REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'h1-415-ctf'
disclosed a bug submitted by
b'nukedx'
b'Multiple vulnerabilities leading to leaking of secret user files'
03 Feb 2020
b'Showmax'
disclosed a bug submitted by
b'tefa_'
b'Wordpress directories/files visible to internet'
03 Feb 2020
b'Stripo Inc'
disclosed a bug submitted by
b'pain45'
b'Improper Authorization'
03 Feb 2020
b'Stripo Inc'
disclosed a bug submitted by
b'ahmd_halabi'
b'CSRF - Modify Project Settings'
03 Feb 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'verichains'
b'[increments] sql injection'
02 Feb 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'notpwnguy'
b'[listening-processes] Command Injection'
02 Feb 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'verichains'
b'[@azhou/basemodel] SQL injection'
02 Feb 2020
b'Shopify'
disclosed a bug submitted by
b'hackrzvijay'
b'Disclose Any Store products, Files, Purchase Orders Via Email through Shopify Stocky APP '
02 Feb 2020
b'Nextcloud'
disclosed a bug submitted by
b'tibin_sunny'
b'Directory listing is enabled that exposes non public data through multiple path '
01 Feb 2020
b'Nextcloud'
disclosed a bug submitted by
b'g4mm4'
b'https://help.nextcloud.com::: Web cache poisoning attack'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'icewater'
b'Android content provider exposes password-protected share password hashes'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'icewater'
b'HTML injection and limited XSS via logo image upload - Nextcloud 12.0.0'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'icewater'
b"Share recipient can modify a share's expiration date"
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'tribut'
b'Nextcloud logs ldap passwords'
31 Jan 2020
b'Insolar'
disclosed a bug submitted by
b'nmesnap'
b'XDSI(Cross Domain Script Inclusion)'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'shawalkhan'
b'Bruteforce in admin panel'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'clizsec'
b'SQL exception in JSON format'
31 Jan 2020
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'niteshsurana'
b'Public instance of Jenkins on https://??????????/ with /script enabled'
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'whitehat_hacker'
b"Github repo's wiki publicly editable"
31 Jan 2020
b'Nextcloud'
disclosed a bug submitted by
b'bernhardposselt'
b'Update App Store: Django account high jacking vulnerability'
31 Jan 2020
1
...
333
334
335
336
337
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM