REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Node.js'
disclosed a bug submitted by
b'rogierschouten'
b'Remotely trigger an assertion on a TLS server with a malformed certificate string'
06 Feb 2020
b'Localize'
disclosed a bug submitted by
b'hckit_02'
b'Nginx version is disclosed in HTTP response'
06 Feb 2020
b'Shopify'
disclosed a bug submitted by
b'fransrosen'
b'H1514 Remote Code Execution on kitcrm using bulk customer update of Priority Products'
06 Feb 2020
b'Razer'
disclosed a bug submitted by
b'unl1k3ly'
b'Request Smuggling vulnerability due a vulnerable skipper reverse proxy running in the environment.'
05 Feb 2020
b'Stripo Inc'
disclosed a bug submitted by
b'brumens'
b'Authorization for wp-admin directory are vulnerable to brute force.'
05 Feb 2020
b'MTN Group'
disclosed a bug submitted by
b'juni19'
b'Upload directory of Mtn.co.sz has listing enabled'
05 Feb 2020
b'MTN Group'
disclosed a bug submitted by
b'juni19'
b'Upload directory of Mtn.ci'
05 Feb 2020
b'Razer'
disclosed a bug submitted by
b'nnez'
b'Reflected XSS at http://promotion.molthailand.com/index.php via promotion_id parameter'
05 Feb 2020
b'NordVPN'
disclosed a bug submitted by
b'dakitu'
b'IDOR allow access to payments data of any user'
05 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'grzegol'
b'CodeQL query for finding LDAP Injection (CWE-90) vulnerabilities in Java'
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'grzegol'
b'CodeQL query for finding CSRF vulnerabilities in Spring applications'
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'calderpwn'
b'CodeQL query to detect weak (duplicated) encryption keys for ASP.NET Telerik Upload '
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'jlleitschuh'
b'Java (Maven): Use of insecure protocol to download/upload artifacts'
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'jlleitschuh'
b'Netty HTTP Response Splitting (CRLF Injection) due to disabled header validation'
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'calderpwn'
b'CodeQL query to detect insecure MaxLengthRequest values in ASP.NET applications'
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'calderpwn'
b'CodeQL query to detect pages with validationRequest disabled'
04 Feb 2020
b'GitHub Security Lab'
disclosed a bug submitted by
b'calderpwn'
b'Adds CodeQL query to check for insecure RequestValidationMode in ASP.NET'
04 Feb 2020
b'Mail.ru'
disclosed a bug submitted by
b'sicksec'
b'Stored XSS in Review Section https://games.mail.ru/'
04 Feb 2020
b'Mail.ru'
disclosed a bug submitted by
b'r0hack'
b'Account TakeOver at my.33slona.ru'
04 Feb 2020
b'Mail.ru'
disclosed a bug submitted by
b'mobius07'
b'XSS ?? ????? https://warofdragons.my.games/.'
04 Feb 2020
1
...
331
332
333
334
335
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM