REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'BugPoC'
disclosed a bug submitted by
b'whitehat1443hacker'
b'Strict Transport Security Misconfiguration'
30 Nov 2020
b'Stripo Inc'
disclosed a bug submitted by
b'kittytrace'
b'No rate limiting for subscribe email + lead to Cross origin misconfiguration'
30 Nov 2020
b'Kubernetes'
disclosed a bug submitted by
b'todayisnew'
b'Subdomain Takeover Via via Dangling NS records on Amazon Route 53 http://api.e2e-kops-aws-canary.test-cncf-aws.canary.k8s.io'
29 Nov 2020
b'Kubernetes'
disclosed a bug submitted by
b'derek0405'
b'secret leaks in vsphere cloud controller manager log'
29 Nov 2020
b'Kubernetes'
disclosed a bug submitted by
b'purelyapplied'
b'CVE-2019-11250 remains in effect.'
29 Nov 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'bilk0h'
b'[last-commit-log] Command Injection'
29 Nov 2020
b'Automattic'
disclosed a bug submitted by
b'fuzzme'
b'[api.tumblr.com] Denial of Service by cookies manipulation'
29 Nov 2020
b'Helium'
disclosed a bug submitted by
b'eissen5c'
b'Race Condition of Transfer data Credits to Organization Leads to Add Extra free Data Credits to the Organization'
27 Nov 2020
b'Open-Xchange'
disclosed a bug submitted by
b'skr0x1c0'
b'XSS on opening malicious OpenOffice presentation document'
27 Nov 2020
b'Open-Xchange'
disclosed a bug submitted by
b'skr0x1c0'
b'SSRF protection bypass in /appsuite/api/oxodocumentfilter addfile action'
27 Nov 2020
b'Shopify'
disclosed a bug submitted by
b'ash_nz'
b'Low Privileged Staff Member Can Export Billing Charges'
26 Nov 2020
b'Basecamp'
disclosed a bug submitted by
b'gammarex'
b'Remote code execution on Basecamp.com'
26 Nov 2020
b'Basecamp'
disclosed a bug submitted by
b'hudmi'
b'Attachments may be hijacked via AppCache+CookieBombing trick (bc3_production_blobs bucket)'
26 Nov 2020
b'Logitech'
disclosed a bug submitted by
b'bugra'
b'IDOR when creating App on [platform.streamlabs.com/api/v1/store/whitelist] with user_id field'
26 Nov 2020
b'Palo Alto Software'
disclosed a bug submitted by
b'ph-hitachi'
b'IDOR on notes to HTML injection'
26 Nov 2020
b'Bumble'
disclosed a bug submitted by
b'godzkid'
b'On Singing up with a Phone number , The 4 digit OTP does not expires for a long time leading to an easy attack and make a verified account easilty'
25 Nov 2020
b'Zendesk'
disclosed a bug submitted by
b'imran_nazir'
b' CSRF on developer.zendesk.com via Cache Deception'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'naategh'
b'lenta_proxy information disclosure'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'paul_axe'
b'Source code and internal credentials disclosure'
25 Nov 2020
b'Mail.ru'
disclosed a bug submitted by
b'elmahdi'
b'Blind SSRF on http://info.ucs.ru/settings/check/'
25 Nov 2020
1
...
243
244
245
246
247
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM