REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Twitter'
disclosed a bug submitted by
b'jaka_tingkir'
b'protected Tweet settings overwritten by other settings'
01 Jan 2020
b'Node.js third-party modules'
disclosed a bug submitted by
b'luizviana'
b'[seeftl] Stored XSS when directory listing via filename.'
31 Dec 2019
b'Genasys Technologies'
disclosed a bug submitted by
b'rreiss'
b'Missing redaction on a disclosed report'
31 Dec 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'ermilov'
b'[webpack-bundle-analyzer] Cross-site Scripting'
30 Dec 2019
b'VK.com'
disclosed a bug submitted by
b'0x3c3e'
b'Clickjacking vkpay'
30 Dec 2019
b'Starbucks'
disclosed a bug submitted by
b'vinothkumar'
b'JumpCloud API Key leaked via Open Github Repository.'
30 Dec 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'johnssimon007'
b'[fileview] Inadequate Output Encoding and Escaping '
28 Dec 2019
b'Ian Dunn'
disclosed a bug submitted by
b'damn007'
b'Potential Open-Redirection'
27 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'trazer'
b'stripo.email reflected xss'
26 Dec 2019
b'Zomato'
disclosed a bug submitted by
b'joker7889'
b'Free food bug done by burp suite'
26 Dec 2019
b'Twitter'
disclosed a bug submitted by
b's3c'
b'CRLF injection'
25 Dec 2019
b'Genasys Technologies'
disclosed a bug submitted by
b'aaron_costello'
b'Ability to bypass social OAuth and take over any account [d2c-api]'
24 Dec 2019
b'Keybase'
disclosed a bug submitted by
b'aaron_costello'
b'SOP bypass using browser cache'
24 Dec 2019
b'Shopify'
disclosed a bug submitted by
b'mosuan'
b'Stored XSS in Shopify Chat '
23 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'haxorpunk'
b'subdomain takeover at status0.stripo.email'
23 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'prateek_thakare'
b'No length on password'
23 Dec 2019
b'Moneybird'
disclosed a bug submitted by
b'osama-hamad'
b'Bypass password reset rate limit protection at moneybird.com/passwords'
22 Dec 2019
b'ZEIT'
disclosed a bug submitted by
b'luied1920'
b'Open Redirect on Gitllab Oauth leading to Acount Takeover'
22 Dec 2019
b'Badoo'
disclosed a bug submitted by
b'matthijsmelissen'
b'SSO through odnoklassniki uses http rather than https'
21 Dec 2019
b'HackerOne'
disclosed a bug submitted by
b'the_arch_angel'
b'How the Bug stole hacking'
20 Dec 2019
1
...
340
341
342
343
344
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM