REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'haxta4ok00'
49
b'jon_bottarini'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Mail.ru'
disclosed a bug submitted by
b'bagipro'
b'[Mail.Ru Android] Typo in permission name allows to write contacts without user knowledge'
26 Feb 2019
b'Postmates'
disclosed a bug submitted by
b'davidalbert'
b'Web cache poisoning attack leads to user information and more'
26 Feb 2019
b'DuckDuckGo'
disclosed a bug submitted by
b'mik317'
b'Partial bypass of #483774 with Blind XXE on https://duckduckgo.com'
25 Feb 2019
b'InnoGames'
disclosed a bug submitted by
b'wwshack'
b'Information disclosure via ".htaccess" at https://login.innogames.de'
25 Feb 2019
b'VK.com'
disclosed a bug submitted by
b'page1337'
b'Page replacement and redirect loop'
24 Feb 2019
b'Gatecoin'
disclosed a bug submitted by
b'p4fg'
b'API request signature can be reused with other parameters/data than the original in certain cases'
23 Feb 2019
b'Slack'
disclosed a bug submitted by
b'kiyell'
b'AWS bucket leading to iOS test build code and configuration exposure'
23 Feb 2019
b'Slack'
disclosed a bug submitted by
b'elber'
b'Bypass of the SSRF protection in Event Subscriptions parameter.'
22 Feb 2019
b'Slack'
disclosed a bug submitted by
b'elber'
b'SSRF in api.slack.com, using slash commands and bypassing the protections.'
22 Feb 2019
b'Liberapay'
disclosed a bug submitted by
b'doug18'
b'Session Cookie without HttpOnly and secure flag set'
21 Feb 2019
b'Monero'
disclosed a bug submitted by
b'sobhraj_charles'
b'DoS for remote nodes using Slow Loris attack'
21 Feb 2019
b'MariaDB'
disclosed a bug submitted by
b'sergeybelove'
b'CRLF injection at https://mariadb.org/.'
21 Feb 2019
b'HackerOne'
disclosed a bug submitted by
b'adac95'
b'DOM Based XSS in www.hackerone.com via PostMessage'
21 Feb 2019
b'HackerOne'
disclosed a bug submitted by
b'jobert'
b"A small set of users were assigned someone else's payout preference"
20 Feb 2019
b'Rockstar Games'
disclosed a bug submitted by
b'rafiem'
b'Account Takeover using Linked Accounts due to lack of CSRF protection'
20 Feb 2019
b'Brave Software'
disclosed a bug submitted by
b'sonicnik'
b'There is vulnebility Click Here TO fix'
19 Feb 2019
b'Rockstar Games'
disclosed a bug submitted by
b'netfuzzer'
b'Facebook OAuth Code Theft through referer leakage on support.rockstargames.com'
19 Feb 2019
b'Dropbox'
disclosed a bug submitted by
b'david993'
b'Significant Two step verification Authentication Bypass'
19 Feb 2019
b'Block.one'
disclosed a bug submitted by
b'kushal89shah'
b"[FG-VD-18-126] Buffer Overflow Vulnerability in Latest EOS's EOSIO.WASMSDK Repository II"
19 Feb 2019
b'Block.one'
disclosed a bug submitted by
b'kushal89shah'
b"[FG-VD-18-125] Buffer Overflow Vulnerability in Latest EOS's EOSIO.WASMSDK Repository"
19 Feb 2019
1
...
403
404
405
406
407
...
729
BY DENIS WERNER - @NOBBD -
IMPRESSUM