REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Alliance of American Football '
disclosed a bug submitted by
b'gujjuboy10x00'
b'Stored xss in address field in billing activity at https://shop.aaf.com/Order/step1/index.cfm'
25 May 2019
b'Homebrew'
disclosed a bug submitted by
b'keeleysam'
b'Homebrew installed LaunchDaemons create simple root esclations'
24 May 2019
b'Vanilla'
disclosed a bug submitted by
b'alb3r7'
b'Stored XSS in vanilla'
24 May 2019
b'Valve'
disclosed a bug submitted by
b'njbooher'
b'ISteamAssets gives partners control over unrelated community market transactions'
23 May 2019
b'GitLab'
disclosed a bug submitted by
b'iframe'
b' The ability to pull out the domain and the mail part associated with the user account [gitter.im]'
22 May 2019
b'Shopify'
disclosed a bug submitted by
b'corb3nik'
b'H1514 [*.(my)shopify.com] - Viewing Password Protected Content'
22 May 2019
b'Starbucks'
disclosed a bug submitted by
b'wa1m3im'
b'Reflected XSS in https://www.starbucks.co.jp/store/search/'
22 May 2019
b'Starbucks'
disclosed a bug submitted by
b'0xpatrik'
b'Subdomain takeover of mydailydev.starbucks.com'
22 May 2019
b'Grammarly'
disclosed a bug submitted by
b'karimpwnz'
b"Employee's GitHub Token Found In Travis CI Build Logs"
22 May 2019
b'Revive Adserver'
disclosed a bug submitted by
b'paulos_'
b'Authentication Bypass by abusing Insecure crypto tokens in /lib/OA/Dal/PasswordRecovery.php:'
21 May 2019
b'Tor'
disclosed a bug submitted by
b'xiaoyinl'
b'Detecting Tor Browser UI Language'
21 May 2019
b'ok.ru'
disclosed a bug submitted by
b'linkks'
b'Cisco ASA Denial of Service & Path Traversal (CVE-2018-0296)'
20 May 2019
b'HackerOne'
disclosed a bug submitted by
b'flashdisk'
b'Race condition in claiming program credentials '
19 May 2019
b'HackerOne'
disclosed a bug submitted by
b'yaworsk'
b'API Last Request Date/Time Not Updating'
19 May 2019
b'ZEIT'
disclosed a bug submitted by
b'elmahdi'
b'CSRF On Connect Account With Github Lead To Account Takeover'
19 May 2019
b'HackerOne'
disclosed a bug submitted by
b'fixit'
b'Banned researcher gets email updates on a private program.'
18 May 2019
b'RATELIMITED'
disclosed a bug submitted by
b'daniel_v'
b'Unrestricted File Upload on https://auth.ratelimited.me'
18 May 2019
b'Zendesk'
disclosed a bug submitted by
b'trimatra-sec'
b'Blind XSS via Suspended Ticket Recovery'
17 May 2019
b'Twitter'
disclosed a bug submitted by
b'nyuszika7h'
b'Protected Tweets setting overridden by Android app'
17 May 2019
b'Mail.ru'
disclosed a bug submitted by
b'linkks'
b'benchmark metrics available at 5.61.239.154'
17 May 2019
1
...
398
399
400
401
402
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM