REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Zomato'
disclosed a bug submitted by
b'pasw'
b'[api.zomato.com] Able to manipulate order amount'
16 Apr 2019
b'Zomato'
disclosed a bug submitted by
b'vipinbihari'
b'Bypassing the SMS sending limit for download app link.'
16 Apr 2019
b'Zomato'
disclosed a bug submitted by
b'vipinbihari'
b'Sending Unlimited Emails to anyone from zomato mail server.'
16 Apr 2019
b'Razer US'
disclosed a bug submitted by
b'abdilahrf_'
b'Jenkins instance exposed without authentication'
15 Apr 2019
b'Lob'
disclosed a bug submitted by
b'ghostin'
b'Discloser of Internal Ip address'
15 Apr 2019
b'Ed'
disclosed a bug submitted by
b'drstache'
b'securitytemplate.site domain hijack'
15 Apr 2019
b'Automattic'
disclosed a bug submitted by
b'bugraeskici'
b'No Rate Limit on CrowdSignal Polls when Adding Comment'
13 Apr 2019
b'GitLab'
disclosed a bug submitted by
b'plazmaz'
b'SSRF in CI after first run'
12 Apr 2019
b'HackerOne'
disclosed a bug submitted by
b'kusl'
b'Previous attachments can be referenced when creating a new report'
12 Apr 2019
b'SEMrush'
disclosed a bug submitted by
b'memon'
b'Web cache deception attack - expose earning state information'
12 Apr 2019
b'SEMrush'
disclosed a bug submitted by
b'b3f53dc9b2061f7df0c2ffd'
b'Ports are not shown in third-party site redirect warning page.'
12 Apr 2019
b'OLX'
disclosed a bug submitted by
b'codelatteid'
b'XSS inside HTML Link Tag'
12 Apr 2019
b'Nextcloud'
disclosed a bug submitted by
b'rohit_coder'
b'NextCloud is also Accepting OCTET-STREAM Type of Documents instead of jpg or Imge Files Only'
11 Apr 2019
b'HackerOne'
disclosed a bug submitted by
b'jaimaakali'
b'Missing Certificate Authority Authorization rule'
11 Apr 2019
b'HackerOne'
disclosed a bug submitted by
b'rohitdua'
b'Missing rate limit on critical user actions e.g. reset password, change email, disable account.'
11 Apr 2019
b'HackerOne'
disclosed a bug submitted by
b'whhackersbr'
b'HackerOne Integrations Design Issue'
11 Apr 2019
b'VK.com'
disclosed a bug submitted by
b'norver'
b'??????????? ??????? ???????? VK API ? ?????????? ??????'
11 Apr 2019
b'RubyGems'
disclosed a bug submitted by
b'ooooooo_q'
b'Delete directory using symlink when decompressing tar'
11 Apr 2019
b'Slack'
disclosed a bug submitted by
b'rubaljain'
b'Real Time Error Logs Through Debug Information'
11 Apr 2019
b'HackerOne'
disclosed a bug submitted by
b'rohitdua'
b'Lack of length validation on user address attribute'
11 Apr 2019
1
...
395
396
397
398
399
...
729
BY DENIS WERNER - @NOBBD -
IMPRESSUM