REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
84
b'linkks'
75
b'jobert'
70
b'nyymi'
67
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'act1on3'
b'[panel.city-mobil.ru/admin/] Blind XSS via partner name (similar to #746505)'
01 Oct 2020
b'Mail.ru'
disclosed a bug submitted by
b'paul_axe'
b'Blind SSRF in horizon-heat'
01 Oct 2020
b'Mail.ru'
disclosed a bug submitted by
b'paul_axe'
b'Blind SSRF in magnum upgrade_params'
01 Oct 2020
b'CS Money'
disclosed a bug submitted by
b'enigmaticjohn'
b'Application DOS via specially crafted payload on 3d.cs.money'
01 Oct 2020
b'CS Money'
disclosed a bug submitted by
b'abdilahrf_'
b'[cs.money] Open Redirect Leads to Account Takeover'
30 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'gamer7112'
b'DOM XSS on https://www.???????'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nirajgautamit'
b'Reflected XSS in https://www.??????/'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nirajgautamit'
b'Reflected XSS in https://www.?????/'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'jayhanspara'
b'Cross Site Scripting (XSS) \xe2\x80\x93 Reflected'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'nagli'
b'IDOR to Account Takeover on https://????/index.html'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'dwisiswant0'
b'Unauthenticated Arbitrary File Deletion ("CVE-2020-3187") in ????????'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'erbbysam'
b'SQLi in login form of ?????'
29 Sep 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'un4gi'
b'Stored XSS via Comment Form at ????????'
29 Sep 2020
b'Yelp'
disclosed a bug submitted by
b'oxecho'
b'Email flooding using user invitation feature in biz.yelp.com due to lack of rate limiting '
29 Sep 2020
b'Nextcloud'
disclosed a bug submitted by
b'divyesh01'
b'Access control missing while viewing the attachments in the "All boards"'
29 Sep 2020
b'Stripo Inc'
disclosed a bug submitted by
b'0x4_aulia'
b'Public and secret api key leaked in JavaScript source'
29 Sep 2020
b'Nextcloud'
disclosed a bug submitted by
b'dream_changer'
b'Recently change email but still login with old email'
29 Sep 2020
b'CS Money'
disclosed a bug submitted by
b'khoabda1'
b'IDOR in https://3d.cs.money/'
28 Sep 2020
b'CS Money'
disclosed a bug submitted by
b'khoabda1'
b'Bypass restrict of member subscription to use custom background in https://3d.cs.money without prime subscription'
28 Sep 2020
b'Nextcloud'
disclosed a bug submitted by
b'warsocks'
b'Missing server side controls when editing the board\xe2\x80\x99s sharing permissions per user'
28 Sep 2020
1
...
271
272
273
274
275
...
748
BY DENIS WERNER - @NOBBD -
IMPRESSUM