REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
83
b'linkks'
75
b'jobert'
70
b'nyymi'
62
b'someonenobbd'
62
b'ooooooo_q'
54
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Ruby'
disclosed a bug submitted by
b'ooooooo_q'
b'Command injection in Pathname'
01 Apr 2019
b'PortSwigger Web Security'
disclosed a bug submitted by
b'freetom'
b'DLL Hijacking in Burp Suite Pro 2.0.19 Installer'
01 Apr 2019
b'Ubiquiti Networks'
disclosed a bug submitted by
b'fr33rh'
b'Login as root without password on EdgeSwitchX'
31 Mar 2019
b'Ubiquiti Networks'
disclosed a bug submitted by
b'fr33rh'
b'Privilege-0 to Root Privilege Escalation on EdgeSwitch'
31 Mar 2019
b'Ubiquiti Networks'
disclosed a bug submitted by
b'fr33rh'
b'EdgeSwitch Command Injection'
31 Mar 2019
b'Lob'
disclosed a bug submitted by
b'jaykpatel'
b'Blind SSRF/XSPA on dashboard.lob.com + blind code injection'
28 Mar 2019
b'JamieWeb'
disclosed a bug submitted by
b'mik317'
b'Security headers missed on https://acme-validation.jamieweb.net/'
28 Mar 2019
b'Augur'
disclosed a bug submitted by
b'the_arch_angel'
b'Open s3 bucket allows for public upload'
26 Mar 2019
b'Ping Identity'
disclosed a bug submitted by
b'ziot'
b'Server-Side Request Forgery on SAML Application - Import via URL'
26 Mar 2019
b'Ping Identity'
disclosed a bug submitted by
b'rijalrojan'
b'SaaS admin can modify/delete/get user information.'
26 Mar 2019
b'Ping Identity'
disclosed a bug submitted by
b'rijalrojan'
b'CSRF in Inviting users'
26 Mar 2019
b'TTS Bug Bounty'
disclosed a bug submitted by
b'albinowax'
b'Link poisoning on https://secure.login.gov/ login page'
25 Mar 2019
b'Semmle'
disclosed a bug submitted by
b'haxta4ok00'
b'Email addresses exposed in getPersonBySlug API'
25 Mar 2019
b'Semmle'
disclosed a bug submitted by
b'0xspade'
b'Email Not Completely Deleted after Deleting an account'
25 Mar 2019
b'Omise'
disclosed a bug submitted by
b'jishnupunnol'
b'Open Redirect'
25 Mar 2019
b'Omise'
disclosed a bug submitted by
b'noobwalid'
b'Public and secret api key leaked via omise github repo(owned by omise)'
25 Mar 2019
b'Ford'
disclosed a bug submitted by
b'march'
b'Subdomain takeover on usclsapipma.cv.ford.com'
24 Mar 2019
b"Hanno's projects"
disclosed a bug submitted by
b'bluedangerforyou'
b'Text injection at https://media.hboeck.de'
22 Mar 2019
b'Algolia'
disclosed a bug submitted by
b'testingforbugs'
b'Web Cache Deception Attack (XSS)'
22 Mar 2019
b'TTS Bug Bounty'
disclosed a bug submitted by
b'harisec'
b'SQL injection in https://labs.data.gov/dashboard/datagov/csv_to_json via User-agent '
22 Mar 2019
1
...
408
409
410
411
412
...
738
BY DENIS WERNER - @NOBBD -
IMPRESSUM