REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Zomato'
disclosed a bug submitted by
b'joker7889'
b'Free food bug done by burp suite'
26 Dec 2019
b'Twitter'
disclosed a bug submitted by
b's3c'
b'CRLF injection'
25 Dec 2019
b'Genasys Technologies'
disclosed a bug submitted by
b'aaron_costello'
b'Ability to bypass social OAuth and take over any account [d2c-api]'
24 Dec 2019
b'Keybase'
disclosed a bug submitted by
b'aaron_costello'
b'SOP bypass using browser cache'
24 Dec 2019
b'Shopify'
disclosed a bug submitted by
b'mosuan'
b'Stored XSS in Shopify Chat '
23 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'haxorpunk'
b'subdomain takeover at status0.stripo.email'
23 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'prateek_thakare'
b'No length on password'
23 Dec 2019
b'Moneybird'
disclosed a bug submitted by
b'osama-hamad'
b'Bypass password reset rate limit protection at moneybird.com/passwords'
22 Dec 2019
b'ZEIT'
disclosed a bug submitted by
b'luied1920'
b'Open Redirect on Gitllab Oauth leading to Acount Takeover'
22 Dec 2019
b'Badoo'
disclosed a bug submitted by
b'matthijsmelissen'
b'SSO through odnoklassniki uses http rather than https'
21 Dec 2019
b'HackerOne'
disclosed a bug submitted by
b'the_arch_angel'
b'How the Bug stole hacking'
20 Dec 2019
b'GitLab'
disclosed a bug submitted by
b'ryhmnlfj'
b'Uncontrolled Resource Consumption in any Markdown field using Mermaid'
20 Dec 2019
b'YouPorn'
disclosed a bug submitted by
b'n00bsec'
b'XSS reflected on [https://www.youporn.com]'
19 Dec 2019
b'Automattic'
disclosed a bug submitted by
b'simonscannell'
b'Authenticated Code Execution through Phar deserialization in CSV Importer as Shop manager in WooCommerce'
19 Dec 2019
b'Automattic'
disclosed a bug submitted by
b'simonscannell'
b"WooCommerce Blacklist in 'map_meta_cap' leads to Privilege Escalation of Shopmanagers"
19 Dec 2019
b'Automattic'
disclosed a bug submitted by
b'simonscannell'
b"Stored XSS in Jetpack's Simple Payment Module by Contributors / Authors"
19 Dec 2019
b'Automattic'
disclosed a bug submitted by
b'simonscannell'
b'Arbitrary File Download as Shopmanager'
19 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'aishkendle'
b'Password token leak via Host header'
19 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'aishkendle'
b'OLD SESSION DOES NOT EXPIRE AFTER PASSWORD CHANGE'
19 Dec 2019
b'Stripo Inc'
disclosed a bug submitted by
b'aishkendle'
b'Bypass email verification and create email template with the editor'
19 Dec 2019
1
...
341
342
343
344
345
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM