b'the same as #948259 - XSS at jsgames.mail.ru'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'steal_wart'
b'Information Disclosure '
25 Nov 2020
b'BugPoC'
disclosed a bug submitted by
b'virenpawar'
b'Solution to the XSS Challenge '
24 Nov 2020
b'Helium'
disclosed a bug submitted by
b'eissen5c'
b'Hyperlink Injection on Email Invitation'
24 Nov 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'balisong'
b' SharePoint Web Services Exposed to Anonymous Access'
24 Nov 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'balisong'
b' SharePoint Web Services Exposed to Anonymous Access'
24 Nov 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'moloshy'
b'Local File Inclusion In Registration Page'
23 Nov 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'silentbreach'
b'View another user information with IDOR vulnerability '
23 Nov 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'Reflected XSS on https:/// (Bypass of #1002977)'
23 Nov 2020
1
...
224
225
226
227
228
...
718
BY DENIS WERNER - @NOBBD -
IMPRESSUM