REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Stripo Inc'
disclosed a bug submitted by
b'what_web'
b'[www.stripo.email] There is no rate limit for /it/contact-us/ endpoints'
03 Jul 2020
b'Stripo Inc'
disclosed a bug submitted by
b'mraldersonn'
b'multiple email usage -my.stripo.email-'
03 Jul 2020
b'8x8'
disclosed a bug submitted by
b'manantch'
b'PHPinfo page on http://?????.callstats.io'
02 Jul 2020
b'Node.js'
disclosed a bug submitted by
b'galgo'
b'Node.js HTTP/2 Large Settings Frame DoS'
02 Jul 2020
b'Node.js'
disclosed a bug submitted by
b'tniessen'
b'napi_get_value_string_X allow various kinds of memory corruption'
02 Jul 2020
b'InnoGames'
disclosed a bug submitted by
b'webklex'
b'Create any military unit in any age'
02 Jul 2020
b'Glassdoor'
disclosed a bug submitted by
b'safehacker_27'
b'2FA bypass by sending blank code'
02 Jul 2020
b'pixiv'
disclosed a bug submitted by
b'katsuragicsl'
b'CSRF at https://chatstory.pixiv.net/imported'
02 Jul 2020
b'Helium'
disclosed a bug submitted by
b'dracomalfoy'
b'HTTP request Smuggling'
02 Jul 2020
b'SMTP2GO'
disclosed a bug submitted by
b'tryforimpossible'
b'Stored XSS at https://app.smtp2go.com/settings/users/ '
02 Jul 2020
b'Showmax'
disclosed a bug submitted by
b'0x1_aulia'
b'[stories.showmax.com] Cross Origin Misconfiguration - Sensitive Information Exposure'
01 Jul 2020
b'Twitter'
disclosed a bug submitted by
b'1735096419'
b'??????????????'
01 Jul 2020
b'Slack'
disclosed a bug submitted by
b'mcsheehan'
b'Tricking the "Create snippet" feature into displaying the wrong filetype can lead to RCE on Slack users'
30 Jun 2020
b'Starbucks'
disclosed a bug submitted by
b'm82a1'
b'China - Open redirect at trackinghub.starbucks.com.cn'
30 Jun 2020
b'Starbucks'
disclosed a bug submitted by
b'cdl'
b'Cross-Site Scripting (XSS) on www.starbucks.com | .co.uk login pages'
30 Jun 2020
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'murmus'
b'Local File Disclosure (+XSS+CSRF) in AirOS 6.2.0 devices'
30 Jun 2020
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'murmus'
b'RCE in AirOS 6.2.0 Devices with CSRF bypass'
30 Jun 2020
b'Razer'
disclosed a bug submitted by
b's3cr3tsdn'
b'[api.easy2pay.co] SQL Injection at fortumo via TransID parameter [Bypassing Signature Validation????]'
30 Jun 2020
b'Stripo Inc'
disclosed a bug submitted by
b'what_web'
b'[www.stripo.email] You can bypass the speed limit by changing the IP.'
30 Jun 2020
b'Stripo Inc'
disclosed a bug submitted by
b'x25s'
b'SSRF in my.stripo.email'
30 Jun 2020
1
...
280
281
282
283
284
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM