REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
63
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Ubiquiti Inc.'
disclosed a bug submitted by
b'giany'
b'Unauthenticated request allows changing hostname'
10 Apr 2020
b'Nextcloud'
disclosed a bug submitted by
b'protex0r'
b'Code injection in macOS Desktop Client '
10 Apr 2020
b'Nextcloud'
disclosed a bug submitted by
b'at5djl3pwjmunyutnoatp'
b'"Secure View" aka "Hide Download" can be bypassed easily'
10 Apr 2020
b'Stripo Inc'
disclosed a bug submitted by
b'c1kada'
b'SSRF in Export template to ActiveCampaign'
10 Apr 2020
b'Stripo Inc'
disclosed a bug submitted by
b'codeslayer137'
b'HTTP Request Smuggling on my.stripo.email'
10 Apr 2020
b'Shopify'
disclosed a bug submitted by
b'ngalog'
b'CSRF on connecting Paypal as Payment Provider'
10 Apr 2020
b'Equifax'
disclosed a bug submitted by
b'lijhazo'
b'Information Leak (Github)'
09 Apr 2020
b'Genasys Technologies'
disclosed a bug submitted by
b'mahmutyazici'
b'Improper Input Validation on payment page'
09 Apr 2020
b'Razer'
disclosed a bug submitted by
b's3cr3tsdn'
b'SQL Injection at https://sea-web.gold.razer.com/lab/cash-card-incomplete-translog-resend via period-hour Parameter'
08 Apr 2020
b'Razer'
disclosed a bug submitted by
b's3cr3tsdn'
b'[SSRF] Server-Side Request Forgery at https://sea-web.gold.razer.com/dev/simulator via notify_url Parameter'
08 Apr 2020
b'Razer'
disclosed a bug submitted by
b's3cr3tsdn'
b'Source Code Disclosure'
08 Apr 2020
b'Razer'
disclosed a bug submitted by
b's3cr3tsdn'
b'SQL injection at https://sea-web.gold.razer.com/demo-th/goto-e2p-web-api.php via Multiple Parameters'
08 Apr 2020
b'Razer'
disclosed a bug submitted by
b's3cr3tsdn'
b'SQL Injection at api.easy2pay.co/add-on/get-sig.php via partner_id Parameter'
08 Apr 2020
b'Maker Ecosystem Growth Holding'
disclosed a bug submitted by
b'0xhost'
b'xmlrpc.php file is enable it will used for (Denial of Service) and bruteforce attack'
07 Apr 2020
b'ForeScout Technologies'
disclosed a bug submitted by
b'enesdexh1'
b'DOM XSS at www.forescout.com in Microsoft Edge and IE Browser'
07 Apr 2020
b'Uber'
disclosed a bug submitted by
b'0x3c3e'
b'Subdomain takeover on mta1a1.spmail.uber.com'
06 Apr 2020
b'Uber'
disclosed a bug submitted by
b'overjt'
b'Change the rating of any trip, therefore change the average driver rating'
06 Apr 2020
b'Mail.ru'
disclosed a bug submitted by
b'cutoffurmind'
b'PHP code injection at tz.mail.ru'
06 Apr 2020
b'Myndr'
disclosed a bug submitted by
b'droop3r'
b"Open Redirect filter bypass through '\\' character via URL parameter"
06 Apr 2020
b'Mail.ru'
disclosed a bug submitted by
b'cutoffurmind'
b'3igames.mail.ru SQL Injection '
06 Apr 2020
1
...
316
317
318
319
320
...
740
BY DENIS WERNER - @NOBBD -
IMPRESSUM