REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
65
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Ruby'
disclosed a bug submitted by
b'hanno'
b'Net::SMTP with tls allows forged certificates as long as the hostname matches'
25 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'maxarr'
b'XSS account.mail.ru'
24 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'maxarr'
b'XSS in message e.mail.ru '
24 Jan 2021
b'NordVPN'
disclosed a bug submitted by
b'kaimi'
b'User password left in memory in plain text after GUI launch'
24 Jan 2021
b'Automattic'
disclosed a bug submitted by
b'fuzzme'
b'[intensedebate.com] XSS Reflected POST-Based on update/tumblr2/{$id}'
23 Jan 2021
b'Automattic'
disclosed a bug submitted by
b'fuzzme'
b'[intensedebate.com] No Rate Limit On The report Functionality Lead To Delete Any Comment When it is enabled'
23 Jan 2021
b'FetLife'
disclosed a bug submitted by
b'0x01hacker1'
b'Google API key leaked to Public'
23 Jan 2021
b'O1 Labs'
disclosed a bug submitted by
b'zinminphyoo'
b'SPF Records'
22 Jan 2021
b'h1-ctf'
disclosed a bug submitted by
b'akshansh'
b'Taking Grinch Down To Save Holidays'
22 Jan 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'porcupineyhairs'
b'Golang : Add Email Content Injection query'
22 Jan 2021
b'GitHub Security Lab'
disclosed a bug submitted by
b'porcupineyhairs'
b'Golang : Add MongoDb NoSQL injection sinks'
22 Jan 2021
b'curl'
disclosed a bug submitted by
b'kugghjul'
b'Poll loop/hang on incomplete HTTP header'
22 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'explosive'
b' , .'
22 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'jayesh25'
b'Improper Restriction of Excessive Authentication Attempts at http://terrafoot.ru/login.php (Rate Limit bypass via IP Rotation)'
22 Jan 2021
b'Mail.ru'
disclosed a bug submitted by
b'jayesh25'
b'Account Takeover via Forgot Password Page at https://3k.mail.ru/send_password.php?'
22 Jan 2021
b'Enjin'
disclosed a bug submitted by
b'michael7854'
b"Reset password policy isn't consistent with registration / change password policy."
22 Jan 2021
b'Rockstar Games'
disclosed a bug submitted by
b'bugstar'
b'phpinfo() on graph.rockstargames.com exposes sensitive information'
21 Jan 2021
b'New Relic'
disclosed a bug submitted by
b'batuhan'
b"Adding your account to victim's app via deeplink"
21 Jan 2021
b'Nextcloud'
disclosed a bug submitted by
b'demonia'
b'Potential DDoS when posting long data into workflow validation rules'
21 Jan 2021
b'Logitech'
disclosed a bug submitted by
b'sudi'
b'Manipulating response leads to free access to Streamlabs Prime '
21 Jan 2021
1
...
235
236
237
238
239
...
746
BY DENIS WERNER - @NOBBD -
IMPRESSUM