REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'niteshsurana'
b'Public instance of Jenkins on https://??????????/ with /script enabled'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'whitehat_hacker'
b"Github repo's wiki publicly editable"
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'bernhardposselt'
b'Update App Store: Django account high jacking vulnerability'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'nursoda'
b'File-drop content is visible through the gallery app'
31 Jan 2020
b'Stripo Inc'
disclosed a bug submitted by
b'renekroka'
b'Tabnabbing in template comments - stripo.email'
31 Jan 2020
b'Stripo Inc'
disclosed a bug submitted by
b'renekroka'
b'Stored XSS in template comments.'
31 Jan 2020
b'Stripo Inc'
disclosed a bug submitted by
b'homains'
b'Open memory dump method leaking customer information ,secret keys , password , source code & admin accounts'
31 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'effectrenan'
b'Command Injection vulnerability in kill-port-process package'
30 Jan 2020
b'Stripo Inc'
disclosed a bug submitted by
b'bluebridsec'
b'stripo blog search SQL Injection'
30 Jan 2020
b'Stripo Inc'
disclosed a bug submitted by
b'hackthetime'
b'subdomain takeover at status-stage0.stripo.email'
30 Jan 2020
b'WordPress'
disclosed a bug submitted by
b'ajxchapman'
b'Wordpress unzip_file path traversal'
29 Jan 2020
b'Yelp'
disclosed a bug submitted by
b'bellpwn'
b'Multiple Vulnerabilities in (*.blog.yelp.com) - Leakage user admin Sensitive Exposure'
29 Jan 2020
b'Starbucks'
disclosed a bug submitted by
b'zude'
b"Account take over of 'light' starbuckscardb2b users"
29 Jan 2020
b'Starbucks'
disclosed a bug submitted by
b'laszaro'
b'WAF bypass via double encoded non standard ASCII chars permitted a reflected XSS on response page not found pages - (629745 bypass)'
29 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'johnssimon007'
b'[deliver-or-else] Path Traversal'
29 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'johnssimon007'
b'[md-fileserver] Path Traversal'
29 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'johnssimon007'
b'[file-browser] Inadequate Output Encoding and Escaping '
29 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'orlserg'
b'Account takeover via CORS misconfigutation on https://beta.delivery-club.ru'
29 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'johndoe1492'
b'SSRF in clients.city-mobil.ru'
29 Jan 2020
b'Mail.ru'
disclosed a bug submitted by
b'kiriknik'
b'Blind SQL Injection in city-mobil.ru domain'
29 Jan 2020
1
...
326
327
328
329
330
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM