REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'TomTom'
disclosed a bug submitted by
b'sbakhour'
b'Anonymous user login to Nexus Repository Manager '
01 Oct 2019
b'ZEIT'
disclosed a bug submitted by
b'sbakhour'
b'Stored XSS on Zeit.co user profile'
01 Oct 2019
b'GitLab'
disclosed a bug submitted by
b'abdilahrf_'
b'Clientside resource Exhausting by exploiting gitlab math rendering '
01 Oct 2019
b'GitLab'
disclosed a bug submitted by
b'xanbanx'
b'Bypassing push rules via MRs created by Email'
01 Oct 2019
b'GitLab'
disclosed a bug submitted by
b'xanbanx'
b'Last pipeline status for MR leaked '
01 Oct 2019
b'pixiv'
disclosed a bug submitted by
b'katsuragicsl'
b'Open redirect protection (https://www.pixiv.net/jump.php) is broken for novels'
01 Oct 2019
b'Starbucks'
disclosed a bug submitted by
b'bobrov'
b'[mena.starbucks.com] Laravel App Log & Configuration Disclosure.'
30 Sep 2019
b'Starbucks'
disclosed a bug submitted by
b'k3mlol'
b'Starbucks China Android app cloud storage service leaks a credential.'
30 Sep 2019
b'OpenSSL (IBB)'
disclosed a bug submitted by
b'jorandirkgreef'
b'ChaCha20-Poly1305 with long nonces'
30 Sep 2019
b'HackerOne'
disclosed a bug submitted by
b'japz'
b'Manipulate hacker profile and private program hacktivity to expose your name as researchers who is actively submitting reports with resolve status'
29 Sep 2019
b'Mail.ru'
disclosed a bug submitted by
b'taraszelyk'
b'Avatar upload allows arbitrary file overwriting'
28 Sep 2019
b'Mail.ru'
disclosed a bug submitted by
b'elmahdi'
b'Blind SSRF [ Sentry Misconfiguraton ]'
27 Sep 2019
b'U.S. Dept Of Defense'
disclosed a bug submitted by
b'root_pwn'
b'Criticals Stored (XSS) at - 7TH AIR FORCE'
27 Sep 2019
b'Node.js third-party modules'
disclosed a bug submitted by
b'3la2kb'
b'Application level denial of service due to shutting down the server '
27 Sep 2019
b'Twitter'
disclosed a bug submitted by
b'antisocial_eng'
b'Ability to perform actions (Tweet, Retweet, DM) and other actions, unauthenticated, on any account with SMS enabled.'
26 Sep 2019
b'Valve'
disclosed a bug submitted by
b'xi-tauw'
b'Arbitrary file creation with semi-controlled content (leads to DoS, EoP and others) at Steam Windows Client'
26 Sep 2019
b'The Internet'
disclosed a bug submitted by
b'tiran'
b'Silent omission of certificate hostname verification in LibreSSL and BoringSSL'
26 Sep 2019
b'The Internet'
disclosed a bug submitted by
b'adam_iwaniuk'
b'CVE-2019-5736: Escape from Docker and Kubernetes containers to root on host'
26 Sep 2019
b'The Internet'
disclosed a bug submitted by
b'mehqq'
b'Exim off-by-one RCE vulnerability'
26 Sep 2019
b'The Internet'
disclosed a bug submitted by
b'pnig0s'
b'Mercurial git subrepo lead to arbritary command injection'
26 Sep 2019
1
...
364
365
366
367
368
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM